Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Traffic Server HIGH 7.5
CVE-2022-47185

Improper input validation vulnerability on the range header in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Ser…

Fix: after 9.2.1
Fix from $1,950 2023-08-09
Zoom MEDIUM 6.5
CVE-2023-39209

Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via ne…

Fix: 5.15.5+
Fix from $1,600 2023-08-08
.net Framework MEDIUM 5.9
CVE-2023-36873

.NET Framework Spoofing Vulnerability

Patch available
Fix from $1,600 2023-08-08
.net Framework HIGH 8.8
CVE-2023-36899EPSS 77%

ASP.NET Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2023-08-08
Jackson Dataformats Text HIGH 7.5
CVE-2023-3894

Those using jackson-dataformats-text to parse TOML data may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user suppli…

Fix: 2.15.0+
Fix from $1,950 2023-08-08
Windows 10 1507 MEDIUM 6.5
CVE-2023-38254

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Patch available
Fix from $1,600 2023-08-08
Windows 10 HIGH 7.5
CVE-2023-36912

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20107 / 10.0.14393.6167+
Fix from $1,950 2023-08-08
365 Apps MEDIUM 6.5
CVE-2023-36893

Microsoft Outlook Spoofing Vulnerability

Patch available
Fix from $1,600 2023-08-08
365 Apps MEDIUM 6.5
CVE-2023-36897

Visual Studio Tools for Office Runtime Spoofing Vulnerability

Fix: 15.9.56 / 16.11.29+
Fix from $1,600 2023-08-08
Exchange Server HIGH 8.8
CVE-2023-35368

Microsoft Exchange Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-08-08
Windows 10 1507 MEDIUM 6.5
CVE-2023-35376

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20107 / 10.0.14393.6167+
Fix from $1,600 2023-08-08
Windows 10 1507 MEDIUM 6.5
CVE-2023-35377

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20107 / 10.0.14393.6167+
Fix from $1,600 2023-08-08
Ses CRITICAL 9.8
CVE-2023-39532

SES is a JavaScript environment that allows safe execution of arbitrary programs in Compartments. In version 0.18.0 prior to 0.18.7, 0.17.0 prior to …

Fix: 0.13.5 / 0.14.5+
Fix from $2,300 2023-08-08
Aqt1000 Firmware HIGH 7.8
CVE-2023-21627

Memory corruption in Trusted Execution Environment while calling service API with invalid address.

Mitigation only
Fix from $1,950 2023-08-08
Qca6390 Firmware MEDIUM 6.5
CVE-2023-21647

Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.

Patch available
Fix from $1,600 2023-08-08
Prestashop CRITICAL 9.1
CVE-2023-39529

PrestaShop is an open source e-commerce web application. Prior to version 8.1.1, it is possible to delete a file from the server by using the Attachm…

Fix: 8.1.1+
Fix from $2,300 2023-08-07
Prestashop CRITICAL 9.1
CVE-2023-39530

PrestaShop is an open source e-commerce web application. Prior to version 8.1.1, it is possible to delete files from the server via the CustomerMessa…

Fix: 8.1.1+
Fix from $2,300 2023-08-07
Import In The Middle CRITICAL 9.8
CVE-2023-38704

import-in-the-middle is a module loading interceptor specifically for ESM modules. The import-in-the-middle loader works by generating a wrapper modu…

Fix: 1.4.2+
Fix from $2,300 2023-08-07
Insydeh2o MEDIUM 5.5
CVE-2023-27373

An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. Due to insufficient input validation, an attacker can tamper with a runtime-…

Mitigation only
Fix from $1,600 2023-08-07
Asyncos MEDIUM 5.3
CVE-2020-26082

A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, re…

Fix: 13.5.2+
Fix from $1,600 2023-08-04
Matrix Irc Bridge CRITICAL 9.8
CVE-2023-38690

matrix-appservice-irc is a Node.js IRC bridge for Matrix. Prior to version 1.0.1, it is possible to craft a command with newlines which would not be …

Fix: 1.0.1+
Fix from $2,300 2023-08-04
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37549

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37550

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37552

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37553

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37554

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37555

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37556

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37558

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inc…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37559

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inc…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03