Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.8 CVE-2023-30657 Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged acti… Android Mitigation only Fix from $1,9502023-07-06 HIGH 7.8 CVE-2023-30658 Improper input validation vulnerability in DataProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities. Android Mitigation only Fix from $1,9502023-07-06 HIGH 7.8 CVE-2023-30659 Improper input validation vulnerability in Transaction prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities. Android Mitigation only Fix from $1,9502023-07-06 HIGH 8.8 CVE-2023-36821 Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in versions prior to 1.22.1, whi… Uptime Kuma 1.22.1+ Fix from $1,9502023-07-05 MEDIUM 5.0 CVE-2023-35936 Pandoc is a Haskell library for converting from one markup format to another, and a command-line tool that uses this library. Starting in version 1.1… Debian Linux 3.1.4+ Fix from $1,6002023-07-05 HIGH 7.5 CVE-2023-34457 MechanicalSoup is a Python library for automating interaction with websites. Starting in version 0.2.0 and prior to version 1.3.0, a malicious web se… Mechanicalsoup 1.3.0+ Fix from $1,9502023-07-05 MEDIUM 5.3 CVE-2023-34150 ** UNSUPPORTED WHEN ASSIGNED ** Use of TikaEncodingDetector in Apache Any23 can cause excessive memory usage. Any23 after 2.7 Fix from $1,6002023-07-05 CRITICAL 9.8 CVE-2023-21631 Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. 315 5g Firmware Mitigation only Fix from $2,3002023-07-04 HIGH 7.8 CVE-2023-25522 NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause improper input validation by providing configuration information i… Dgx A100 Firmware 1.21+ Fix from $1,9502023-07-04 MEDIUM 6.5 CVE-2023-2727 Users may be able to launch containers using images that are restricted by ImagePolicyWebhook when using ephemeral containers. Kubernetes clusters ar… Kubernetes after 1.27.2 Fix from $1,6002023-07-03 MEDIUM 6.5 CVE-2023-2728 Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral … Kubernetes after 1.27.2 Fix from $1,6002023-07-03 CRITICAL 9.8 CVE-2023-35797 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Hive Provider. This issue affects Apache Airflow Apache Hive Pro… Apache Airflow Providers Apache Hive 6.1.1+ Fix from $2,3002023-07-03 CRITICAL 9.8 CVE-2023-28324EPSS 13% A improper input validation vulnerability exists in Ivanti Endpoint Manager 2022 and below that could allow privilege escalation or remote code execu… Endpoint Manager after 2022 Fix from $2,3002023-07-01 HIGH 8.8 CVE-2023-22886 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow JDBC Provider. Airflow JDBC Provider Connection’s [Connection UR… Apache Airflow Providers Jdbc 4.0.0+ Fix from $1,9502023-06-29 HIGH 7.8 CVE-2023-21192 In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to im… Android Mitigation only Fix from $1,9502023-06-28 HIGH 7.7 CVE-2023-20192 Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated attacker wit… Telepresence Video Communication Server Mitigation only Fix from $1,9502023-06-28 MEDIUM 6.5 CVE-2023-20105 A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow a… Telepresence Video Communication Server Mitigation only Fix from $1,6002023-06-28 MEDIUM 6.1 CVE-2023-3034 Reflected XSS affects the ‘mode’ parameter in the /admin functionality of the web application in versions <=2.0.44 Bkg Professional Ntripcaster after 2.0.44 Fix from $1,6002023-06-28 MEDIUM 6.5 CVE-2023-34421 A valid, authenticated LXCA user with elevated privileges may be able to replace filesystem data through a specifically crafted web API call due to i… Xclarity Administrator 4.0.0+ Fix from $1,6002023-06-26 MEDIUM 6.5 CVE-2023-34422 A valid, authenticated LXCA user with elevated privileges may be able to delete folders in the LXCA filesystem through a specifically crafted web API… Xclarity Administrator 4.0.0+ Fix from $1,6002023-06-26 MEDIUM 5.2 CVE-2023-35163 Vega is a decentralized trading platform that allows pseudo-anonymous trading of derivatives on a blockchain. Prior to version 0.71.6, a vulnerabilit… Vega 0.71.6+ Fix from $1,6002023-06-23 MEDIUM 5.5 CVE-2023-25520 NVIDIA Jetson Linux Driver Package contains a vulnerability in nvbootctrl, where a privileged local attacker can configure invalid settings, resultin… Jetson Linux 32.7.4+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28026 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28027 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28031 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28034 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28036 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28044 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28050 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23 MEDIUM 6.7 CVE-2023-28058 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exp… Alienware Area 51m R1 Firmware 1.0.20 / 1.1.0+ Fix from $1,6002023-06-23