CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 1mo ago | 9.8 | The sharebar plugin before 1.2.2 for WordPress has SQL injection. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a stack-based buffer overflow exists in the status-log viewer component because of expansion in svcstatus.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the history viewer component via a long hostname or service parameter to history.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a buffer overflow exists in the status-log viewer CGI because of expansion in appfeed.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because of expansion in acknowledge.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a buffer overflow vulnerability exists in reportlog.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a buffer overflow vulnerability exists in history.c. |
| Exploit 1mo ago | 9.8 | In Xymon through 4.3.28, a buffer overflow vulnerability exists in the csvinfo CGI script. The overflow may be exploited by sending a crafted GET request that triggers an sprintf of the srcdb parameter. |
| Exploit 1mo ago | 9.8 | A SQL injection vulnerability exists in the Imagely NextGEN Gallery plugin before 3.2.11 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via modules/nextgen_gallery_display/package.module.nextgen_gallery_display.php. |
| 1mo ago | 9.8 | The wp-polls plugin before 2.72 for WordPress has SQL injection. |
| Exploit 1mo ago | 9.8 | The feed-them-social plugin before 1.7.0 for WordPress has possible shortcode execution in the Facebook Feeds load more button. |
| 1mo ago | 9.8 | The pie-register plugin before 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969. |
| 1mo ago | 9.8 | The rsvpmaker plugin before 6.2 for WordPress has SQL injection. |
| 1mo ago | 9.8 | The bbp-move-topics plugin before 1.1.6 for WordPress has code injection. |
| 1mo ago | 9.8 | The rsvpmaker plugin before 5.6.4 for WordPress has SQL injection. |
| 1mo ago | 9.8 | The buddyforms plugin before 2.2.8 for WordPress has SQL injection. |
| 1mo ago | 9.8 | The woocommerce-exporter plugin before 1.8.4 for WordPress has privilege escalation. |
| 1mo ago | 9.8 | The link-log plugin before 2.1 for WordPress has SQL injection. |
| Exploit 1mo ago | 9.8 | In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code. |
| Exploit 1mo ago | 9.8 | wolfSSL 4.1.0 has a one-byte heap-based buffer over-read in DecodeCertExtensions in wolfcrypt/src/asn.c because reading the ASN_BOOLEAN byte is mishandled for a crafted DER certificate in GetLength_ex. |
| 1mo ago | 9.8 | Black Box iCOMPEL 9.2.3 through 11.1.4, as used in ONELAN Net-Top-Box 9.2.3 through 11.1.4 and other products, has default credentials that allow remote attackers to access devices remotely via SSH, HTTP, HTTPS, and FTP. |
| 1mo ago | 9.8 | Buffer Overflow in dactetra in Delta Controls enteliBUS Manager V3.40_B-571848 allows remote unauthenticated users to execute arbitrary code and possibly cause a denial of service via unspecified vectors. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution. |
| Exploit 1mo ago | 9.8 | Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution. |