cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2020-25689,https://securityvulnerability.io/vulnerability/CVE-2020-25689,,"A memory leak flaw was found in WildFly in all versions up to 21.0.0.Final, where host-controller tries to reconnect in a loop, generating new connections which are not properly closed while not able to connect to domain-controller. This flaw allows an attacker to cause an Out of memory (OOM) issue, leading to a denial of service. The highest threat from this vulnerability is to system availability.",Red Hat,Wildfly-core,5.3,MEDIUM,0.0005699999746866524,false,false,false,false,,false,false,2020-11-02T21:15:00.000Z,0 CVE-2019-14838,https://securityvulnerability.io/vulnerability/CVE-2019-14838,,"A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server",Red Hat,Wildfly-core,5.2,MEDIUM,0.004000000189989805,false,false,false,false,,false,false,2019-10-14T14:32:53.000Z,0 CVE-2018-10934,https://securityvulnerability.io/vulnerability/CVE-2018-10934,,"A cross-site scripting (XSS) vulnerability was found in the JBoss Management Console versions before 7.1.6.CR1, 7.1.6.GA. Users with roles that can create objects in the application can exploit this to attack other privileged users.",Red Hat,Wildfly-core,5.4,MEDIUM,0.00139999995008111,false,false,false,false,,false,false,2019-03-27T12:20:07.000Z,0