Vulnerability index

Browse CVEs

3,116 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
macOS MEDIUM 5.5
CVE-2025-24151

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. An app m…

Fix: 13.7.3 / 14.7.3+
Fix from $1,600 2025-01-27
Ipados HIGH 7.3
CVE-2025-24126

An input validation issue was addressed. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7…

Fix: 2.3 / 11.3+
Fix from $1,950 2025-01-27
Bootplus MEDIUM 5.3
CVE-2025-0704

A vulnerability, which was classified as problematic, was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. Affected is the…

Fix: after 2020-08-24
Fix from $1,600 2025-01-24
Wicket MEDIUM 6.5
CVE-2024-53299

The request handling in the core in Apache Wicket 7.0.0 on any platform allows an attacker to create a DOS via multiple requests to server resources.…

Fix: 9.19.0 / 10.3.0+
Fix from $1,600 2025-01-23
Lunasvg MEDIUM 6.5
CVE-2024-57724

lunasvg v3.0.0 was discovered to contain a segmentation violation via the component gray_record_cell.

No fix yet
Fix from $1,600 2025-01-23
Open5gs HIGH 7.5
CVE-2023-37022

Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `UE Context Release Request` packet handler. A packet containing an invalid `MME_U…

Fix: after 2.6.4
Fix from $1,950 2025-01-22
Open5gs HIGH 7.5
CVE-2023-37014

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker …

Fix: after 2.6.4
Fix from $1,950 2025-01-22
Android MEDIUM 6.5
CVE-2024-43763

In build_read_multi_rsp of gatt_sr.cc, there is a possible denial of service due to a logic error in the code. This could lead to remote (proximal/ad…

Mitigation only
Fix from $1,600 2025-01-21
Unclassified HIGH 7.5
CVE-2024-24424

A reachable assertion in the decode_access_point_name_ie function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) a…

Mitigation only
Fix from $1,950 2025-01-21
Hospitality Opera 5 CRITICAL 9.1
CVE-2025-21547

Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are a…

Mitigation only
Fix from $2,300 2025-01-21
Mysql Connector\/python MEDIUM 6.4
CVE-2025-21548

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Python). Supported versions that are affected are 9.1.0 and prio…

Fix: after 9.1.0
Fix from $1,600 2025-01-21
Weblogic Server HIGH 7.5
CVE-2025-21549

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 14.1.1…

Mitigation only
Fix from $1,950 2025-01-21
Peoplesoft Enterprise Peopletools HIGH 7.5
CVE-2025-21545

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: OpenSearch). Supported versions that are affected ar…

Mitigation only
Fix from $1,950 2025-01-21
Cxf HIGH 7.5
CVE-2025-23184

A potential denial of service vulnerability is present in versions of Apache CXF before 3.5.10, 3.6.5 and 4.0.6. In some edge cases, the CachedOutput…

Fix: 3.5.10 / 3.6.5+
Fix from $1,950 2025-01-21
Android MEDIUM 5.5
CVE-2018-9447

In onCreate of EmergencyCallbackModeExitDialog.java, there is a possible way to crash the emergency callback mode due to a missing null check. This c…

Patch available
Fix from $1,600 2025-01-17
Unclassified HIGH 7.5
CVE-2024-50953

An issue in XINJE XL5E-16T V3.7.2a allows attackers to cause a Denial of Service (DoS) via a crafted Modbus message.

Mitigation only
Fix from $1,950 2025-01-15
Unclassified HIGH 7.5
CVE-2024-54730

Flatnotes <v5.3.1 is vulnerable to denial of service through the upload image function.

Mitigation only
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21389

Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to deny service over a networ…

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1809 HIGH 7.5
CVE-2025-21330

Windows Remote Desktop Services Denial of Service Vulnerability

Fix: 10.0.17763.6775 / 10.0.19044.5371+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21300

Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21289

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21290

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21270

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21251

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21230

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 HIGH 7.5
CVE-2025-21231

IP Helper Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows Server 2012 HIGH 7.5
CVE-2025-21218

Windows Kerberos Denial of Service Vulnerability

Fix: 10.0.14393.7699 / 10.0.17763.6775+
Fix from $1,950 2025-01-14
Windows 10 1809 HIGH 7.5
CVE-2025-21207

Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability

Fix: 10.0.17763.6775 / 10.0.19044.5371+
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57655

An issue in the dfe_n_in_order component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL …

No fix yet
Fix from $1,950 2025-01-14
Powerscale Onefs MEDIUM 6.5
CVE-2024-47239

Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource consumption vulnerability. A remote low privileged attacker c…

Fix: 9.4.0.20 / 9.5.1.2+
Fix from $1,600 2025-01-08