Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android HIGH 7.3
CVE-2023-21251

In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could le…

Patch available
Fix from $1,950 2023-07-13
Airflow MEDIUM 6.5
CVE-2023-22888

Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to cause a service disruption by manipulating the run_i…

Fix: 2.6.3+
Fix from $1,600 2023-07-12
Vp9 Video Extensions MEDIUM 5.5
CVE-2023-36872

VP9 Video Extensions Information Disclosure Vulnerability

Fix: 1.0.61591.0+
Fix from $1,600 2023-07-11
Windows 10 1507 CRITICAL 9.8
CVE-2023-35365

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $2,300 2023-07-11
Windows 10 1507 CRITICAL 9.8
CVE-2023-35366

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $2,300 2023-07-11
Windows 10 1507 CRITICAL 9.8
CVE-2023-35367

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $2,300 2023-07-11
Windows 10 1507 MEDIUM 5.4
CVE-2023-35336

Windows MSHTML Platform Security Feature Bypass Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,600 2023-07-11
Windows 10 1507 HIGH 8.8
CVE-2023-35303

USB Audio Class System Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,950 2023-07-11
Windows 10 1507 MEDIUM 5.5
CVE-2023-35306

Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,600 2023-07-11
Windows 10 1507 CRITICAL 9.8
CVE-2023-32057

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $2,300 2023-07-11
Windows 10 1809 MEDIUM 6.5
CVE-2023-32037

Windows Layer-2 Bridge Network Driver Information Disclosure Vulnerability

Fix: 10.0.17763.4645 / 10.0.19041.3208+
Fix from $1,600 2023-07-11
Ruggedcom Rox Mx5000 Firmware MEDIUM 5.3
CVE-2022-29562

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versions < V2.16.0), RUGGEDCOM ROX …

Fix: 2.16.0+
Fix from $1,600 2023-07-11
Sipass Integrated HIGH 7.5
CVE-2022-31810

A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data p…

Fix: 2.90.3.8+
Fix from $1,950 2023-07-11
Foundry Frontend HIGH 7.7
CVE-2023-22835

A security defect was identified that enabled a user of Foundry Issues to perform a Denial of Service attack by submitting malformed data in an Issue…

Fix: 2.510.0 / 6.228.0+
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30446

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30447

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30448

IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30449

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30442

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 federated server is vulnerable to a denial of service as the server m…

Patch available
Fix from $1,950 2023-07-10
Db2 HIGH 7.5
CVE-2023-30445

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted qu…

Patch available
Fix from $1,950 2023-07-10
Watson Knowledge Catalog On Cloud Pak For Data MEDIUM 6.5
CVE-2023-28955

IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 could allow an authenticated user send a specially crafted request that could cause a denial o…

Fix: 4.7+
Fix from $1,600 2023-07-10
Zephyr HIGH 7.5
CVE-2023-0359

A missing nullptr-check in handle_ra_input can cause a nullptr-deref.

Fix: after 3.2.0
Fix from $1,950 2023-07-10
Fedora MEDIUM 5.5
CVE-2023-1183EPSS 65%

A flaw was found in the Libreoffice package. An attacker can craft an odb containing a "database/script" file with a SCRIPT command where the content…

Fix: 7.4.6+
Fix from $1,600 2023-07-10
Mastodon MEDIUM 5.4
CVE-2023-36462

Mastodon is a free, open-source social network server based on ActivityPub. Starting in version 2.6.0 and prior to versions 3.5.9, 4.0.5, and 4.1.3, …

Fix: 3.5.9 / 4.0.5+
Fix from $1,600 2023-07-06
Emui MEDIUM 5.3
CVE-2023-3456

Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation of this vulnerability may affect service confidenti…

Mitigation only
Fix from $1,600 2023-07-06
Emui HIGH 7.5
CVE-2023-37241

Input verification vulnerability in the WMS API. Successful exploitation of this vulnerability may cause the device to restart.

No fix yet
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30663

Improper input validation vulnerability in OemPersonalizationSetLock in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an…

Mitigation only
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30664

Improper input validation vulnerability in RegisteredMSISDN prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

No fix yet
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30655

Improper input validation vulnerability in SCEPProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

Mitigation only
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30656

Improper input validation vulnerability in LSOItemData prior to SMR Jul-2023 Release 1 allows attackers to launch certain activities.

Mitigation only
Fix from $1,950 2023-07-06