Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

78,402 CVEs

EOL hidden · Show all products

CVEs (78,402, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 1–25 of 78,402 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2000-5001 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2005-20001 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2006-10002 HIGH Patched 7.5 2026-03-19 XML::Parser versions through 2.45 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double free or corruption) and crashes. A :utf8 PerlIO lay…
CVE-2006-10003 CRITICAL Patched 9.8 2026-03-19 XML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stack. In the case (stackptr == stacksize - 1), the stack will NOT be expand…
CVE-2008-20002 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2008-20003 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2009-10007 CRITICAL Patched 9.1 2026-06-09 Catalyst::Plugin::Authentication versions before 0.10_027 for Perl is susceptible to session fixation attacks. Catalyst::Plugin::Authentication does not automatically chan…
CVE-2009-20005 NONE — 2025-09-16 A stack-based buffer overflow exists in the UtilConfigHome.csp endpoint of InterSystems Caché 2009.1. The vulnerability is triggered by sending a specially crafted HTTP GET…
CVE-2009-20006 NONE — 2025-09-16 osCommerce versions up to and including 2.2 RC2a contain a vulnerability in its administrative file manager utility (admin/file_manager.php). The interface allows file uplo…
CVE-2009-20007 NONE — 2025-09-16 Talkative IRC v0.4.4.16 is vulnerable to a stack-based buffer overflow when processing specially crafted response strings sent to a connected client. An attacker can exploi…
CVE-2009-20012 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2010-20110 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2010-20116 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2010-20117 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2010-20118 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2010-20124 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2011-10031 NONE — 2026-04-22 Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2011-10033 NONE &mdash; 2025-10-15 The WordPress plugin is-human <= v1.4.2 contains an eval injection vulnerability in /is-human/engine.php that can be triggered via the 'type' parameter when the 'action' pa&hellip;
CVE-2011-10034 NONE &mdash; 2025-11-12 AUTOMGEN versions up to and including 8.0.0.7 (also referenced as 8.022) contain a vulnerability in that project file handling frees an object and subsequently dereferences&hellip;
CVE-2011-10035 HIGH Patched 7.0 2025-10-30 Nagios XI versions prior to 2011R1.9 contain privilege escalation vulnerabilities in the scripts that install or update system crontab entries. Due to time-of-check/time-of&hellip;
CVE-2011-10036 MEDIUM Patched 5.4 2025-10-30 Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the handling of the "backend_url" JavaScript link. Insufficient validation or escaping&hellip;
CVE-2011-10037 MEDIUM Patched 5.4 2025-10-30 Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the handling of xiwindow variables used to build permalinks in the web interface. Insu&hellip;
CVE-2011-10038 MEDIUM Patched 5.4 2025-10-30 Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the recurring downtime script of the web interface. Insufficient validation or escapin&hellip;
CVE-2011-10039 MEDIUM Patched 5.4 2025-10-30 Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the Alert Heatmap report and the “My Reports” listing of the web interface. Insufficie&hellip;
CVE-2011-10040 MEDIUM Patched 5.4 2025-10-30 Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the link-handling functions used by status and report pages. Insufficient validation o&hellip;