Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cache vulnerabilities and exploits
(subscribe to this query)
9.9
CVSSv3
CVE-2022-2992
A vulnerability in GitLab CE/EE affecting all versions from 11.10 before 15.1.6, 15.2 to 15.2.4, 15.3 to 15.3.2 allows an authenticated user to achieve remote code execution via the Import from GitHub API endpoint.
Gitlab Gitlab
5 Github repositories
9.8
CVSSv3
CVE-2024-2876
The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to SQL Injection via the 'run' function of the 'IG_ES_Subscribers_Query' class in all versions up to, a...
1 Github repository
1 Article
9.8
CVSSv3
CVE-2023-47143
IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 up to and including 7.3.0.10 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an malicious user to conduct various attacks against the vulnerable system...
Ibm Tivoli Application Dependency Discovery Manager
9.8
CVSSv3
CVE-2024-23653
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. In addition to running containers as build steps, BuildKit also provides APIs for running interactive containers based on built images. It was possible to use th...
Mobyproject Buildkit
3 Github repositories
9.8
CVSSv3
CVE-2023-43504
A vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validation service in affected application is vulnerable to Structured Exception Handler (SEH) based buffer overflow. This could allow an malicious user to execute ...
Siemens Comos
9.8
CVSSv3
CVE-2023-33028
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
Qualcomm Ar8035 Firmware -
Qualcomm Ar9380 Firmware -
Qualcomm Csr8811 Firmware -
Qualcomm Wcn6750 Firmware -
Qualcomm Qca6390 Firmware -
Qualcomm Wcn685x-5 Firmware -
Qualcomm Wcn685x-1 Firmware -
Qualcomm Wcn785x-1 Firmware -
Qualcomm Wcn785x-5 Firmware -
Qualcomm Immersive Home 214 Platform Firmware -
Qualcomm Immersive Home 216 Platform Firmware -
Qualcomm Immersive Home 316 Platform Firmware -
Qualcomm Immersive Home 318 Platform Firmware -
Qualcomm Immersive Home 3210 Platform Firmware -
Qualcomm Immersive Home 326 Platform Firmware -
Qualcomm Ipq5010 Firmware -
Qualcomm Ipq5028 Firmware -
Qualcomm Ipq5332 Firmware -
Qualcomm Ipq6000 Firmware -
Qualcomm Ipq6010 Firmware -
Qualcomm Ipq6018 Firmware -
Qualcomm Ipq6028 Firmware -
9.8
CVSSv3
CVE-2023-27238
LavaLite CMS v 9.0.0 exists to be vulnerable to web cache poisoning.
Lavalite Lavalite 9.0.0
9.8
CVSSv3
CVE-2023-1478
The Hummingbird WordPress plugin prior to 3.4.2 does not validate the generated file path for page cache files before writing them, leading to a path traversal vulnerability in the page cache module.
Incsub Hummingbird
9.8
CVSSv3
CVE-2023-24538
Templates do not properly consider backticks (`) as Javascript string delimiters, and do not escape them as expected. Backticks are used, since ES6, for JS template literals. If a template contains a Go template action within a Javascript template literal, the contents of the act...
Golang Go
2 Github repositories
9.8
CVSSv3
CVE-2022-48367
An issue exists in eZ Publish Ibexa Kernel prior to 7.5.28. Access control based on object state is mishandled.
Ibexa Kernel
Ibexa Digital Experience Platform
Ibexa Ez Platform Kernel
Ibexa Fastly
Ibexa Ezplatform-http-cache-fastly
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-3611
CVE-2024-4947
CVE-2024-32988
CVE-2020-35165
local file inclusion
CVE-2024-4980
bypass
malicious code
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »