VulnScope — package-centric CVE lookup- HIGH8.8CVE-2023-5217⚠ KEVEPSS 5.0%libvpx - security update
- CRITICAL9.8⚠ KEVEPSS 94.0%Improper Control of Generation of Code ('Code Injection') in jai-ext
- HIGH8.8⚠ KEVEPSS 93.3%thunderbird - security update
- CRITICAL9.8⚠ KEVEPSS 94.4%Apache RocketMQ may have remote code execution vulnerability when using update configuration function
- HIGH8.6⚠ KEVEPSS 94.4%Administration Console authentication bypass in openfire xmppserver
- HIGH8.9⚠ KEVEPSS 84.0%Apache Superset: Session validation vulnerability when using provided default SECRET_KEY
- CRITICAL9.6⚠ KEVEPSS 0.08%chromium - security update
- HIGH7.5⚠ KEVEPSS 93.9%ZK Framework vulnerable to malicious POST
- HIGH8.8⚠ KEVEPSS 93.5%Apache Spark shell command injection vulnerability via Spark UI
- CRITICAL9.8⚠ KEVEPSS 94.4%salt - security update
- CRITICAL9.8⚠ KEVEPSS 94.2%salt - security update
- MEDIUM6.5⚠ KEVEPSS 93.7%SaltStack Salt is vulnerable Arbitrary Directory Access
- CRITICAL9.8⚠ KEVEPSS 94.4%Deserialization of Untrusted Data in Liferay Portal
- HIGH8.1⚠ KEVEPSS 88.6%Elasticsearch Improper Access Control vulnerability
- —⚠ KEVEPSS 99.9%Improper Access Control in Elasticsearch
- CRITICAL9.8⚠ KEVEPSS 93.1%Improper Access Control in Apache Shiro
- CRITICAL9.8⚠ KEVEPSS 98.5%Improper Input Validation in Apache ActiveMQ
- HIGH8.1⚠ KEVEPSS 100.0%tomcat7 - security update
- HIGH7.5⚠ KEVEPSS 22.4%Jenkins discloses project names via fingerprints
- CRITICAL9.8⚠ KEVEPSS 98.9%Code execution in Apache Struts 1 plugin
- CRITICAL9.8⚠ KEVEPSS 74.2%Richfaces vulnerable to arbitrary code execution
- CRITICAL9.8⚠ KEVEPSS 90.3%Apache Tomcat Improper Access Control vulnerability
- CRITICAL9.9⚠ KEVEPSS 76.0%Sandbox bypass in Jenkins Pipeline: Groovy Plugin
- CRITICAL9.8⚠ KEVEPSS 100.0%Code injection in Apache Struts
- CRITICAL9.8⚠ KEVEPSS 99.7%Deserialization of Untrusted Data in Jenkins