Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Gotham HIGH 7.5
CVE-2022-27892

Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would have allowed an attacker to exhaust the memory of the Got…

Fix: 3.22.11.2+
Fix from $1,950 2023-02-16
Gotham HIGH 7.5
CVE-2022-27897

Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would load portions of maliciously crafted zip files to memory.…

Fix: 3.22.11.2+
Fix from $1,950 2023-02-16
Windows 10 HIGH 7.5
CVE-2023-21816

Windows Active Directory Domain Services API Denial of Service Vulnerability

Fix: 10.0.10240.19747 / 10.0.14393.5717+
Fix from $1,950 2023-02-14
Windows 10 HIGH 7.5
CVE-2023-21818EPSS 43%

Windows Secure Channel Denial of Service Vulnerability

Fix: 10.0.10240.19747 / 10.0.14393.5717+
Fix from $1,950 2023-02-14
Windows 10 1507 HIGH 8.8
CVE-2023-21685

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

Fix: 10.0.10240.19747 / 10.0.14393.5717+
Fix from $1,950 2023-02-14
Splunk HIGH 8.0
CVE-2023-22934

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘pivot’ search processing language (SPL) command lets a search bypass SPL safeguar…

Fix: 8.1.13 / 8.2.10+
Fix from $1,950 2023-02-14
Splunk HIGH 8.8
CVE-2023-22935

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘display.page.search.patterns.sensitivity’ search parameter lets a search bypass S…

Fix: 8.1.13 / 8.2.10+
Fix from $1,950 2023-02-14
Splunk HIGH 8.8
CVE-2023-22939

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘map’ search processing language (SPL) command lets a search bypass SPL safeguards…

Fix: 8.1.13 / 8.2.10+
Fix from $1,950 2023-02-14
Splunk MEDIUM 5.7
CVE-2023-22940

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, aliases of the ‘collect’ search processing language (SPL) command, including ‘summaryi…

Fix: 8.1.13 / 8.2.10+
Fix from $1,600 2023-02-14
Sipass Integrated Acc Ap Firmware HIGH 7.8
CVE-2022-31808

A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V2.85.44), SiPass integrated ACC-AP (All versions < V2.85.43…

Fix: 2.85.43 / 2.85.44+
Fix from $1,950 2023-02-14
Cf Wr610n Firmware HIGH 8.8
CVE-2022-45725EPSS 7%

Improper Input Validation in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to execute arbitrary code on the target vi…

Mitigation only
Fix from $1,950 2023-02-13
Smartpower Web CRITICAL 9.8
CVE-2022-45088

Improper Input Validation vulnerability in Group Arge Energy and Control Systems Smartpower Web allows PHP Local File Inclusion. This issue affects …

Fix: 23.01.01+
Fix from $2,300 2023-02-12
Csr8811 Firmware HIGH 7.5
CVE-2022-40502

Transient DOS due to improper input validation in WLAN Host.

Mitigation only
Fix from $1,950 2023-02-12
Csr8811 Firmware HIGH 7.5
CVE-2022-34146

Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.

Mitigation only
Fix from $1,950 2023-02-12
Ar8031 Firmware CRITICAL 9.8
CVE-2022-25729

Memory corruption in modem due to improper length check while copying into memory

Mitigation only
Fix from $2,300 2023-02-12
Qam8295p Firmware MEDIUM 5.5
CVE-2022-33216

Transient Denial-of-service in Automotive due to improper input validation while parsing ELF file.

Mitigation only
Fix from $1,600 2023-02-12
Ipython HIGH 7.0
CVE-2023-24816

IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally developed for the Python prog…

Fix: 8.10.0+
Fix from $1,950 2023-02-10
Alienware Command Center HIGH 7.8
CVE-2023-24569

Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local authenticated malicious user co…

Fix: after 5.5.37.0
Fix from $1,950 2023-02-10
E5573cs 322 Firmware MEDIUM 5.3
CVE-2018-7935

There is a vulnerability in 21.328.01.00.00 version of the E5573Cs-322. Remote attackers could exploit this vulnerability to make the network where t…

No fix yet
Fix from $1,600 2023-02-10
Android HIGH 7.8
CVE-2023-21451

A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause memory corruptions.

Mitigation only
Fix from $1,950 2023-02-09
Android HIGH 7.8
CVE-2023-21439

Improper input validation vulnerability in UwbDataTxStatusEvent prior to SMR Feb-2023 Release 1 allows attackers to launch certain activities.

Mitigation only
Fix from $1,950 2023-02-09
Android MEDIUM 5.5
CVE-2023-21446

Improper input validation in MyFiles prior to version 12.2.09 in Android R(11), 13.1.03.501 in Android S( 12) and 14.1.00.422 in Android T(13) allows…

Mitigation only
Fix from $1,600 2023-02-09
Galaxy Store MEDIUM 6.1
CVE-2023-21434EPSS 13%

Improper input validation vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to execute JavaScript by launching a web pag…

Fix: 4.5.49.8+
Fix from $1,600 2023-02-09
Kibana MEDIUM 6.5
CVE-2022-38778

A flaw (CVE-2022-38900) was discovered in one of Kibana’s third party dependencies, that could allow an authenticated user to perform a request that …

Fix: 0.2.1 / 7.17.9+
Fix from $1,600 2023-02-08
FreeBSD MEDIUM 6.5
CVE-2023-0751

When GELI reads a key file from standard input, it does not reuse the key file to initialize multiple providers at once resulting in the second and s…

Patch available
Fix from $1,600 2023-02-08
Api Connect HIGH 7.5
CVE-2022-34350

IBM API Connect 10.0.0.0 through 10.0.5.0, 10.0.1.0 through 10.0.1.7, and 2018.4.1.0 through 2018.4.1.20 is vulnerable to External Service Interactio…

Fix: after 2018.4.1.20
Fix from $1,950 2023-02-08
Libxpm HIGH 7.5
CVE-2022-44617

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can l…

Fix: 3.5.15+
Fix from $1,950 2023-02-06
Linux Kernel MEDIUM 5.5
CVE-2023-0615

A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue…

Fix: 6.2+
Fix from $1,600 2023-02-06
Android MEDIUM 6.7
CVE-2023-20612

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-02-06
Android MEDIUM 6.7
CVE-2023-20613

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-02-06