Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2019-11228
repo/setting.go in Gitea before 1.7.6 and 1.8.x before 1.8-RC3 does not validate the form.MirrorAddress before calling SaveAddress.
Gitea
1.7.6+
HIGH 8.8
CVE-2018-20487
An issue was discovered in the firewall3 component in Inteno IOPSYS 1.0 through 3.16. The attacker must make a JSON-RPC method call to add a firewall…
Iopsys
after 3.16
MEDIUM 6.5
CVE-2019-3460
A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel before 5.1-rc1.
Linux Kernel
after 5.1
CRITICAL 9.8
CVE-2018-19300EPSS 74%
On D-Link DAP-1530 (A1) before firmware version 1.06b01, DAP-1610 (A1) before firmware version 1.06b01, DWR-111 (A1) before firmware version 1.02v02,…
Dap 1530 Firmware
after 2.02
HIGH 7.5
CVE-2019-11069
Sequelize version 5 before 5.3.0 does not properly ensure that standard conforming strings are used.
Sequelize
5.3.0+
HIGH 8.8
CVE-2019-11071
SPIP 3.1 before 3.1.10 and 3.2 before 3.2.4 allows authenticated visitors to execute arbitrary code on the host server because var_memotri is mishand…
Debian Linux
3.1.10 / 3.2.4+
CRITICAL 9.8
CVE-2019-0786EPSS 7%
An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to…
Windows 10
Patch available
MEDIUM 6.8
CVE-2019-0690
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
MEDIUM 6.8
CVE-2019-0695
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…
Windows 10
Patch available
MEDIUM 6.8
CVE-2019-0701
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1788
A vulnerability in the Object Linking & Embedding (OLE2) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior c…
Debian Linux
after 0.101.1
MEDIUM 5.5
CVE-2019-1798
A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allo…
Clamav
after 0.101.1
CRITICAL 9.8
CVE-2019-11014
The VStarCam vstc.vscam.client library and vstc.vscam shared object, as used in the Eye4 application (for Android, iOS, and Windows), do not prevent …
Eye4
No fix yet
HIGH 7.8
CVE-2019-1785
A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticate…
Clamav
Mitigation only
MEDIUM 5.5
CVE-2019-1786
A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could a…
Clamav
Mitigation only
MEDIUM 5.5
CVE-2019-1787
A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could all…
Debian Linux
after 0.101.1
CRITICAL 9.8
CVE-2014-9186
A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.…
Experion Process Knowledge System
Mitigation only
HIGH 7.8
CVE-2018-11830
Improper input validation in QCPE create function may lead to integer overflow in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snap…
Mdm9206 Firmware
Mitigation only
HIGH 7.8
CVE-2018-11966
Undefined behavior in UE while processing unknown IEI in OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Indu…
Mdm9150 Firmware
Mitigation only
HIGH 7.5
CVE-2015-5606
Vordel XML Gateway (acquired by Axway) version 7.2.2 could allow remote attackers to cause a denial of service via a specially crafted request.
Vordel Xml Gateway
No fix yet
MEDIUM 6.5
CVE-2018-4460
A denial of service issue was addressed by removing the vulnerable code. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS…
Iphone Os
5.1.2 / 10.14.2+
MEDIUM 5.5
CVE-2018-4462
A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.2.
Mac Os X
10.14.2+
MEDIUM 6.5
CVE-2018-4439
A logic issue was addressed with improved validation. This issue affected versions prior to iOS 12.1.1, Safari 12.0.2, iTunes 12.9.2 for Windows, iCl…
Safari
7.9 / 12.0.2+
HIGH 7.8
CVE-2018-4423
A logic issue was addressed with improved validation. This issue affected versions prior to macOS Mojave 10.14.1.
Mac Os X
10.14.1+
MEDIUM 6.5
CVE-2018-4429
A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue affected versions prior to iOS …
Iphone Os
5.1.2 / 12.1.1+
HIGH 7.8
CVE-2018-4435
A logic issue was addressed with improved restrictions. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS …
Iphone Os
5.1.2 / 10.14.2+
MEDIUM 5.5
CVE-2018-4417
A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.
Mac Os X
10.14+
MEDIUM 5.5
CVE-2018-4418
A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.
Mac Os X
10.14+
HIGH 7.5
CVE-2018-4398
An issue existed in the method for determining prime numbers. This issue was addressed by using pseudorandom bases for testing of primes. This issue …
Iphone Os
5.1 / 7.8+
MEDIUM 5.5
CVE-2018-4399
An access issue existed with privileged API calls. This issue was addressed with additional restrictions. This issue affected versions prior to iOS 1…
Iphone Os
5.0 / 10.14+