Vulnerability index

Browse CVEs

2,155 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cryptographic IssuesCWE-310 × clear
Security Verify Access CRITICAL 9.8
CVE-2026-17616

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 thr…

No fix yet
Fix from $5,750 2026-08-12
Unclassified HIGH 7.0
CVE-2026-49000

An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate key management, or flawed …

No fix yet
Fix from $1,950 2026-05-27
Tew 821dap Firmware HIGH 8.1
CVE-2026-7610

A vulnerability has been found in TRENDnet TEW-821DAP 1.12B01. This affects an unknown function of the file /www/cgi/ssi of the component Firmware Up…

No fix yet
Fix from $1,950 2026-05-02
777vr1 Firmware HIGH 7.4
CVE-2026-2618

A vulnerability was determined in Beetel 777VR1 up to 01.00.09. This impacts an unknown function of the component SSH Service. This manipulation caus…

Fix: after 01.00.09_55
Fix from $1,950 2026-02-17
Furbo Mini Firmware MEDIUM 5.3
CVE-2025-11640

A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. This affects an unknown function of the component Bluetooth Low Energy. The manipulati…

Fix: after 074
Fix from $1,600 2025-10-12
315 5g Iot Modem Firmware HIGH 7.1
CVE-2025-21482

Cryptographic issue while performing RSA PKCS padding decoding.

No fix yet
Fix from $1,950 2025-09-24
Cp6 Firmware MEDIUM 5.9
CVE-2025-9828

A vulnerability was determined in Tenda CP6 11.10.00.243. The affected element is the function sub_2B7D04 of the component uhttp. Executing manipulat…

No fix yet
Fix from $1,600 2025-09-02
E5600 Firmware HIGH 8.1
CVE-2025-9146

A flaw has been found in Linksys E5600 1.1.0.26. The affected element is the function verify_gemtek_header of the file checkFw.sh of the component Fi…

No fix yet
Fix from $1,950 2025-08-19
Mall MEDIUM 5.9
CVE-2025-8741

A vulnerability was found in macrozheng mall up to 1.0.3. It has been declared as problematic. Affected by this vulnerability is an unknown functiona…

Fix: after 1.0.3
Fix from $1,600 2025-08-08
Windows 10 1507 MEDIUM 5.9
CVE-2025-48823

Cryptographic issues in Windows Cryptographic Services allows an unauthorized attacker to disclose information over a network.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,600 2025-07-08
Aqt1000 Firmware HIGH 7.8
CVE-2025-21422

Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.

Mitigation only
Fix from $1,950 2025-07-08
Django Sso Server MEDIUM 5.9
CVE-2025-4894

A vulnerability classified as problematic was found in calmkart Django-sso-server up to 057247929a94ffc358788a37ab99e391379a4d15. This vulnerability …

No fix yet
Fix from $1,600 2025-05-18
Incontrol Web MEDIUM 5.9
CVE-2025-0784

A vulnerability has been found in Intelbras InControl up to 2.21.58 and classified as problematic. This vulnerability affects unknown code of the fil…

Fix: 2.21.59+
Fix from $1,600 2025-01-28
Wsa8845h Firmware CRITICAL 9.1
CVE-2024-38408

Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.

Patch available
Fix from $2,300 2024-11-04
Windows 10 1507 HIGH 7.8
CVE-2024-26228

Windows Cryptographic Services Security Feature Bypass Vulnerability

Fix: 10.0.10240.20596 / 10.0.14393.6897+
Fix from $1,950 2024-04-09
Windows 10 1809 MEDIUM 6.5
CVE-2024-20690

Windows Nearby Sharing Spoofing Vulnerability

Fix: 10.0.17763.5329 / 10.0.19044.3930+
Fix from $1,600 2024-01-09
Ar8035 Firmware MEDIUM 5.5
CVE-2023-33037

Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.

No fix yet
Fix from $1,600 2024-01-02
Rvtools HIGH 7.5
CVE-2023-44303

RVTools, Version 3.9.2 and above, contain a sensitive data exposure vulnerability in the password encryption utility (RVToolsPasswordEncryption.exe) …

Fix: 4.5.0+
Fix from $1,950 2023-11-24
315 5g Iot Modem Firmware MEDIUM 5.5
CVE-2022-22076

information disclosure due to cryptographic issue in Core during RPMB read request.

Mitigation only
Fix from $1,600 2023-06-06
Cyber Protect HIGH 7.5
CVE-2022-45453

TLS/SSL weak cipher suites enabled. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 30984.

Fix: 15+
Fix from $1,950 2023-05-18
Node.js HIGH 7.5
CVE-2023-23919

A cryptographic vulnerability exists in Node.js <19.2.0, <18.14.1, <16.19.1, <14.21.3 that in some cases did does not clear the OpenSSL error stack a…

Fix: 14.21.3 / 16.19.1+
Fix from $1,950 2023-02-23
Fortinac HIGH 7.4
CVE-2022-40675

Some cryptographic issues in Fortinet FortiNAC versions 9.4.0 through 9.4.1, 9.2.0 through 9.2.7, 9.1.0 through 9.1.8, 8.8.0 through 8.8.11, 8.7.0 th…

Fix: 7.2.0 / 9.4.2+
Fix from $1,950 2023-02-16
Passwordstate MEDIUM 5.5
CVE-2022-4610

A vulnerability, which was classified as problematic, has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. Affec…

Fix: 9.5+
Fix from $1,600 2022-12-19
Whohas HIGH 7.5
CVE-2021-4258

A vulnerability was found in whohas. It has been rated as problematic. This issue affects some unknown processing of the component Package Informatio…

Fix: 2021-11-01+
Fix from $1,950 2022-12-19
Node.js MEDIUM 5.3
CVE-2022-32222

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might…

Fix: 1.0 / 18.5.0+
Fix from $1,600 2022-07-14
Pingid Integration For Mac Login HIGH 7.5
CVE-2021-41995

A misconfiguration of RSA in PingID Mac Login prior to 1.1 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass.

Fix: 1.1+
Fix from $1,950 2022-06-30
Pingid Integration For Windows Login MEDIUM 6.4
CVE-2022-23719

PingID Windows Login prior to 2.8 does not authenticate communication with a local Java service used to capture security key requests. An attacker wi…

Fix: 2.8+
Fix from $1,600 2022-06-30
Pingid Integration For Windows Login HIGH 8.1
CVE-2022-23724

Use of static encryption key material allows forging an authentication token to other users within a tenant organization. MFA may be bypassed by redi…

Fix: 2.4.2+
Fix from $1,950 2022-05-04
Pingid Integration For Windows Login MEDIUM 5.6
CVE-2021-41992

A misconfiguration of RSA in PingID Windows Login prior to 2.7 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass.

Fix: 2.7+
Fix from $1,600 2022-04-30
Pingid Desktop CRITICAL 9.9
CVE-2021-42001

PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of ex…

Fix: 1.7.3+
Fix from $2,300 2022-04-30