Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: web-frameworks Clear
ID Title
CVE-2017-1000033 Cross-Site Scripting (XSS) in wordpress (CVE-2017-1000033)
cross-site scripting in wordpress (CVE-2017-1000033). Risk of unauthorized operations or information disclosure.
CVE-2017-1000038 Cross-Site Scripting (XSS) in wordpress (CVE-2017-1000038)
cross-site scripting in wordpress (CVE-2017-1000038). Risk of unauthorized operations or information disclosure.
CVE-2016-6312 Vulnerability in apache (CVE-2016-6312)
vulnerability in apache (CVE-2016-6312). Risk of unauthorized operations or information disclosure.
CVE-2016-6793 Unsafe Deserialization in apache (CVE-2016-6793)
vulnerability in apache (CVE-2016-6793). Data can be tampered with by attackers.
CVE-2015-0249 Code Injection in apache (CVE-2015-0249)
code injection in apache (CVE-2015-0249). Successful exploitation can lead to full system takeover.
CVE-2017-9788 Vulnerability in apache (CVE-2017-9788)
vulnerability in apache (CVE-2017-9788). Confidential information can be exposed externally. Exploitable via `Authorization header`.
CVE-2017-9789 Use-After-Free in apache (CVE-2017-9789)
vulnerability in apache (CVE-2017-9789). Risk of unauthorized operations or information disclosure.
CVE-2017-7672 Vulnerability in apache (CVE-2017-7672)
vulnerability in apache (CVE-2017-7672). Risk of unauthorized operations or information disclosure.
CVE-2017-9787 Vulnerability in apache (CVE-2017-9787)
vulnerability in apache (CVE-2017-9787). Risk of unauthorized operations or information disclosure.
CVE-2017-7529 Vulnerability in nginx (CVE-2017-7529)
vulnerability in nginx (CVE-2017-7529). Confidential information can be exposed externally.
CVE-2017-7678 Cross-Site Scripting (XSS) in apache (CVE-2017-7678)
cross-site scripting in apache (CVE-2017-7678). Risk of unauthorized operations or information disclosure.
CVE-2017-5640 Authentication Bypass in apache (CVE-2017-5640)
authentication bypass in apache (CVE-2017-5640). Successful exploitation can lead to full system takeover.
CVE-2017-5652 Vulnerability in apache (CVE-2017-5652)
vulnerability in apache (CVE-2017-5652). Confidential information can be exposed externally.
CVE-2017-7670 Vulnerability in apache (CVE-2017-7670)
vulnerability in apache (CVE-2017-7670). Risk of unauthorized operations or information disclosure.
CVE-2017-1398 Open Redirect in express (CVE-2017-1398)
vulnerability in express (CVE-2017-1398). Risk of unauthorized operations or information disclosure.
CVE-2017-7660 Authentication Bypass in apache (CVE-2017-7660)
authentication bypass in apache (CVE-2017-7660). Data can be tampered with by attackers.
CVE-2017-10991 Cross-Site Scripting (XSS) in wordpress (CVE-2017-10991)
cross-site scripting in wordpress (CVE-2017-10991). Risk of unauthorized operations or information disclosure.
CVE-2017-2216 Cross-Site Scripting (XSS) in wordpress (CVE-2017-2216)
cross-site scripting in wordpress (CVE-2017-2216). Risk of unauthorized operations or information disclosure.
CVE-2017-2217 Open Redirect in wordpress (CVE-2017-2217)
vulnerability in wordpress (CVE-2017-2217). Risk of unauthorized operations or information disclosure.
CVE-2017-2222 Cross-Site Scripting (XSS) in wordpress (CVE-2017-2222)
cross-site scripting in wordpress (CVE-2017-2222). Risk of unauthorized operations or information disclosure.
CVE-2017-6711 Authentication Bypass in apache (CVE-2017-6711)
authentication bypass in apache (CVE-2017-6711). Confidential information can be exposed externally.
CVE-2017-6722 Authentication Bypass in express (CVE-2017-6722)
authentication bypass in express (CVE-2017-6722). Risk of unauthorized operations or information disclosure.
CVE-2017-7686 Information Disclosure in apache (CVE-2017-7686)
vulnerability in apache (CVE-2017-7686). Confidential information can be exposed externally.
CVE-2017-9830 Unsafe Deserialization in apache (CVE-2017-9830)
vulnerability in apache (CVE-2017-9830). Successful exploitation can lead to full system takeover.
