Known Vulnerabilities for Aws Marketplace by Amazon
Listed below are 1 of the newest known vulnerabilities associated with "Aws Marketplace" by "Amazon".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41302 json | OpenClaw before 2026.3.31 contains a server-side request forgery vulnerability in the marketplace plugin download functionali... | Not Provided | 2026-04-21 | 2026-04-20 |
| CVE-2026-41297 json | OpenClaw before 2026.3.31 contains a server-side request forgery vulnerability in the marketplace plugin download functionali... | Not Provided | 2026-04-21 | 2026-04-21 |
| CVE-2026-40922 json | SiYuan is an open-source personal knowledge management system. In versions 3.6.1 through 3.6.3, a prior fix for XSS in bazaar... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-35454 json | The Code Extension Marketplace is an open-source alternative to the VS Code Marketplace. Prior to 2.4.2, Zip Slip vulnerabili... | Not Provided | 2026-04-06 | 2026-04-06 |
| CVE-2026-2375 json | The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to Privilege Escalation... | Not Provided | 2026-03-21 | 2026-04-08 |
| CVE-2025-64631 json | Missing Authorization vulnerability in WC Lovers WCFM Marketplace wc-multivendor-marketplace allows Exploiting Incorrectly Co... | Not Provided | 2025-12-16 | 2026-04-01 |
| CVE-2025-63029 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WC Lovers WCFM Marketpl... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2025-58702 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebWizards MarketKing m... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-49263 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WCVendors WC Vendors Ma... | Not Provided | 2025-06-06 | 2026-04-01 |
| CVE-2025-1311 json | The WooCommerce Multivendor Marketplace – REST API plugin for WordPress is vulnerable to SQL Injection via the 'id' paramet... | Not Provided | 2025-03-22 | 2026-04-08 |