Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.5 CVE-2021-26631 Improper input validation vulnerability in Mangboard commerce package could lead to occur for abnormal request. A remote attacker can exploit this vu… Commerce 1.3.9+ Fix from $1,9502022-05-19 HIGH 8.6 CVE-2022-25161 Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 1… Melsec Iq Fx5u 32mt\/es Firmware 1.270+ Fix from $1,9502022-05-18 MEDIUM 5.3 CVE-2022-25162 Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 1… Melsec Iq Fx5u 32mt\/es Firmware 1.270+ Fix from $1,6002022-05-18 HIGH 8.8 CVE-2022-1727 Improper Input Validation in GitHub repository jgraph/drawio prior to 18.0.6. Drawio 18.0.6+ Fix from $1,9502022-05-18 MEDIUM 5.5 CVE-2022-28188 NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product r… Gpu Display Driver 11.8 / 13.3+ Fix from $1,6002022-05-17 MEDIUM 5.5 CVE-2022-28190 NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where improper inpu… Gpu Display Driver Patch available Fix from $1,6002022-05-17 MEDIUM 6.1 CVE-2022-28186 NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product r… Gpu Display Driver 11.8 / 13.3+ Fix from $1,6002022-05-17 HIGH 7.8 CVE-2021-33025 xArrow SCADA versions 7.2 and prior permits unvalidated registry keys to be run with application-level privileges. Xarrow after 7.2 Fix from $1,9502022-05-16 MEDIUM 5.5 CVE-2021-26351 Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to invalid DRAM addre… Ryzen 3 3100 Firmware Mitigation only Fix from $1,6002022-05-12 HIGH 8.8 CVE-2022-26781 Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A spec… Ir302 Firmware after 3.5.37 Fix from $1,9502022-05-12 HIGH 8.8 CVE-2022-26782 Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A spec… Ir302 Firmware after 3.5.37 Fix from $1,9502022-05-12 MEDIUM 6.7 CVE-2022-24382 Improper input validation in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local acce… Lapbc510 Firmware Patch available Fix from $1,6002022-05-12 HIGH 8.8 CVE-2022-26780 Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A spec… Ir302 Firmware after 3.5.37 Fix from $1,9502022-05-12 MEDIUM 6.7 CVE-2021-33108 Improper input validation in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged user to potentially enable esca… In Band Manageability after 2.13.0 Fix from $1,6002022-05-12 MEDIUM 5.5 CVE-2022-21136 Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access. Core I9 7940x Firmware Mitigation only Fix from $1,6002022-05-12 HIGH 8.0 CVE-2021-0126 Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalatio… Manageability Commander 2.2+ Fix from $1,9502022-05-12 HIGH 7.8 CVE-2021-0154 Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privileg… Xeon E 2314 Firmware Mitigation only Fix from $1,9502022-05-12 HIGH 7.8 CVE-2021-0159 Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescal… Xeon Bronze 3204 Firmware Mitigation only Fix from $1,9502022-05-12 CRITICAL 9.8 CVE-2021-33315 The TRENDnet TI-PG1284i switch(hw v2.0R) prior to version 2.0.2.S0 suffers from an integer underflow vulnerability. This vulnerability exists in its … Ti Pg1284i Firmware 2.0.2.s0+ Fix from $2,3002022-05-11 CRITICAL 9.8 CVE-2021-33316 The TRENDnet TI-PG1284i switch(hw v2.0R) prior to version 2.0.2.S0 suffers from an integer underflow vulnerability. This vulnerability exists in its … Ti Pg1284i Firmware 2.0.2.s0+ Fix from $2,3002022-05-11 MEDIUM 5.5 CVE-2021-26373 Insufficient bound checks in the System Management Unit (SMU) may result in a system voltage malfunction that could result in denial of resources and… Epyc 7232p Firmware Mitigation only Fix from $1,6002022-05-11 CRITICAL 9.1 CVE-2022-29897 On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the traceroute utility integrated in the WebUI to execute arbitrary co… Rad Ism 900 En Bd Firmware Mitigation only Fix from $2,3002022-05-11 MEDIUM 6.5 CVE-2022-1406 Improper input validation in GitLab CE/EE affecting all versions from 8.12 prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0 all… GitLab 14.8.6 / 14.9.4+ Fix from $1,6002022-05-11 MEDIUM 5.3 CVE-2022-1431 An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.8.6, all versions starting from 14.9 before 14.9.4, all v… GitLab 14.8.6 / 14.9.4+ Fix from $1,6002022-05-10 HIGH 7.8 CVE-2021-46771 Insufficient validation of addresses in AMD Secure Processor (ASP) firmware system call may potentially lead to arbitrary code execution by a comprom… Epyc 7763 Firmware Mitigation only Fix from $1,9502022-05-10 HIGH 7.1 CVE-2021-26370 Improper validation of destination address in SVC_LOAD_FW_IMAGE_BY_INSTANCE and SVC_LOAD_BINARY_BY_ATTRIB in a malicious UApp or ABL may allow an att… Epyc 7763 Firmware Mitigation only Fix from $1,9502022-05-10 MEDIUM 6.6 CVE-2022-30330 In the KeepKey firmware before 7.3.2,Flaws in the supervisor interface can be exploited to bypass important security restrictions on firmware operati… Keepkey Firmware 7.3.2+ Fix from $1,6002022-05-07 HIGH 7.8 CVE-2022-24098 Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by an improper input validation vulnerability when parsing a PCX f… Photoshop after 23.2.2 Fix from $1,9502022-05-06 MEDIUM 5.5 CVE-2021-27760 An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote C… Hcl Inotes Mitigation only Fix from $1,6002022-05-06 CRITICAL 9.1 CVE-2022-1053 Keylime does not enforce that the agent registrar data is the same when the tenant uses it for validation of the EK and identity quote and the verifi… Fedora 6.4.0+ Fix from $2,3002022-05-06