Vulnerability Name CVE Severity
Docker Registry API is accessible without authentication
Dojo Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Vulnerability (CVE-2020-5258) CVE-2020-5258
Dolibarr Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-1010054) CVE-2019-1010054
Dolibarr Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-11825) CVE-2020-11825
Dolibarr Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31503) CVE-2024-31503
Dolibarr CVE-2019-11200 Vulnerability (CVE-2019-11200) CVE-2019-11200
Dolibarr CVE-2023-38886 Vulnerability (CVE-2023-38886) CVE-2023-38886
Dolibarr Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-14240) CVE-2017-14240
Dolibarr Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-17898) CVE-2017-17898
Dolibarr Files or Directories Accessible to External Parties Vulnerability (CVE-2023-33568) CVE-2023-33568
Dolibarr Improper Authentication Vulnerability (CVE-2021-25956) CVE-2021-25956
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-11201) CVE-2019-11201
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-0819) CVE-2022-0819
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-29477) CVE-2024-29477
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-37821) CVE-2024-37821
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2025-56588) CVE-2025-56588
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2026-22666) CVE-2026-22666
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2026-31018) CVE-2026-31018
Dolibarr Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-4197) CVE-2023-4197
Dolibarr Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2025-67486) CVE-2025-67486
Dolibarr Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2020-35136) CVE-2020-35136
Dolibarr Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2023-30253) CVE-2023-30253
Dolibarr Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2026-31019) CVE-2026-31019
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-1225) CVE-2012-1225
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-9839) CVE-2017-9839
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-18260) CVE-2017-18260
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-19994) CVE-2018-19994
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-19998) CVE-2018-19998
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-19209) CVE-2019-19209
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-25450) CVE-2019-25450
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-25452) CVE-2019-25452
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-14443) CVE-2020-14443
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-36625) CVE-2021-36625
Dolibarr Incorrect Authorization Vulnerability (CVE-2020-12669) CVE-2020-12669
Dolibarr Incorrect Authorization Vulnerability (CVE-2021-37517) CVE-2021-37517
Dolibarr Information Disclosure (CVE-2023-33568) CVE-2023-33568
Dolibarr Missing Authorization Vulnerability (CVE-2018-10092) CVE-2018-10092
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-9840) CVE-2017-9840
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-14209) CVE-2020-14209
Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-38887) CVE-2023-38887
Dolibarr Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-25957) CVE-2021-25957
Dolphin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-3638) CVE-2013-3638
Dotclear Improper Access Control Vulnerability (CVE-2015-8832) CVE-2015-8832
Dotclear Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-1613) CVE-2014-1613
Dotclear Other Vulnerability (CVE-2005-3963) CVE-2005-3963
Dotclear Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-5083) CVE-2011-5083
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-7902) CVE-2016-7902
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-9268) CVE-2016-9268
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-53952) CVE-2023-53952
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2024-58281) CVE-2024-58281
Dot CMS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-3187) CVE-2017-3187
Dot CMS Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-18875) CVE-2020-18875
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-4040) CVE-2016-4040
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8903) CVE-2016-8903
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8904) CVE-2016-8904
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8905) CVE-2016-8905
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8906) CVE-2016-8906
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8907) CVE-2016-8907
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-8908) CVE-2016-8908
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10007) CVE-2016-10007
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10008) CVE-2016-10008
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-12872) CVE-2019-12872
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-27848) CVE-2020-27848
Dot CMS Other Vulnerability (CVE-2016-4803) CVE-2016-4803
Dot CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8600) CVE-2016-8600
DotCMS unrestricted file upload (CVE-2022-26352) CVE-2022-26352
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-3189) CVE-2017-3189
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-11466) CVE-2017-11466
Dot CMS Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2022-45782) CVE-2022-45782
Dotenv .env file
DotNetNuke multiple vulnerabilities CVE-2012-1030
Dragonfly Arbitrary File Read/Write (CVE-2021-33564) CVE-2021-33564
Drupal 7 arbitrary PHP code execution and information disclosure CVE-2012-4553 CVE-2012-4554
Drupal 7PK - Security Features Vulnerability (CVE-2016-3163) CVE-2016-3163
Drupal Backup Migrate directory publicly accessible