cwe-502
Safeguard articles tagged "cwe-502" — guides, analysis, and best practices for software supply chain and application security.
77 articles
CVE-2023-0669: Fortra GoAnywhere MFT Remote Code Execution Vulnerability
CVE-2023-0669 affects Fortra GoAnywhere MFT and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-02-10.
CVE-2022-47986: IBM Aspera Faspex Code Execution Vulnerability
CVE-2022-47986 affects IBM Aspera Faspex and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-02-21.
CVE-2020-5741: Plex Media Server Remote Code Execution Vulnerability
CVE-2020-5741 affects Plex Media Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-03-10.
CVE-2021-39144: XStream Remote Code Execution Vulnerability
CVE-2021-39144 affects XStream XStream and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-03-10.
CVE-2022-31199: Netwrix Auditor Insecure Object Deserialization Vulnerability
CVE-2022-31199 affects Netwrix Auditor and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-07-11.
CVE-2023-26359: Adobe ColdFusion Deserialization of Untrusted Data Vulnerability
CVE-2023-26359 affects Adobe ColdFusion and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-08-21.
CVE-2023-40044: Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability
CVE-2023-40044 affects Progress WS_FTP Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-10-05.
CVE-2023-46604: Apache ActiveMQ Deserialization of Untrusted Data Vulnerability
CVE-2023-46604 affects Apache ActiveMQ and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-02.
CVE-2023-38203: Adobe ColdFusion Deserialization of Untrusted Data Vulnerability
CVE-2023-38203 affects Adobe ColdFusion and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-01-08.
CVE-2023-29300: Adobe ColdFusion Deserialization of Untrusted Data Vulnerability
CVE-2023-29300 affects Adobe ColdFusion and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-01-08.
CVE-2018-15133: Laravel Deserialization of Untrusted Data Vulnerability
CVE-2018-15133 affects Laravel Laravel Framework and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-01-16.
CVE-2023-43208: NextGen Healthcare Mirth Connect Deserialization of Untrusted Data Vulnerability
CVE-2023-43208 affects NextGen Healthcare Mirth Connect and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-05-20.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.