Vulnerability Name CVE Severity
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-7139) CVE-2019-7139
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-8127) CVE-2019-8127
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-8130) CVE-2019-8130
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-8134) CVE-2019-8134
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-8143) CVE-2019-8143
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-3719) CVE-2020-3719
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-24400) CVE-2020-24400
Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-21024) CVE-2021-21024
Magento Improper Privilege Management Vulnerability (CVE-2020-9630) CVE-2020-9630
Magento Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') Vulnerability (CVE-2019-8126) CVE-2019-8126
Magento Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2019-8154) CVE-2019-8154
Magento Incorrect Authorization Vulnerability (CVE-2020-9587) CVE-2020-9587
Magento Incorrect Authorization Vulnerability (CVE-2020-9692) CVE-2020-9692
Magento Incorrect Authorization Vulnerability (CVE-2020-24401) CVE-2020-24401
Magento Incorrect Authorization Vulnerability (CVE-2021-28567) CVE-2021-28567
Magento Incorrect Authorization Vulnerability (CVE-2022-34255) CVE-2022-34255
Magento Incorrect Authorization Vulnerability (CVE-2022-34256) CVE-2022-34256
Magento Insufficient Session Expiration Vulnerability (CVE-2019-8149) CVE-2019-8149
Magento Insufficient Session Expiration Vulnerability (CVE-2021-21031) CVE-2021-21031
Magento Insufficient Session Expiration Vulnerability (CVE-2021-21032) CVE-2021-21032
Magento Insufficient Verification of Data Authenticity Vulnerability (CVE-2019-8112) CVE-2019-8112
Magento Insufficient Verification of Data Authenticity Vulnerability (CVE-2019-8124) CVE-2019-8124
Magento Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-9588) CVE-2020-9588
Magento Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-9690) CVE-2020-9690
Magento Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-15151) CVE-2020-15151
Magento Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3458) CVE-2015-3458
Magento remote code execution CVE-2015-1397 CVE-2015-1398 CVE-2015-1399
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7892) CVE-2019-7892
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7911) CVE-2019-7911
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7913) CVE-2019-7913
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7923) CVE-2019-7923
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-8151) CVE-2019-8151
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-8156) CVE-2019-8156
Magento Session Fixation Vulnerability (CVE-2019-7849) CVE-2019-7849
Magento Session Fixation Vulnerability (CVE-2019-8116) CVE-2019-8116
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-7861) CVE-2019-7861
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-7912) CVE-2019-7912
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-7930) CVE-2019-7930
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-8093) CVE-2019-8093
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-8114) CVE-2019-8114
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-8140) CVE-2019-8140
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-24407) CVE-2020-24407
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-21014) CVE-2021-21014
Magento Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2019-8113) CVE-2019-8113
Magento Violation of Secure Design Principles Vulnerability (CVE-2021-28583) CVE-2021-28583
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2019-8158) CVE-2019-8158
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2021-21019) CVE-2021-21019
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2021-21025) CVE-2021-21025
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2022-34253) CVE-2022-34253
Mailman Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-6893) CVE-2016-6893
Mailman Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-42097) CVE-2021-42097
Mailman Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-44227) CVE-2021-44227
Mailman CVE-2006-2941 Vulnerability (CVE-2006-2941) CVE-2006-2941
Mailman Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4624) CVE-2006-4624
Mailman Improper Input Validation Vulnerability (CVE-2018-13796) CVE-2018-13796
Mailman Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2015-2775) CVE-2015-2775
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2010-3089) CVE-2010-3089
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-0707) CVE-2011-0707
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-5024) CVE-2011-5024
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-0618) CVE-2018-0618
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-5950) CVE-2018-5950
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-12137) CVE-2020-12137
Mailman Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-43331) CVE-2021-43331
Mailman Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-12108) CVE-2020-12108
Mailman Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-15011) CVE-2020-15011
Mailman Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2021-42096) CVE-2021-42096
Mailman Insufficiently Protected Credentials Vulnerability (CVE-2021-43332) CVE-2021-43332
Mailman Other Vulnerability (CVE-2000-0861) CVE-2000-0861
Mailman Other Vulnerability (CVE-2001-0290) CVE-2001-0290
Mailman Other Vulnerability (CVE-2001-0884) CVE-2001-0884
Mailman Other Vulnerability (CVE-2001-1132) CVE-2001-1132
Mailman Other Vulnerability (CVE-2002-0388) CVE-2002-0388
Mailman Other Vulnerability (CVE-2002-0389) CVE-2002-0389
Mailman Other Vulnerability (CVE-2002-0855) CVE-2002-0855
Mailman Other Vulnerability (CVE-2003-0038) CVE-2003-0038