CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
Apache Log4j2 does not always protect from infinite recursion in lookup evaluation
Apache Ant ZIP, and ZIP based, archive denial of service vulerability
Apache Ant TAR archive denial of service vulnerability
Vulnerability in the Oracle User Management product of Oracle E-Business Suite (component: Proxy User Delegation). Supported versions that are affected are 12.…
RFD Protection Bypass via jsessionid
hibernate-validator: safeHTML validator allows XSS
faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, all…
apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
DoS Attack via Range Requests
jquery: Cross-site scripting via cross-domain ajax requests
tomcat: Remote Code Execution bypass for CVE-2017-12615
Vulnerability in the Oracle Retail Invoice Matching component of Oracle Retail Applications (subcomponent: Security). Supported versions that are affected are…
Showing 1 to 12 CVEs · page 1