Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Apache Airflow Providers Apache Spark HIGH 7.5
CVE-2023-40272

Apache Airflow Spark Provider, versions before 4.1.3, is affected by a vulnerability that allows an attacker to pass in malicious parameters when est…

Fix: 4.1.3+
Fix from $1,950 2023-08-17
Unified Contact Center Express MEDIUM 5.3
CVE-2023-20232

A vulnerability in the Tomcat implementation for Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker t…

Fix: 12.5+
Fix from $1,600 2023-08-16
Woodpecker HIGH 8.1
CVE-2023-40034

Woodpecker is a community fork of the Drone CI system. In affected versions an attacker can post malformed webhook data witch lead to an update of th…

Fix: 1.0.2+
Fix from $1,950 2023-08-16
Websphere Application Server HIGH 7.5
CVE-2023-38737

IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted reque…

Fix: after 23.0.0.7
Fix from $1,950 2023-08-16
Lol Html HIGH 7.5
CVE-2023-4241

lol-html can cause panics on certain HTML inputs. Anyone processing arbitrary 3rd party HTML with the library is affected.

Fix: 1.1.1+
Fix from $1,950 2023-08-16
Ryzen Master MEDIUM 6.7
CVE-2023-20564

Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may permit a privileged attacker to perform memory read…

Fix: 2.11.2.2659+
Fix from $1,600 2023-08-15
Chrome HIGH 8.8
CVE-2023-4357EPSS 47%

Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to bypass file access restriction…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Android MEDIUM 5.5
CVE-2023-21284

In multiple functions of DevicePolicyManager.java, there is a possible way to prevent enabling the Find my Device feature due to improper input valid…

Patch available
Fix from $1,600 2023-08-14
Android HIGH 7.8
CVE-2023-21272

In readFrom of Uri.java, there is a possible bad URI permission grant due to improper input validation. This could lead to local escalation of privil…

Patch available
Fix from $1,950 2023-08-14
Efibootguard MEDIUM 5.2
CVE-2023-39950

efibootguard is a simple UEFI boot loader with support for safely switching between current and updated partition sets. Insufficient or missing valid…

Fix: 0.15+
Fix from $1,600 2023-08-14
Emui HIGH 7.5
CVE-2023-39404

Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerability may caus…

Mitigation only
Fix from $1,950 2023-08-13
Emui HIGH 7.5
CVE-2023-39390

Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerability may caus…

Mitigation only
Fix from $1,950 2023-08-13
Emui HIGH 7.5
CVE-2023-39386

Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause newly instal…

Mitigation only
Fix from $1,950 2023-08-13
Emui CRITICAL 9.8
CVE-2023-39405

Vulnerability of out-of-bounds parameter read/write in the Wi-Fi module. Successful exploitation of this vulnerability may cause other apps to be exe…

No fix yet
Fix from $2,300 2023-08-13
Emui HIGH 7.5
CVE-2023-39382

Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.

Mitigation only
Fix from $1,950 2023-08-13
Emui HIGH 7.5
CVE-2023-39388

Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen …

No fix yet
Fix from $1,950 2023-08-13
Emui HIGH 7.5
CVE-2023-39389

Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen …

No fix yet
Fix from $1,950 2023-08-13
Emui HIGH 7.5
CVE-2023-39381

Input verification vulnerability in the storage module. Successful exploitation of this vulnerability may cause the device to restart.

Mitigation only
Fix from $1,950 2023-08-13
Apache Airflow Providers Apache Drill HIGH 7.5
CVE-2023-39553

Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Drill Provider. Apache Airflow Drill Provider is affected by a …

Fix: 2.4.3+
Fix from $1,950 2023-08-11
Nuc Rugged Kit Nuc8cchb Firmware MEDIUM 6.7
CVE-2023-34086

Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local acce…

Patch available
Fix from $1,600 2023-08-11
Nuc Kit Nuc7i7bnhx1 Firmware MEDIUM 6.7
CVE-2023-32617

Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to…

Mitigation only
Fix from $1,600 2023-08-11
Nuc 11 Pro Kit Nuc11tnhi70z Firmware MEDIUM 6.7
CVE-2023-29494

Improper input validation in BIOS firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local…

Mitigation only
Fix from $1,600 2023-08-11
Easy Streaming Wizard HIGH 7.8
CVE-2023-26587

Improper input validation for the Intel(R) Easy Streaming Wizard software may allow an authenticated user to potentially enable escalation of privile…

Mitigation only
Fix from $1,950 2023-08-11
Nuc 13 Extreme Compute Element Nuc13sbbi5 Firmware MEDIUM 6.7
CVE-2023-22449

Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local acce…

Patch available
Fix from $1,600 2023-08-11
Celeron J6413 Firmware HIGH 8.0
CVE-2022-44611

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege…

Mitigation only
Fix from $1,950 2023-08-11
Converged Security Management Engine Firmware HIGH 7.5
CVE-2022-36392

Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability before versions 11.8.94, 11.12.94, 11.22.94, 12.0.93,…

Fix: 11.8.94 / 11.12.94+
Fix from $1,950 2023-08-11
Nuc 10 Performance Kit Nuc10i7fnhn Firmware MEDIUM 6.7
CVE-2022-37336

Improper input validation in BIOS firmware for some Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local …

Mitigation only
Fix from $1,600 2023-08-11
Fedora HIGH 7.8
CVE-2022-38076

Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable es…

Fix: 3.2.20.23023 / 22.200+
Fix from $1,950 2023-08-11
Fedora MEDIUM 6.5
CVE-2022-36351

Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user to potentially enable …

Fix: 3.2.20.23023 / 22.200+
Fix from $1,600 2023-08-11
Avalanche CRITICAL 9.8
CVE-2023-32560EPSS 99%

An attacker can send a specially crafted message to the Wavelink Avalanche Manager, which could result in service disruption or arbitrary code execut…

Fix: 6.4.1+
Fix from $2,300 2023-08-10