Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 58 59 60 61 62 63 64 65 66 67 [68] 69 70 71 72 73 74 75 76 77 78 ... Result(s) : 8821

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
2.1 2022-05-10 CVE-2022-29134 cve Windows Clustered Shared Volume Information Disclosure Vulnerability
2.1 2022-05-10 CVE-2022-29140 cve Windows Print Spooler Information Disclosure Vulnerability
3.3 2022-05-09 CVE-2022-28162 cve Brocade SANnav before version SANnav 2.2.0 logs the REST API Authentication token in plain text.
3.3 2022-05-06 CVE-2021-27751 cve HCL Commerce is affected by an Insufficient Session Expiration vulnerability. After the session expires, in some circumstances, parts of the application are still accessible.
3.3 2022-05-03 CVE-2022-28784 cve Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arbitrary directory as system user. The patch addresses inco...
3.3 2022-05-03 CVE-2022-28790 cve Improper authentication in Link to Windows Service prior to version 2.3.04.1 allows attacker to lock the device. The patch adds proper caller signature check logic.
3.5 2022-05-02 CVE-2022-23065 cve In Vendure versions 0.1.0-alpha.2 to 1.5.1 are affected by Stored XSS vulnerability, where an attacker having catalog permission can upload a SVG file that contains malicious Ja...
3.5 2022-05-01 CVE-2022-21149 cve The package s-cart/s-cart before 6.9; the package s-cart/core before 6.9 are vulnerable to Cross-site Scripting (XSS) which can lead to cookie stealing of any victim that visits...
3.5 2022-05-01 CVE-2022-23060 cve A Stored Cross Site Scripting (XSS) vulnerability exists in Shopizer versions 2.0 through 2.17.0, where a privileged user (attacker) can inject malicious JavaScript in the filen...
3.3 2022-04-29 CVE-2022-1249 cve A NULL pointer dereference flaw was found in pesign's cms_set_pw_data() function of the cms_common.c file. The function fails to handle the NULL pwdata invocation from daem...
2.3 2022-04-28 CVE-2022-29812 cve In JetBrains IntelliJ IDEA before 2022.1 notification mechanisms about using Unicode directionality formatting characters were insufficient
3.2 2022-04-28 CVE-2022-29816 cve In JetBrains IntelliJ IDEA before 2022.1 HTML injection into IDE messages was possible
3.5 2022-04-28 CVE-2022-29820 cve In JetBrains PyCharm before 2022.1 exposure of the debugger port to the internal network was possible
2.4 2022-04-27 CVE-2022-24885 cve Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.1, users can bypass a lock on the Nextcloud app on an Andro...
3.8 2022-04-27 CVE-2022-24886 cve Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. In versions prior to 3.19.0, any application with notification permission can acc...
3.9 2022-04-27 CVE-2021-25266 cve An insecure data storage vulnerability allows a physical attacker with root privileges to retrieve TOTP secret keys from unlocked phones in Sophos Authenticator for Android vers...
3.5 2022-04-22 CVE-2022-26673 cve ASUS RT-AX88U has insufficient filtering for special characters in the HTTP header parameter. A remote attacker with general user privilege can exploit this vulnerability to inj...
1.2 2022-04-19 CVE-2022-21405 cve Vulnerability in the OSS Support Tools product of Oracle Support Tools (component: Oracle Explorer). The supported version that is affected is 18.3. Easily exploitable vulnerabi...
1.9 2022-04-19 CVE-2022-21416 cve Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily exploitable vulnerability allows low pri...
2.1 2022-04-19 CVE-2022-21444 cve Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 5.7.37 and prior and 8.0.28 and prior. Difficult to ...
Page(s) : 1 ... 58 59 60 61 62 63 64 65 66 67 [68] 69 70 71 72 73 74 75 76 77 78 ... Result(s) : 8821