Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2023-40272
Apache Airflow Spark Provider, versions before 4.1.3, is affected by a vulnerability that allows an attacker to pass in malicious parameters when est…
Apache Airflow Providers Apache Spark
4.1.3+
MEDIUM 5.3
CVE-2023-20232
A vulnerability in the Tomcat implementation for Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker t…
Unified Contact Center Express
12.5+
HIGH 8.1
CVE-2023-40034
Woodpecker is a community fork of the Drone CI system. In affected versions an attacker can post malformed webhook data witch lead to an update of th…
Woodpecker
1.0.2+
HIGH 7.5
CVE-2023-38737
IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted reque…
Websphere Application Server
after 23.0.0.7
HIGH 7.5
CVE-2023-4241
lol-html can cause panics on certain HTML inputs. Anyone processing arbitrary 3rd party HTML with the library is affected.
Lol Html
1.1.1+
MEDIUM 6.7
CVE-2023-20564
Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may permit a privileged attacker to perform memory read…
Ryzen Master
2.11.2.2659+
HIGH 8.8
CVE-2023-4357EPSS 47%
Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to bypass file access restriction…
Chrome
116.0.5845.96+
MEDIUM 5.5
CVE-2023-21284
In multiple functions of DevicePolicyManager.java, there is a possible way to prevent enabling the Find my Device feature due to improper input valid…
Android
Patch available
HIGH 7.8
CVE-2023-21272
In readFrom of Uri.java, there is a possible bad URI permission grant due to improper input validation. This could lead to local escalation of privil…
Android
Patch available
MEDIUM 5.2
CVE-2023-39950
efibootguard is a simple UEFI boot loader with support for safely switching between current and updated partition sets. Insufficient or missing valid…
Efibootguard
0.15+
HIGH 7.5
CVE-2023-39404
Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerability may caus…
Emui
Mitigation only
HIGH 7.5
CVE-2023-39390
Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerability may caus…
Emui
Mitigation only
HIGH 7.5
CVE-2023-39386
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause newly instal…
Emui
Mitigation only
CRITICAL 9.8
CVE-2023-39405
Vulnerability of out-of-bounds parameter read/write in the Wi-Fi module. Successful exploitation of this vulnerability may cause other apps to be exe…
Emui
No fix yet
HIGH 7.5
CVE-2023-39382
Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.
Emui
Mitigation only
HIGH 7.5
CVE-2023-39388
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen …
Emui
No fix yet
HIGH 7.5
CVE-2023-39389
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen …
Emui
No fix yet
HIGH 7.5
CVE-2023-39381
Input verification vulnerability in the storage module. Successful exploitation of this vulnerability may cause the device to restart.
Emui
Mitigation only
HIGH 7.5
CVE-2023-39553
Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Drill Provider.
Apache Airflow Drill Provider is affected by a …
Apache Airflow Providers Apache Drill
2.4.3+
MEDIUM 6.7
CVE-2023-34086
Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local acce…
Nuc Rugged Kit Nuc8cchb Firmware
Patch available
MEDIUM 6.7
CVE-2023-32617
Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to…
Nuc Kit Nuc7i7bnhx1 Firmware
Mitigation only
MEDIUM 6.7
CVE-2023-29494
Improper input validation in BIOS firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local…
Nuc 11 Pro Kit Nuc11tnhi70z Firmware
Mitigation only
HIGH 7.8
CVE-2023-26587
Improper input validation for the Intel(R) Easy Streaming Wizard software may allow an authenticated user to potentially enable escalation of privile…
Easy Streaming Wizard
Mitigation only
MEDIUM 6.7
CVE-2023-22449
Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local acce…
Nuc 13 Extreme Compute Element Nuc13sbbi5 Firmware
Patch available
HIGH 8.0
CVE-2022-44611
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege…
Celeron J6413 Firmware
Mitigation only
HIGH 7.5
CVE-2022-36392
Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability before versions 11.8.94, 11.12.94, 11.22.94, 12.0.93,…
Converged Security Management Engine Firmware
11.8.94 / 11.12.94+
MEDIUM 6.7
CVE-2022-37336
Improper input validation in BIOS firmware for some Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local …
Nuc 10 Performance Kit Nuc10i7fnhn Firmware
Mitigation only
HIGH 7.8
CVE-2022-38076
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable es…
Fedora
3.2.20.23023 / 22.200+
MEDIUM 6.5
CVE-2022-36351
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user to potentially enable …
Fedora
3.2.20.23023 / 22.200+
CRITICAL 9.8
CVE-2023-32560EPSS 99%
An attacker can send a specially crafted message to the Wavelink Avalanche Manager, which could result in service disruption or arbitrary code execut…
Avalanche
6.4.1+