Vulnerability Name CVE Severity
Envoy Proxy Incorrect Authorization Vulnerability (CVE-2021-39206) CVE-2021-39206
Envoy Proxy Integer Overflow or Wraparound Vulnerability (CVE-2021-28682) CVE-2021-28682
Envoy Proxy Integer Underflow (Wrap or Wraparound) Vulnerability (CVE-2024-32975) CVE-2024-32975
Envoy Proxy Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2019-18836) CVE-2019-18836
Envoy Proxy Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2024-32976) CVE-2024-32976
Envoy Proxy NULL Pointer Dereference Vulnerability (CVE-2019-18838) CVE-2019-18838
Envoy Proxy NULL Pointer Dereference Vulnerability (CVE-2021-28683) CVE-2021-28683
Envoy Proxy NULL Pointer Dereference Vulnerability (CVE-2021-43824) CVE-2021-43824
Envoy Proxy NULL Pointer Dereference Vulnerability (CVE-2024-23327) CVE-2024-23327
Envoy Proxy Other Vulnerability (CVE-2020-25017) CVE-2020-25017
Envoy Proxy Other Vulnerability (CVE-2024-34363) CVE-2024-34363
Envoy Proxy Reachable Assertion Vulnerability (CVE-2021-29258) CVE-2021-29258
Envoy Proxy Reachable Assertion Vulnerability (CVE-2022-29228) CVE-2022-29228
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2019-15226) CVE-2019-15226
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2020-8663) CVE-2020-8663
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2020-12603) CVE-2020-12603
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2020-12605) CVE-2020-12605
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487) CVE-2023-44487
Envoy Proxy Use After Free Vulnerability (CVE-2021-43825) CVE-2021-43825
Envoy Proxy Use After Free Vulnerability (CVE-2021-43826) CVE-2021-43826
Envoy Proxy Use After Free Vulnerability (CVE-2022-29227) CVE-2022-29227
Envoy Proxy Use After Free Vulnerability (CVE-2023-35943) CVE-2023-35943
Envoy Proxy Use After Free Vulnerability (CVE-2024-23322) CVE-2024-23322
Envoy Proxy Use After Free Vulnerability (CVE-2024-32974) CVE-2024-32974
Envoy Wrong DOWNSTREAM_REMOTE_ADDRESS logged Issue (CVE-2020-35470) CVE-2020-35470
EspoCRM Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2022-38844) CVE-2022-38844
EspoCRM Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2019-14351) CVE-2019-14351
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-38843) CVE-2022-38843
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5965) CVE-2023-5965
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5966) CVE-2023-5966
Expression language injection
ExpressJs Local File Read via the layout parameter
Ext JS arbitrary file read
Ext JS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2007-6758) CVE-2007-6758
F5 BIG-IP Traffic Management User Interface (TMUI) RCE CVE-2020-5902
F5 iControl REST unauthenticated remote command execution vulnerability CVE-2021-22986
Family Connections Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2012-0699) CVE-2012-0699
Family Connections Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2010-3419) CVE-2010-3419
FastCGI Unauthorized Access Vulnerability
FCKeditor spellchecker.php cross site scripting vulnerability CVE-2012-4000
File Content Disclosure in Action View CVE-2019-5418
File creation via HTTP method PUT
File upload XSS (Java applet)
Flask debug mode
Flex BlazeDS AMF Deserialization RCE CVE-2017-5641
FluxBB Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-10029) CVE-2014-10029
FluxBB Use of Password Hash With Insufficient Computational Effort Vulnerability (CVE-2020-28873) CVE-2020-28873
ForgeRock AM / OpenAM Deserialization RCE (CVE-2021-35464) CVE-2021-35464
ForgeRock OpenAM Deserialization RCE (CVE-2021-29156) CVE-2021-29156
Fortigate SSL VPN Arbitrary File reading (CVE-2018-13379) CVE-2018-13379
Fortinet Authentication bypass on administrative interface CVE-2022-40684
Fortinet FortiNAC RCE via arbitrary file upload CVE-2022-39952
FrontAccounting Cross-site Request Forgery (CSRF) Vulnerability (CVE-2018-7176) CVE-2018-7176
Frontaccounting Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4037) CVE-2009-4037
Frontaccounting Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4045) CVE-2009-4045
Frontaccounting Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-1000890) CVE-2018-1000890
FrontAccounting Multiple SQL Injection Vulnerabilities (CVE-2014-3973) CVE-2014-3973
Frontaccounting Other Vulnerability (CVE-2007-4279) CVE-2007-4279
Gallery 3.0.4 remote code execution
Genericons DOM-based XSS vulnerability
GeoServer SQLi (CVE-2023-25157) CVE-2023-25157
GeoServer SSRF (CVE-2021-40822) CVE-2021-40822
GeoServer WMS SSRF (CVE-2023-43795) CVE-2023-43795
Ghost CMS Theme Path Traversal (CVE-2023-32235) CVE-2023-32235
Ghost CMS Theme Preview XSS (CVE-2021-29484) CVE-2021-29484
GibbonEdu Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2023-45880) CVE-2023-45880
GibbonEdu Session Fixation Vulnerability (CVE-2022-27305) CVE-2022-27305
GitLab ExifTool RCE (CVE-2021-22205) CVE-2021-22205
GlassFish admin console weak credentials
GlassFish CVE-2011-3559 Vulnerability (CVE-2011-3559) CVE-2011-3559
GlassFish CVE-2016-5519 Vulnerability (CVE-2016-5519) CVE-2016-5519
GlassFish CVE-2017-3249 Vulnerability (CVE-2017-3249) CVE-2017-3249
GlassFish CVE-2017-10391 Vulnerability (CVE-2017-10391) CVE-2017-10391
GlassFish CVE-2018-2911 Vulnerability (CVE-2018-2911) CVE-2018-2911
GlassFish CVE-2018-3152 Vulnerability (CVE-2018-3152) CVE-2018-3152