Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Windows Server 2008 MEDIUM 6.5
CVE-2024-30019

DHCP Server Service Denial of Service Vulnerability

Fix: 10.0.14393.6981 / 10.0.17763.5820+
Fix from $1,600 2024-05-14
Unclassified MEDIUM 5.3
CVE-2024-33498

A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT278…

Mitigation only
Fix from $1,600 2024-05-14
Braces HIGH 7.5
CVE-2024-4068

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `…

Fix: 3.0.3+
Fix from $1,950 2024-05-14
Wbsairback MEDIUM 6.5
CVE-2024-3789

Uncontrolled resource consumption vulnerability in White Bear Solutions WBSAirback, version 21.02.04. This vulnerability could allow an attacker to s…

Mitigation only
Fix from $1,600 2024-05-14
Dir 619l Firmware MEDIUM 6.5
CVE-2024-33774

A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanSetup_Wizard allows remote authenticated users to trigger a d…

No fix yet
Fix from $1,600 2024-05-14
Argo Cd MEDIUM 6.5
CVE-2024-32476

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. There is a Denial of Service (DoS) vulnerability via OOM using jq in ignore…

Fix: 2.8.17 / 2.9.13+
Fix from $1,600 2024-05-14
Unclassified HIGH 7.1
CVE-2022-32505

An issue was discovered on certain Nuki Home Solutions devices. It is possible to send multiple BLE malformed packets to block some of the functional…

Mitigation only
Fix from $1,950 2024-05-14
Unclassified HIGH 7.5
CVE-2022-32508

An issue was discovered on certain Nuki Home Solutions devices. By sending a malformed HTTP verb, it is possible to force a reboot of the device. Thi…

Mitigation only
Fix from $1,950 2024-05-14
Open5gs MEDIUM 5.3
CVE-2024-33382

An issue in Open5GS v.2.7.0 allows an attacker to cause a denial of service via the 64 unsuccessful UE/gnb registration

No fix yet
Fix from $1,600 2024-05-08
Unclassified HIGH 7.5
CVE-2024-4436

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2022-41723. This issue occurs because the etcd package…

Mitigation only
Fix from $1,950 2024-05-08
Unclassified HIGH 7.5
CVE-2024-4437

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2021-44716. This issue occurs because the etcd package…

Mitigation only
Fix from $1,950 2024-05-08
Unclassified HIGH 7.5
CVE-2024-4438

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2023-39325/CVE-2023-44487, known as Rapid Reset. This …

Mitigation only
Fix from $1,950 2024-05-08
Dnf5 MEDIUM 6.5
CVE-2024-1930

No Limit on Number of Open Sessions / Bad Session Close Behaviour in dnf5daemon-server before 5.1.17 allows a malicious user to impact Availability …

Fix: 5.1.17+
Fix from $1,600 2024-05-08
Ua .netstandard HIGH 7.5
CVE-2023-27321

OPC Foundation UA .NET Standard ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability allows remote attackers to c…

Fix: 1.4.371.86+
Fix from $1,950 2024-05-07
Android MEDIUM 5.5
CVE-2024-0026

In multiple functions of SnoozeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local den…

Patch available
Fix from $1,600 2024-05-07
Android MEDIUM 5.5
CVE-2024-23712

In multiple functions of AppOpsService.java, there is a possible way to saturate the content of /data/system/appops_accesses.xml due to resource exha…

Patch available
Fix from $1,600 2024-05-07
Unclassified HIGH 7.5
CVE-2024-34084

Minder's `HandleGithubWebhook` is susceptible to a denial of service attack from an untrusted HTTP request. The vulnerability exists before the reque…

Patch available
Fix from $1,950 2024-05-07
Suricata HIGH 7.5
CVE-2024-32663

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, a sm…

Fix: 6.0.19 / 7.0.5+
Fix from $1,950 2024-05-07
Unclassified HIGH 7.5
CVE-2024-4599

Remote denial of service vulnerability in LAN Messenger affecting version 3.4.0. This vulnerability allows an attacker to crash the LAN Messenger ser…

Mitigation only
Fix from $1,950 2024-05-07
Unclassified HIGH 7.5
CVE-2024-32972

go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. Prior to 1.13.15, a vulnerable node can be made to consume ve…

Mitigation only
Fix from $1,950 2024-05-06
Diaenergie HIGH 7.5
CVE-2024-4549

A denial of service vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior. When processing an 'ICS Restart!' message, CEBC.exe …

Fix: 1.10.01.004+
Fix from $1,950 2024-05-06
Fedora HIGH 7.5
CVE-2024-34506

An issue was discovered in includes/specials/SpecialMovePage.php in MediaWiki before 1.39.7, 1.40.x before 1.40.3, and 1.41.x before 1.41.1. If a use…

Fix: 1.39.7 / 1.40.3+
Fix from $1,950 2024-05-05
Ryu HIGH 7.5
CVE-2024-34483

OFPGroupDescStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via OFPBucket.len=0.

No fix yet
Fix from $1,950 2024-05-05
Ignition HIGH 7.5
CVE-2023-39477

Inductive Automation Ignition ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability allows remote attackers to cre…

Fix: 8.1.33+
Fix from $1,950 2024-05-03
Edgeaggregator HIGH 7.5
CVE-2023-27334

Softing edgeConnector Siemens ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability allows remote attackers to cre…

Fix: 1.30 / 3.70+
Fix from $1,950 2024-05-03
Unclassified HIGH 7.5
CVE-2023-50685

An issue in Hipcam Cameras RealServer v.1.0 allows a remote attacker to cause a denial of service via a crafted script to the client_port parameter.

Mitigation only
Fix from $1,950 2024-05-02
Unclassified HIGH 7.5
CVE-2024-25355

s3-url-parser 1.0.3 is vulnerable to Denial of service via the regexes component.

No fix yet
Fix from $1,950 2024-05-01
Unclassified HIGH 7.5
CVE-2024-32984

Yamux is a stream multiplexer over reliable, ordered connections such as TCP/IP. The Rust implementation of the Yamux stream multiplexer uses a vecto…

Patch available
Fix from $1,950 2024-05-01
Linux Kernel HIGH 7.8
CVE-2024-26976

In the Linux kernel, the following vulnerability has been resolved: KVM: Always flush async #PF workqueue when vCPU is being destroyed Always flush…

Fix: 4.19.312 / 5.4.274+
Fix from $1,950 2024-05-01
Unclassified HIGH 7.5
CVE-2024-34045

The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->counters[IN_INITI][MSG_COUNTER][Proced…

Mitigation only
Fix from $1,950 2024-04-30