Vulnerability Name CVE Severity
Chamilo Improper Input Validation Vulnerability (CVE-2012-4030) CVE-2012-4030
Chamilo Improper Input Validation Vulnerability (CVE-2021-31933) CVE-2021-31933
Chamilo Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2026-31939) CVE-2026-31939
Chamilo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-35413) CVE-2021-35413
Chamilo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-27524) CVE-2024-27524
Chamilo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2025-52482) CVE-2025-52482
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2023-4221) CVE-2023-4221
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2023-4222) CVE-2023-4222
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-50193) CVE-2025-50193
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-50194) CVE-2025-50194
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-50195) CVE-2025-50195
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-50196) CVE-2025-50196
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-50197) CVE-2025-50197
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2026-32892) CVE-2026-32892
Chamilo Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2026-35196) CVE-2026-35196
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-20329) CVE-2018-20329
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2025-50188) CVE-2025-50188
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2025-50189) CVE-2025-50189
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2025-50191) CVE-2025-50191
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2026-30881) CVE-2026-30881
Chamilo Improper Privilege Management Vulnerability (CVE-2022-27421) CVE-2022-27421
Chamilo Improper Privilege Management Vulnerability (CVE-2026-33706) CVE-2026-33706
Chamilo Improper Privilege Management Vulnerability (CVE-2026-40291) CVE-2026-40291
Chamilo Incorrect Authorization Vulnerability (CVE-2024-30616) CVE-2024-30616
Chamilo Missing Authentication for Critical Function Vulnerability (CVE-2026-34160) CVE-2026-34160
Chamilo NULL Pointer Dereference Vulnerability (CVE-2026-32894) CVE-2026-32894
Chamilo Other Vulnerability (CVE-2023-34962) CVE-2023-34962
Chamilo Server-Side Request Forgery (SSRF) Vulnerability (CVE-2022-27426) CVE-2022-27426
Chamilo Session Fixation Vulnerability (CVE-2026-31940) CVE-2026-31940
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-40407) CVE-2022-40407
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-42029) CVE-2022-42029
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4223) CVE-2023-4223
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4224) CVE-2023-4224
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4225) CVE-2023-4225
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4226) CVE-2023-4226
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2026-29041) CVE-2026-29041
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2026-32931) CVE-2026-32931
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2026-33704) CVE-2026-33704
Chamilo Use of Insufficiently Random Values Vulnerability (CVE-2026-33710) CVE-2026-33710
Chart.js Improper Input Validation Vulnerability (CVE-2020-7746) CVE-2020-7746
Cherokee Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-20798) CVE-2019-20798
Cherokee Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2019-20799) CVE-2019-20799
Cherokee NULL Pointer Dereference Vulnerability (CVE-2020-12845) CVE-2020-12845
CherryPy Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-0252) CVE-2008-0252
Cisco Adaptive Security Appliance (ASA) Path Traversal (CVE-2018-0296) CVE-2018-0296
Cisco Adaptive Security Appliance (ASA) Path Traversal CVE-2020-3452 CVE-2020-3452
Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability CVE-2018-15440
Citrix ADC/Gateway Unauthenticated Remote Code Execution CVE-2019-19781
Citrix Gateway Open Redirect and XSS CVE-2023-24488 CVE-2023-24487
Citrix XenMobile Server Path Traversal CVE-2020-8209
CKEditor 4.0.1 cross-site scripting vulnerability
CKEditor Other Vulnerability (CVE-2022-24729) CVE-2022-24729
Claroline Other Vulnerability (CVE-2005-1375) CVE-2005-1375
Claroline Other Vulnerability (CVE-2005-1376) CVE-2005-1376
Claroline Other Vulnerability (CVE-2005-1377) CVE-2005-1377
Claroline Other Vulnerability (CVE-2006-1594) CVE-2006-1594
Claroline Other Vulnerability (CVE-2006-1596) CVE-2006-1596
Claroline Other Vulnerability (CVE-2006-5256) CVE-2006-5256
Claroline Other Vulnerability (CVE-2006-7048) CVE-2006-7048
Client-Side Prototype Pollution
Client Side Template Injection
ClipBucket Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-5849) CVE-2012-5849
ClipBucket Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-6643) CVE-2012-6643
Cloud metadata publicly exposed
Cmd hijack vulnerability
Code Evaluation (Apache Struts) S2-046 CVE-2017-5638
Code Execution via WebDav
CodeIgniter 2.1.3 xss_clean() filter bypass CVE-2013-4891
CodeIgniter session decoding vulnerability
CodeIgniter weak encryption key
ColdFusion 8 FCKEditor file upload vulnerability CVE-2009-2265
ColdFusion 9 solr service exposed CVE-2010-0185
ColdFusion Access Control bypass (CVE-2023-29298/CVE-2023-38205) CVE-2023-29298 CVE-2023-38205
ColdFusion AMF Deserialization RCE CVE-2017-3066
ColdFusion Arbitrary File Upload CVE-2018-15961