CVE-2017-3167 Authentication Bypass in apache (CVE-2017-3167)
authentication bypass in apache (CVE-2017-3167). Successful exploitation can lead to full system takeover.
CVE-2017-3169 Vulnerability in apache (CVE-2017-3169)
vulnerability in apache (CVE-2017-3169). Successful exploitation can lead to full system takeover.
CVE-2017-7668 Vulnerability in apache (CVE-2017-7668)
vulnerability in apache (CVE-2017-7668). Risk of unauthorized operations or information disclosure.
CVE-2017-7679 Vulnerability in apache (CVE-2017-7679)
vulnerability in apache (CVE-2017-7679). Successful exploitation can lead to full system takeover.
CVE-2015-3254 Vulnerability in apache (CVE-2015-3254)
vulnerability in apache (CVE-2015-3254). Risk of unauthorized operations or information disclosure.
CVE-2017-9419 Cross-Site Scripting (XSS) in wordpress (CVE-2017-9419)
cross-site scripting in wordpress (CVE-2017-9419). Risk of unauthorized operations or information disclosure.
CVE-2016-8746 Vulnerability in apache (CVE-2016-8746)
vulnerability in apache (CVE-2016-8746). Data can be tampered with by attackers.
CVE-2016-8751 Cross-Site Scripting (XSS) in apache (CVE-2016-8751)
cross-site scripting in apache (CVE-2016-8751). Risk of unauthorized operations or information disclosure.
CVE-2017-7676 Vulnerability in apache (CVE-2017-7676)
vulnerability in apache (CVE-2017-7676). Successful exploitation can lead to full system takeover.
CVE-2017-7677 Vulnerability in apache (CVE-2017-7677)
vulnerability in apache (CVE-2017-7677). Data can be tampered with by attackers.
CVE-2017-9429 SQL Injection in wordpress (CVE-2017-9429)
SQL injection in wordpress (CVE-2017-9429). Successful exploitation can lead to full system takeover.
CVE-2017-9603 SQL Injection in wordpress (CVE-2017-9603)
SQL injection in wordpress (CVE-2017-9603). Successful exploitation can lead to full system takeover.
CVE-2017-7665 Cross-Site Scripting (XSS) in apache (CVE-2017-7665)
cross-site scripting in apache (CVE-2017-7665). Risk of unauthorized operations or information disclosure.
CVE-2017-7667 Vulnerability in apache (CVE-2017-7667)
vulnerability in apache (CVE-2017-7667). Data can be tampered with by attackers.
CVE-2017-9418 SQL Injection in wordpress (CVE-2017-9418)
SQL injection in wordpress (CVE-2017-9418). Successful exploitation can lead to full system takeover.
CVE-2015-3634 Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
CVE-2014-9310 Cross-Site Scripting (XSS) in wordpress (CVE-2014-9310)
cross-site scripting in wordpress (CVE-2014-9310). Risk of unauthorized operations or information disclosure.
CVE-2015-5175 Vulnerability in apache (CVE-2015-5175)
vulnerability in apache (CVE-2015-5175). Risk of unauthorized operations or information disclosure.
CVE-2016-5004 Vulnerability in apache (CVE-2016-5004)
vulnerability in apache (CVE-2016-5004). Risk of unauthorized operations or information disclosure.
CVE-2017-5664 Vulnerability in apache (CVE-2017-5664)
vulnerability in apache (CVE-2017-5664). Data can be tampered with by attackers.
CVE-2017-9420 Cross-Site Scripting (XSS) in wordpress (CVE-2017-9420)
cross-site scripting in wordpress (CVE-2017-9420). Risk of unauthorized operations or information disclosure.
CVE-2017-7669 Vulnerability in apache (CVE-2017-7669)
vulnerability in apache (CVE-2017-7669). Successful exploitation can lead to full system takeover.
CVE-2017-9336 The WP Editor.MD plugin 1.6 for WordPress has a stored XSS vulnerability in the content of a post.
The WP Editor.MD plugin 1.6 for WordPress has a stored XSS vulnerability in the content of a post.
CVE-2017-9337 Cross-Site Scripting (XSS) in wordpress (CVE-2017-9337)
cross-site scripting in wordpress (CVE-2017-9337). Risk of unauthorized operations or information disclosure.
CVE-2016-3083 Vulnerability in apache (CVE-2016-3083)
vulnerability in apache (CVE-2016-3083). Data can be tampered with by attackers.
CVE-2017-9303 Vulnerability in laravel (CVE-2017-9303)
vulnerability in laravel (CVE-2017-9303). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →