All CVEs — page 229 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw allows unauthenticated attackers to access sensitive page and post content via WordPress REST API endpoints, despite global privacy settings.
HashBrown CMS through 1.4.6 allows attackers to inject OS commands via the branch parameter, leading to potential remote code execution.
The flaw allows attackers to inject OS commands via media uploads, leading to potential remote code execution.
The flaw allows a pre-authentication attacker to cause a StackOverflowError through type nesting, potentially leading to denial of service.
The flaw allows an authenticated attacker to cause excessive resource usage by controlling the number of transfer frames per incoming delivery, potentially leading to a denial of service.
The flaw allows a pre-authentication attacker to cause a StackOverflowError through type nesting, potentially leading to denial of service.
The flaw allows a pre-authentication attacker to cause a StackOverflowError through type nesting, potentially leading to denial of service.
The flaw allows a pre-authentication attacker to cause a StackOverflowError through type nesting, potentially leading to denial of service.
The flaw allows local attackers to exploit misconfigured PostgreSQL service command injection vulnerabilities to gain full root access on affected devices.