Filter

BleepingComputerCISA orders agencies to patch Linux kernel bug exploited in attacks

First published (updated )

BleepingComputerCISA tags Microsoft .NET and Apache OFBiz bugs as exploited in attacks

First published (updated )

Apache OFBizApache OFBiz: Bypass SameSite restrictions with target redirection using URL parameters (SSTI and CSRF leading to RCE)

8.9
First published (updated )

Apache OFBizApache OFBiz: Prevent use of URLs in files when loading them from Java or Groovy, leading to a RCE

First published (updated )

Apache OFBizApache OFBiz Forced Browsing Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache OFBizApache OFBiz Incorrect Authorization Vulnerability

First published (updated )

Apache OFBizApache OFBiz Path Traversal Vulnerability

First published (updated )

Apache OFBizApache OFBiz: Path traversal or file inclusion

EPSS
0.05%
First published (updated )

BleepingComputerApache OFBiz RCE flaw exploited to find vulnerable Confluence servers

First published (updated )

Apache OFBizApache OFBiz: Pre-authentication Remote Code Execution (RCE) vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache OFBizApache OFBiz: Arbitrary file properties reading and SSRF attack

7.5
First published (updated )

Apache OFBizPre-auth RCE in Apache Ofbiz 18.12.09 due to XML-RPC still present

First published (updated )

CVE-2023-46819Apache OFBiz: Execution of Solr plugin queries without authentication

First published (updated )

Apache OFBizApache OFBiz: Arbitrary file reading vulnerability

7.5
First published (updated )

Apache OFBizRegular Expression Denial of Service (ReDoS) vulnerability in Apache OFBiz

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache OFBizJava Deserialization via RMI Connection from the Solr plugin of Apache OFBiz

First published (updated )

Apache OFBizServer-Side Template Injection affecting the ecommerce plugin of Apache OFBiz

7.5
First published (updated )

Apache OFBizUnauth Path Traversal with file corruption affecting the Birt plugin of Apache OFBiz

First published (updated )

Apache OFBizUnauth Stored XSS vulnerability in the Birt plugin of Apache OFBiz

First published (updated )

Apache OFBizGeneration of Error Message Containing Sensitive Information in Apache OFBiz

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache OFBizArbitrary file upload vulnerability in OFBiz

First published (updated )

Apache OFBizUnsafe deserialization in Apache OFBiz

First published (updated )

Apache OFBizRCE vulnerability in latest Apache OFBiz due to Java serialisation using RMI

First published (updated )

Apache OFBizRCE vulnerability in latest Apache OFBiz due to Java serialisation using RMI

First published (updated )

Apache OFBizXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache OFBizIDOR vulnerability in the order processing feature from ecommerce component of Apache OFBiz before 1…

First published (updated )

Apache OFBizCSRF

8.8
First published (updated )

Apache OFBizCSRF

7.5
First published (updated )

Apache OFBizXSS

First published (updated )

Apache OFBizan unauthenticated user could get access to information of some backend screens by invoking setSessi…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203