cwe-138
Safeguard articles tagged "cwe-138" — guides, analysis, and best practices for software supply chain and application security.
7 articles
CVE-2021-27101: Accellion FTA SQL Injection Vulnerability
CVE-2021-27101 affects Accellion FTA and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-35394: Realtek Jungle SDK Remote Code Execution Vulnerability
CVE-2021-35394 affects Realtek Jungle Software Development Kit (SDK) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-10.
CVE-2021-25298: Nagios XI OS Command Injection
CVE-2021-25298 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-25297: Nagios XI OS Command Injection
CVE-2021-25297 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-25296: Nagios XI OS Command Injection
CVE-2021-25296 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2022-26352: dotCMS Unrestricted Upload of File Vulnerability
CVE-2022-26352 affects dotCMS dotCMS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-25.
CVE-2022-27926: Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability
CVE-2022-27926 affects Synacor Zimbra Collaboration Suite (ZCS) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-04-03.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.