cwe-502
Safeguard articles tagged "cwe-502" — guides, analysis, and best practices for software supply chain and application security.
77 articles
CVE-2021-26857: Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26857 affects Microsoft Exchange Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2018-1000861: Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability
CVE-2018-1000861 affects Jenkins Jenkins Stapler Web Framework and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-02-10.
CVE-2019-10068: Kentico Xperience Deserialization of Untrusted Data Vulnerability
CVE-2019-10068 affects Kentico Xperience and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2019-6340: Drupal Core Remote Code Execution Vulnerability
CVE-2019-6340 affects Drupal Core and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2021-42237: Sitecore XP Remote Command Execution Vulnerability
CVE-2021-42237 affects Sitecore XP and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2021-27852: Checkbox Survey Deserialization of Untrusted Data Vulnerability
CVE-2021-27852 affects Checkbox Checkbox Survey and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-04-11.
CVE-2019-15271: Cisco RV Series Routers Deserialization of Untrusted Data Vulnerability
CVE-2019-15271 affects Cisco RV Series Routers and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-06-08.
CVE-2021-31010: Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability
CVE-2021-31010 affects Apple iOS, macOS, watchOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-25.
CVE-2018-2628: Oracle WebLogic Server Unspecified Vulnerability
CVE-2018-2628 affects Oracle WebLogic Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-08.
CVE-2022-35405: Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability
CVE-2022-35405 affects Zoho ManageEngine and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-22.
CVE-2022-41082: Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2022-41082 affects Microsoft Exchange Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-30.
CVE-2021-35587: Oracle Fusion Middleware Unspecified Vulnerability
CVE-2021-35587 affects Oracle Fusion Middleware and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-11-28.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.