CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2021-44832 MEDIUM

Apache Log4j2 vulnerable to RCE via JDBC Appender when attacker controls configuration

CVSS 6.6 EPSS 97.91% Dec 28, 2021
CVE-2021-41184 MEDIUM

XSS in the `of` option of the `.position()` util

CVSS 6.5 EPSS 40.77% Oct 26, 2021
MavenNuGetRubyGemsnpm
CVE-2021-41183 MEDIUM

XSS in `*Text` options of the Datepicker widget

CVSS 6.5 EPSS 8.53% Oct 26, 2021
MavenNuGetRubyGemsnpm
CVE-2021-41182 MEDIUM

XSS in the `altField` option of the Datepicker widget

CVSS 6.5 EPSS 39.36% Oct 26, 2021
MavenNuGetRubyGemsnpm
CVE-2021-2351 HIGH

Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Diffi…

CVSS 8.3 EPSS 2.43% Jul 20, 2021
CVE-2020-11022 MEDIUM

jQuery has a potential XSS vulnerability

CVSS 6.9 EPSS 99.22% Apr 29, 2020
MavenNuGetPackagistRubyGemsnpm
CVE-2020-9488 LOW

log4j: improper validation of certificate with host mismatch in SMTP appender

CVSS 3.7 EPSS 8.10% Apr 27, 2020
CVE-2019-10219 MEDIUM

hibernate-validator: safeHTML validator allows XSS

CVSS 6.1 EPSS 2.16% Nov 8, 2019
CVE-2019-17195 CRITICAL

nimbus-jose-jwt: Uncaught exceptions while parsing a JWT

CVSS 9.8 EPSS 11.12% Oct 15, 2019
CVE-2019-11358 MEDIUM

jquery: Prototype pollution in object's prototype leading to denial of service, remote code execution, or property injection

CVSS 6.1 EPSS 86.82% Apr 19, 2019
MavenNuGetPackagistPyPIRubyGemsnpm
CVE-2017-5645 CRITICAL

log4j: Socket receiver deserialization vulnerability

CVSS 9.8 EPSS 89.79% Apr 17, 2017

Showing 1 to 11 CVEs · page 1