Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android HIGH 7.8
CVE-2023-30657

Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged acti…

Mitigation only
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30658

Improper input validation vulnerability in DataProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

Mitigation only
Fix from $1,950 2023-07-06
Android HIGH 7.8
CVE-2023-30659

Improper input validation vulnerability in Transaction prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

Mitigation only
Fix from $1,950 2023-07-06
Uptime Kuma HIGH 8.8
CVE-2023-36821

Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in versions prior to 1.22.1, whi…

Fix: 1.22.1+
Fix from $1,950 2023-07-05
Debian Linux MEDIUM 5.0
CVE-2023-35936

Pandoc is a Haskell library for converting from one markup format to another, and a command-line tool that uses this library. Starting in version 1.1…

Fix: 3.1.4+
Fix from $1,600 2023-07-05
Mechanicalsoup HIGH 7.5
CVE-2023-34457

MechanicalSoup is a Python library for automating interaction with websites. Starting in version 0.2.0 and prior to version 1.3.0, a malicious web se…

Fix: 1.3.0+
Fix from $1,950 2023-07-05
Any23 MEDIUM 5.3
CVE-2023-34150

** UNSUPPORTED WHEN ASSIGNED ** Use of TikaEncodingDetector in Apache Any23 can cause excessive memory usage.

Fix: after 2.7
Fix from $1,600 2023-07-05
315 5g Firmware CRITICAL 9.8
CVE-2023-21631

Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.

Mitigation only
Fix from $2,300 2023-07-04
Dgx A100 Firmware HIGH 7.8
CVE-2023-25522

NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause improper input validation by providing configuration information i…

Fix: 1.21+
Fix from $1,950 2023-07-04
Kubernetes MEDIUM 6.5
CVE-2023-2727

Users may be able to launch containers using images that are restricted by ImagePolicyWebhook when using ephemeral containers. Kubernetes clusters ar…

Fix: after 1.27.2
Fix from $1,600 2023-07-03
Kubernetes MEDIUM 6.5
CVE-2023-2728

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral …

Fix: after 1.27.2
Fix from $1,600 2023-07-03
Apache Airflow Providers Apache Hive CRITICAL 9.8
CVE-2023-35797

Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Hive Provider. This issue affects Apache Airflow Apache Hive Pro…

Fix: 6.1.1+
Fix from $2,300 2023-07-03
Endpoint Manager CRITICAL 9.8
CVE-2023-28324EPSS 13%

A improper input validation vulnerability exists in Ivanti Endpoint Manager 2022 and below that could allow privilege escalation or remote code execu…

Fix: after 2022
Fix from $2,300 2023-07-01
Apache Airflow Providers Jdbc HIGH 8.8
CVE-2023-22886

Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow JDBC Provider. Airflow JDBC Provider Connection’s [Connection UR…

Fix: 4.0.0+
Fix from $1,950 2023-06-29
Android HIGH 7.8
CVE-2023-21192

In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to im…

Mitigation only
Fix from $1,950 2023-06-28
Telepresence Video Communication Server HIGH 7.7
CVE-2023-20192

Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated attacker wit…

Mitigation only
Fix from $1,950 2023-06-28
Telepresence Video Communication Server MEDIUM 6.5
CVE-2023-20105

A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow a…

Mitigation only
Fix from $1,600 2023-06-28
Bkg Professional Ntripcaster MEDIUM 6.1
CVE-2023-3034

Reflected XSS affects the ‘mode’ parameter in the /admin functionality of the web application in versions <=2.0.44

Fix: after 2.0.44
Fix from $1,600 2023-06-28
Xclarity Administrator MEDIUM 6.5
CVE-2023-34421

A valid, authenticated LXCA user with elevated privileges may be able to replace filesystem data through a specifically crafted web API call due to i…

Fix: 4.0.0+
Fix from $1,600 2023-06-26
Xclarity Administrator MEDIUM 6.5
CVE-2023-34422

A valid, authenticated LXCA user with elevated privileges may be able to delete folders in the LXCA filesystem through a specifically crafted web API…

Fix: 4.0.0+
Fix from $1,600 2023-06-26
Vega MEDIUM 5.2
CVE-2023-35163

Vega is a decentralized trading platform that allows pseudo-anonymous trading of derivatives on a blockchain. Prior to version 0.71.6, a vulnerabilit…

Fix: 0.71.6+
Fix from $1,600 2023-06-23
Jetson Linux MEDIUM 5.5
CVE-2023-25520

NVIDIA Jetson Linux Driver Package contains a vulnerability in nvbootctrl, where a privileged local attacker can configure invalid settings, resultin…

Fix: 32.7.4+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28026

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28027

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28031

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28034

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28036

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28044

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28050

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23
Alienware Area 51m R1 Firmware MEDIUM 6.7
CVE-2023-28058

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp…

Fix: 1.0.20 / 1.1.0+
Fix from $1,600 2023-06-23