Filter
AND
-Infinity
0

The RegisterBad luck, Windows 10 users. No fix yet for ransomware-exploited bug

First published (updated )

Adobe ColdFusionColdFusion | Improper Authentication (CWE-287)

8.2
First published (updated )

Adobe ColdFusionColdFusion | Improper Input Validation (CWE-20)

7.1
First published (updated )

Adobe ColdFusionColdFusion | Cross-site Scripting (Reflected XSS) (CWE-79)

First published (updated )

Adobe ColdFusionColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)

8.7
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Adobe ColdFusionColdFusion | Improper Authentication (CWE-287)

First published (updated )

Adobe ColdFusionColdFusion | Deserialization of Untrusted Data (CWE-502)

8.4
First published (updated )

Adobe ColdFusionColdFusion | Improper Input Validation (CWE-20)

First published (updated )

Adobe ColdFusionColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)

8.2
First published (updated )

Adobe ColdFusionColdFusion | Improper Access Control (CWE-284)

8.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Adobe ColdFusionColdFusion | Improper Input Validation (CWE-20)

First published (updated )

Adobe ColdFusionColdFusion | Deserialization of Untrusted Data (CWE-502)

First published (updated )

Adobe ColdFusionColdFusion | Improper Access Control (CWE-284)

First published (updated )

Adobe ColdFusionColdFusion | Deserialization of Untrusted Data (CWE-502)

8.4
First published (updated )

Adobe ColdFusionColdFusion | Information Exposure (CWE-200)

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Adobe ColdFusionColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)

8.4
First published (updated )

Adobe ColdFusion 2025End of life

First published (updated )

The Register200-plus impressively convincing GitHub repos are serving up malware

First published (updated )

CISA Warns: Critical Adobe & Oracle Bugs Under Active Exploitation

First published (updated )
Social
reddit

US authorities warn Ghost ransomware leverages older CVEs

First published (updated )
Social
reddit

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

BleepingComputerCISA and FBI: Ghost ransomware breached orgs in 70 countries

First published (updated )

Adobe ColdFusionColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)

8.1
First published (updated )

Adobe ColdFusion 2023End of life

First published (updated )

Adobe ColdFusion 2023End of life

First published (updated )

Adobe ColdFusion 2021End of life

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Adobe ColdFusion 2021End of life

First published (updated )

Adobe ColdFusionColdFusion | Deserialization of Untrusted Data (CWE-502)

First published (updated )

Adobe ColdFusionColdFusion | Improper Authentication (CWE-287)

7.5
First published (updated )

Adobe ColdFusionColdFusion | Weak Cryptography for Passwords (CWE-261)

First published (updated )

Adobe ColdFusionColdFusion CFDOCUMENT file retrieval / access control bypass

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203