Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2023-45169
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the pmsvcs kernel extension to cause a denial of…
Vios
Mitigation only
MEDIUM 5.5
CVE-2023-45175
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of…
Vios
Mitigation only
MEDIUM 5.5
CVE-2023-45173
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the NFS kernel extension to cause a denial of se…
Vios
Mitigation only
HIGH 7.8
CVE-2023-42826
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing a file may lead to arbitrary code execution.
macOS
14.0+
MEDIUM 6.1
CVE-2023-41781
There is a Cross-site scripting (XSS) vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack wil…
Mf258 Firmware
Mitigation only
MEDIUM 6.8
CVE-2024-21319
Microsoft Identity Denial of service vulnerability
.net
5.7.0 / 6.0.26+
HIGH 7.5
CVE-2024-21312
.NET Framework Denial of Service Vulnerability
.net Framework
Patch available
MEDIUM 6.1
CVE-2024-21316
Windows Server Key Distribution Service Security Feature Bypass
Windows 10 1607
10.0.14393.6614 / 10.0.17763.5329+
MEDIUM 6.6
CVE-2024-20666
BitLocker Security Feature Bypass Vulnerability
Windows 10 1507
10.0.10240.20402 / 10.0.14393.6614+
CRITICAL 9.8
CVE-2024-0057
NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability
Powershell
4.8.04690.01 / 4.8.04690.02+
MEDIUM 6.5
CVE-2024-22165
In Splunk Enterprise Security (ES) versions lower than 7.1.2, an attacker can create a malformed Investigation to perform a denial of service (DoS). …
Enterprise Security
7.1.2+
CRITICAL 9.8
CVE-2023-51438
A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All…
Maxview Storage Manager
4.14.00.26068+
HIGH 7.5
CVE-2023-49252
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The affected application allows IP configuration change without authent…
Simatic Cn 4100 Firmware
2.7+
HIGH 8.8
CVE-2024-21663
Discord-Recon is a Discord bot created to automate bug bounty recon, automated scans and information gathering via a discord server. Discord-Recon is…
Discord Recon
0.0.8+
HIGH 8.8
CVE-2024-21625
SideQuest is a place to get virtual reality applications for Oculus Quest. The SideQuest desktop application uses deep links with a custom protocol (…
Sidequest
0.10.35+
MEDIUM 5.5
CVE-2023-6992
Cloudflare version of zlib library was found to be vulnerable to memory corruption issues affecting the deflation algorithm implementation (deflate.c…
Zlib
2023-11-16+
MEDIUM 5.4
CVE-2023-6738
The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pagelayer_head…
Pagelayer
after 1.7.8
HIGH 7.5
CVE-2023-50256
Froxlor is open source server administration software. Prior to version 2.1.2, it was possible to submit the registration form with the essential fie…
Froxlor
2.1.2+
HIGH 7.5
CVE-2023-46929
An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tools/av_parsers.c:6872:55 allows…
Gpac
Patch available
MEDIUM 6.5
CVE-2024-21631
Vapor is an HTTP web framework for Swift. Prior to version 4.90.0, Vapor's `vapor_urlparser_parse` function uses `uint16_t` indexes when parsing a UR…
Vapor
4.90.0+
HIGH 7.5
CVE-2023-49551
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function in the msj.c file.
Mjs
No fix yet
MEDIUM 6.1
CVE-2024-21627
PrestaShop is an open-source e-commerce platform. Prior to versions 8.1.3 and 1.7.8.11, some event attributes are not detected by the `isCleanHTML` m…
Prestashop
1.7.8.11 / 8.1.3+
MEDIUM 6.8
CVE-2023-33014
Information disclosure in Core services while processing a Diag command.
Ar8035 Firmware
No fix yet
MEDIUM 6.1
CVE-2023-26159
Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.pa…
Follow Redirects
1.15.4+
HIGH 7.5
CVE-2023-32890
In modem EMM, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execu…
Lr13
Mitigation only
HIGH 8.8
CVE-2023-49299
Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can cause arbitrary, unsandboxed javascript to be executed …
Dolphinscheduler
3.1.9+
HIGH 8.8
CVE-2023-52137
The [`tj-actions/verify-changed-files`](https://github.com/tj-actions/verify-changed-files) action allows for command injection in changed filenames,…
Verify Changed Files
17.0.0+
HIGH 8.8
CVE-2023-47804
Apache OpenOffice documents can contain links that call internal macros with arbitrary arguments. Several URI Schemes are defined for this purpose.
…
Openoffice
4.1.15+
CRITICAL 9.8
CVE-2023-7163
A security issue exists in D-Link D-View 8 v2.0.2.89 and prior that could allow an attacker to manipulate the probe inventory of the D-View service. …
D View 8
No fix yet
CRITICAL 9.8
CVE-2023-6879
Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().
Fedora
3.7.1+