Known vulnerabilities in EasyApache 4 2019-9-17

Software: EasyApache
Version: 4 2019-9-17
Software CPE: cpe:2.3:a:cpanel:easyapache:*:*:*:*:*:*:*:*
Total vulnerabilities: 155
Public exploits: 22
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting EasyApache version 4 2019-9-17 EasyApache 4 2019-9-17 is affected by 155 vulnerabilities: 3 critical, 16 high, 106 medium, 30 low Critical High Medium Low

Vulnerabilities (155)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130909 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-6735
CWE-79 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 19 more
#VU130910 - NULL Pointer Dereference
CVE-2026-7259
CWE-476 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 14 more
#VU130912 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2025-14179
CWE-89 High
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 19 more
#VU130913 - Use After Free
CVE-2026-6722
CWE-416 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 17 more
#VU130914 - Use After Free
CVE-2026-7261
CWE-416 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 17 more
#VU130915 - NULL Pointer Dereference
CVE-2026-7262
CWE-476 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 19 more
#VU130916 - Integer overflow
CVE-2026-7568
CWE-190 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 19 more
#VU130917 - Type conversion
CVE-2026-7258
CWE-704 Medium
No
No
4 25-58 10.05.2026 SB2026051001
SB20260511112
SB20260513120
and 17 more
#VU116213 - Out-of-bounds write
CVE-2025-9230
CWE-787 Medium
No
No
4 25-33 01.10.2025 SB2025100119
SB2025100132
SB2025100133
and 108 more
#VU115137 - Use of Insufficiently Random Values
CVE-2025-10148
CWE-330 Low
No
No
4 25-28 10.09.2025 SB2025091034
SB2025091144
SB2025091301
and 10 more
#VU114082 - Out-of-bounds read
CVE-2025-53859
CWE-125 Low
No
No
4 25-28 14.08.2025 SB2025081427
SB2025082564
SB2025082961
and 12 more
#VU113672 - Unchecked Return Value
CVE-2025-54571
CWE-252 Medium
No
No
4 25-26 06.08.2025 SB2025080617
SB20250816115
SB20250816119
and 40 more
#VU113118 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-27210
CWE-22 Low
Public exploit available
No
4 25-26 22.07.2025 SB2025072233
SB2025082103
SB2025091525
and 6 more
#VU111162 - Resource exhaustion
CVE-2025-48976
CWE-400 Medium
Public exploit available
No
4 25-20 16.06.2025 SB2025061634
SB2025061635
SB2025061927
and 156 more
#VU111161 - Resource exhaustion
CVE-2025-48988
CWE-400 Medium
Public exploit available
No
4 25-20 16.06.2025 SB2025061634
SB2025061927
SB20250620145
and 40 more
#VU111160 - Untrusted Search Path
CVE-2025-49124
CWE-426 Low
No
No
4 25-20 16.06.2025 SB2025061634
SB2025061927
SB2025112459
and 4 more
#VU111159 - Improper Protection of Alternate Path
CVE-2025-49125
CWE-424 Medium
No
No
4 25-20 16.06.2025 SB2025061634
SB2025061927
SB20250620145
and 35 more
#VU110191 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-5399
CWE-835 Low
No
No
4 25-19 04.06.2025 SB2025060430
SB2025060503
SB2025061212
and 10 more
#VU110075 - Resource exhaustion
CVE-2025-48866
CWE-400 Medium
No
No
4 25-18 02.06.2025 SB2025060248
SB2025060505
SB2025060901
and 9 more
#VU109658 - Resource exhaustion
CVE-2025-47947
CWE-400 Medium
No
No
4 25-18 22.05.2025 SB2025052240
SB2025052973
SB2025052974
and 20 more


Showing elements 1 - 20 out of 155