vulnti.work

Vulnerability list

Filter public vulnerability entries by severity / channel / vendor / time.

Clear
Oracle WebLogic Server, Injection
Critical 9.8 KEV

CVE-2019-2725 · 2026-09-04 · pending_review

Injection vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services).

Drupal Core Remote Code Execution Vulnerability
Critical 9.8 KEV

CVE-2018-7602 · 2026-09-03 · pending_review

A remote code execution vulnerability exists within multiple subsystems of Drupal that can allow attackers to exploit multiple attack vectors on a Drupal site.

Apache Tomcat Remote Code Execution Vulnerability
High 8.1 KEV

CVE-2017-12617 · 2026-09-03 · pending_review

When running Apache Tomcat, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.

Apache Tomcat on Windows Remote Code Execution Vulnerability
High 8.1 KEV

CVE-2017-12615 · 2026-09-03 · pending_review

When running Apache Tomcat on Windows with HTTP PUTs enabled, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be execute…

Next page →