Vulnerability index

Browse CVEs

3,105 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Unclassified MEDIUM 6.5
CVE-2026-36605

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 is vulnerable to a HTTP denial of service via a low number of crafted incomplete HTTP…

Mitigation only
Fix from $1,600 2026-06-03
Unclassified MEDIUM 5.3
CVE-2026-10650

A flaw has been found in warmcat libwebsockets up to 4.5.8. This issue affects the function lws_ssh_parse_plaintext of the file plugins/protocol_lws_…

Patch available
Fix from $1,600 2026-06-02
Unclassified HIGH 7.5
CVE-2024-14036

Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigger…

Mitigation only
Fix from $1,950 2026-06-02
React Router HIGH 7.5
CVE-2026-42342

React Router is a router for React. In versions 7.0.0 through 7.14.x of react-router and versions 2.10.0 through 2.17.4 of @remix-run/server-runtime,…

Fix: 2.17.5 / 7.15.0+
Fix from $1,950 2026-06-02
Unclassified MEDIUM 6.5
CVE-2019-25721

Dräger Infinity M300 patient worn monitors with software version VG2.3.1 and earlier contain a network-based denial of service vulnerability that all…

Mitigation only
Fix from $1,600 2026-06-02
Unclassified MEDIUM 6.5
CVE-2019-25724

Dräger Infinity M300 patient worn monitors with software version VG2.x and earlier contain a network-based denial of service vulnerability that allow…

Mitigation only
Fix from $1,600 2026-06-02
Openclaude MEDIUM 6.5
CVE-2026-42073

OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the OpenClaude MCP auth…

Fix: 0.5.1+
Fix from $1,600 2026-06-02
Ebpf Instrumentation HIGH 7.5
CVE-2026-45680

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe h…

Fix: 0.9.0+
Fix from $1,950 2026-06-02
Android MEDIUM 5.5
CVE-2026-0069

In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could lead to local denial of serv…

Mitigation only
Fix from $1,600 2026-06-01
Android MEDIUM 5.5
CVE-2026-0074

In getPreferredSize of LauncherProcessImageListener.kt, there is a possible denial of service due to resource exhaustion. This could lead to local d…

Mitigation only
Fix from $1,600 2026-06-01
Android MEDIUM 5.5
CVE-2026-0042

In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to resource exhaustion. This could lead to …

Mitigation only
Fix from $1,600 2026-06-01
Android MEDIUM 5.5
CVE-2025-48648

In isSameApp of NotificationManagerService.java, there is a possible persistent dos due to resource exhaustion. This could lead to local denial of se…

Mitigation only
Fix from $1,600 2026-06-01
Flexric HIGH 8.2
CVE-2026-37234

FlexRIC v2.0.0 allows a single SCTP connection to bind multiple xapp_ids by sending multiple E42_SETUP_REQUESTs. On disconnect, only the first regist…

No fix yet
Fix from $1,950 2026-06-01
Fluss HIGH 7.5
CVE-2026-49361

Apache Fluss versions prior to 0.9.1 configure the Netty LengthFieldBasedFrameDecoder with Integer.MAX_VALUE as the maximum frame length, allowing un…

Fix: 0.9.1+
Fix from $1,950 2026-06-01
Unclassified MEDIUM 5.3
CVE-2026-10224

A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.30. This vulnerability affects the function _handle_webhook_requ…

Mitigation only
Fix from $1,600 2026-06-01
Otrs MEDIUM 6.5
CVE-2026-48208

An improper neutralization of active SVG content in OTRS or ((OTRS)) Community Edition ticket article rendering allows attackers to inject specially …

Fix: 2026.4.1+
Fix from $1,600 2026-06-01
Otrs MEDIUM 5.7
CVE-2026-48187

An uncontrolled allocation of resources without limits or throttling in the e-mail handling in OTRS allows excessive allocation which may lead to the…

Fix: 2026.4.1+
Fix from $1,600 2026-06-01
Unclassified HIGH 7.5
CVE-2026-46385

iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, the Avro array and map decoders looped over an attacker-controlled block-count value withou…

Mitigation only
Fix from $1,950 2026-05-29
Brace Expansion HIGH 7.5
CVE-2026-45149

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. From 5.0.0 to before 5.0.6, the max option was being a…

Fix: 5.0.6+
Fix from $1,950 2026-05-29
Unclassified HIGH 7.5
CVE-2026-10069

A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of the file usr/sbin/miniupnpd. Such manipulation l…

Mitigation only
Fix from $1,950 2026-05-29
Rest Data Services MEDIUM 5.3
CVE-2026-46843

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerabili…

Fix: after 26.1.0
Fix from $1,600 2026-05-28
Kibana MEDIUM 6.5
CVE-2026-49094

Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user with …

Fix: 8.19.16+
Fix from $1,600 2026-05-28
Database Server HIGH 7.5
CVE-2026-46834

Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vu…

Fix: after 23.26.2
Fix from $1,950 2026-05-28
Database Server HIGH 7.5
CVE-2026-46835

Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vu…

Fix: after 23.26.2
Fix from $1,950 2026-05-28
Rest Data Services HIGH 7.5
CVE-2026-46829

Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnera…

Fix: after 26.1.0
Fix from $1,950 2026-05-28
Rest Data Services CRITICAL 9.9
CVE-2026-46775

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerabili…

Fix: after 26.1.0
Fix from $2,300 2026-05-28
Kibana MEDIUM 6.5
CVE-2026-42399

Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated low-privil…

Fix: 8.19.16 / 9.3.5+
Fix from $1,600 2026-05-28
Kibana MEDIUM 6.5
CVE-2026-42400

Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user can s…

Fix: 8.19.16 / 9.3.5+
Fix from $1,600 2026-05-28
Rest Data Services HIGH 7.9
CVE-2026-35266

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Difficult to exploit vulnerabi…

Fix: after 26.1.0
Fix from $1,950 2026-05-28
Rest Data Services HIGH 8.1
CVE-2026-35277

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerabili…

Fix: after 26.1.0
Fix from $1,950 2026-05-28