Vulnerability Name CVE Severity
Dolibarr Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-11825) CVE-2020-11825
Dolibarr CVE-2019-11200 Vulnerability (CVE-2019-11200) CVE-2019-11200
Dolibarr CVE-2023-38886 Vulnerability (CVE-2023-38886) CVE-2023-38886
Dolibarr Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-14240) CVE-2017-14240
Dolibarr Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-17898) CVE-2017-17898
Dolibarr Files or Directories Accessible to External Parties Vulnerability (CVE-2023-33568) CVE-2023-33568
Dolibarr Improper Authentication Vulnerability (CVE-2021-25956) CVE-2021-25956
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-11201) CVE-2019-11201
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-0819) CVE-2022-0819
Dolibarr Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-4197) CVE-2023-4197
Dolibarr Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2020-35136) CVE-2020-35136
Dolibarr Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2023-30253) CVE-2023-30253
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-1225) CVE-2012-1225
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-9839) CVE-2017-9839
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-18260) CVE-2017-18260
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-19994) CVE-2018-19994
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-19998) CVE-2018-19998
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-19209) CVE-2019-19209
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-14443) CVE-2020-14443
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-36625) CVE-2021-36625
Dolibarr Incorrect Authorization Vulnerability (CVE-2020-12669) CVE-2020-12669
Dolibarr Incorrect Authorization Vulnerability (CVE-2021-37517) CVE-2021-37517
Dolibarr Information Disclosure (CVE-2023-33568) CVE-2023-33568
Dolibarr Missing Authorization Vulnerability (CVE-2018-10092) CVE-2018-10092
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-9840) CVE-2017-9840
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-14209) CVE-2020-14209
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-38887) CVE-2023-38887
Dolibarr Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-25957) CVE-2021-25957
Dolphin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-3638) CVE-2013-3638
Dotclear Improper Access Control Vulnerability (CVE-2015-8832) CVE-2015-8832
Dotclear Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-1613) CVE-2014-1613
Dotclear Other Vulnerability (CVE-2005-3963) CVE-2005-3963
Dotclear Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-5083) CVE-2011-5083
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-7902) CVE-2016-7902
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-9268) CVE-2016-9268
Dot CMS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-3187) CVE-2017-3187
Dot CMS Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-18875) CVE-2020-18875
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-4040) CVE-2016-4040
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8903) CVE-2016-8903
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8904) CVE-2016-8904
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8905) CVE-2016-8905
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8906) CVE-2016-8906
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8907) CVE-2016-8907
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8908) CVE-2016-8908
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10007) CVE-2016-10007
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10008) CVE-2016-10008
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-12872) CVE-2019-12872
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-27848) CVE-2020-27848
Dot CMS Other Vulnerability (CVE-2016-4803) CVE-2016-4803
Dot CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8600) CVE-2016-8600
DotCMS unrestricted file upload (CVE-2022-26352) CVE-2022-26352
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-3189) CVE-2017-3189
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-11466) CVE-2017-11466
Dot CMS Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2022-45782) CVE-2022-45782
Dotenv .env file
DotNetNuke multiple vulnerabilities CVE-2012-1030
Dragonfly Arbitrary File Read/Write (CVE-2021-33564) CVE-2021-33564
Drupal 7 arbitrary PHP code execution and information disclosure CVE-2012-4553 CVE-2012-4554
Drupal 7PK - Security Features Vulnerability (CVE-2016-3163) CVE-2016-3163
Drupal Backup Migrate directory publicly accessible
Drupal Core 4.5.x Cross-Site Scripting (4.5.0 - 4.5.1) CVE-2005-0682
Drupal Core 4.5.x Cross-Site Scripting (4.5.0 - 4.5.5) CVE-2005-3973
Drupal Core 4.5.x Cross-Site Scripting (4.5.0 - 4.5.7) CVE-2006-1226
Drupal Core 4.5.x Mail Header Injection (4.5.0 - 4.5.7)
Drupal Core 4.5.x Multiple Vulnerabilities (4.5.0 - 4.5.5)
Drupal Core 4.5.x Security Bypass (4.5.0 - 4.5.7)
Drupal Core 4.5.x Session Fixation (4.5.0 - 4.5.7)
Drupal Core 4.6.x Arbitrary Code Execution (4.6.0 - 4.6.6) CVE-2006-2743
Drupal Core 4.6.x Arbitrary Code Execution (4.6.0 - 4.6.7) CVE-2006-2831
Drupal Core 4.6.x Cross-Site Request Forgery (4.6.0 - 4.6.9) CVE-2006-5476
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.3) CVE-2005-3973
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.5) CVE-2006-1226
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.7) CVE-2006-2833
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.8) CVE-2006-4002
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.10) CVE-2007-0136