Known Vulnerabilities for products from Services Project
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Services Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54305 json | Not Provided | 2026-06-23 | 2026-06-23 | |
| CVE-2026-35527 json | Not Provided | 2026-05-05 | 2026-05-06 | |
| CVE-2026-22219 json | Not Provided | 2026-01-20 | 2026-07-14 | |
| CVE-2026-16204 json | Not Provided | 2026-07-19 | 2026-07-21 | |
| CVE-2026-16201 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2026-16200 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2026-16128 json | Not Provided | 2026-07-18 | 2026-07-20 | |
| CVE-2026-16126 json | Not Provided | 2026-07-18 | 2026-07-20 | |
| CVE-2026-16125 json | Not Provided | 2026-07-18 | 2026-07-21 | |
| CVE-2026-13748 json | Not Provided | 2026-06-29 | 2026-06-29 | |
| CVE-2015-4394 json | The Services module 7.x-3.x before 7.x-3.12 for Drupal allows remote attackers to bypass the field_access restriction and obt... | Not Provided | 2015-06-15 | 2026-05-06 |
| CVE-2015-4393 json | The resource/endpoint for uploading files in the Services module 7.x-3.x before 7.x-3.12 for Drupal allows remote authenticat... | Not Provided | 2015-06-15 | 2026-05-06 |
| CVE-2014-9153 json | Cross-site scripting (XSS) vulnerability in the Services module 7.x-3.x before 7.x-3.10 for Drupal allows remote authenticate... | Not Provided | 2014-12-01 | 2026-05-06 |
| CVE-2014-9152 json | The _user_resource_create function in the Services module 7.x-3.x before 7.x-3.10 for Drupal uses a password of 1 when creati... | Not Provided | 2014-12-01 | 2026-05-06 |
| CVE-2014-9151 json | The Services module 7.x-3.x before 7.x-3.10 for Drupal does not properly limit the rate of authentication attempts, which mak... | Not Provided | 2014-12-01 | 2026-05-06 |
| CVE-2013-2158 json | Cross-site request forgery (CSRF) vulnerability in the Services module 6.x-3.x and 7.x-3.x before 7.x-3.4 for Drupal allows r... | Not Provided | 2013-07-01 | 2026-04-29 |
Known software with vulnerabilities from Services Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Services Project | Services | 6.x-3.0 |