nuget

842 tracked vulnerabilities.

CVE-2015-9251 MEDIUM
jQuery < 3.0.0 - Cross-Site Scripting via Cross-Domain Ajax Request
Jan 18, 2018
CVSS 6.1
EPSS 0.18
CVE-2015-8814 HIGH
Umbraco < 7.4.0 - Cross-Site Request Forgery via templates.asmx.cs
Mar 03, 2017
CVSS 8.8
EPSS 0.00
CVE-2015-8813 HIGH NUCLEI
Umbraco < 7.4.0 - Server-Side Request Forgery via FeedProxy URL Parameter
Mar 03, 2017
CVSS 8.2
EPSS 0.83
CVE-2015-2794 CRITICAL NUCLEI
DotNetNuke < 7.4.1 - Unauthenticated Application Reinstallation and Privilege Escalation via Install Wizard
Feb 06, 2017
CVSS 9.8
EPSS 0.93
CVE-2015-1566
DotNetNuke < 7.4.0 - Cross-Site Scripting
Feb 09, 2015
EPSS 0.00
CVE-2014-4172 CRITICAL
Jasig Java CAS Client <3.3.2, .NET CAS Client <1.0.2, phpCAS <1.3.3 - URL Parameter Injection
Jan 24, 2020
CVSS 9.8
EPSS 0.13
CVE-2013-7335
DotNetNuke <6.2.9, <7.1.1 - Open Redirect
Mar 12, 2014
EPSS 0.00
CVE-2013-4649
DotNetNuke < 6.2.9 and 7.x < 7.1.1 - Cross-Site Scripting via __dnnVariable Parameter
Mar 12, 2014
EPSS 0.00
CVE-2012-6708 MEDIUM
jQuery < 1.9.0 - Cross-Site Scripting via jQuery(strInput) Function
Jan 18, 2018
CVSS 6.1
EPSS 0.01
CVE-2012-6662
Redhat Enterprise Linux Desktop < 1.10.0 - XSS
Nov 24, 2014
EPSS 0.07
CVE-2011-4969
jQuery < 1.6.3 - Cross-Site Scripting via location.hash Element Selection
Mar 08, 2013
EPSS 0.06
CVE-2010-5312 MEDIUM
jQuery UI <1.10.0 - XSS
Nov 24, 2014
CVSS 6.1
EPSS 0.06
CVE-2010-1459
Mono < 2.6.4 - Cross-Site Scripting via __VIEWSTATE Parameter
May 27, 2010
EPSS 0.00
CVE-2009-4665
CuteSoft Components Cute Editor - Path Traversal
Mar 05, 2010
EPSS 0.03
CVE-2008-6540
DotNetNuke < 4.8.2 - Unauthenticated Access Restriction Bypass via Default Validation and Decryption Keys
Mar 30, 2009
EPSS 0.08
CVE-2007-0660
DotNetNuke IFrame < 03.02.01 - Cross-Site Scripting via Pass-Through Values
Feb 01, 2007
EPSS 0.01
CVE-2006-0743
Apache log4net 1.2.9 - Denial of Service via Format String in LocalSyslogAppender
Mar 09, 2006
EPSS 0.04