Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Stardom Fcj Firmware MEDIUM 5.3
CVE-2023-5915

A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corporation. This vulnerability may…

Mitigation only
Fix from $1,600 2023-12-01
Virtuoso HIGH 7.5
CVE-2023-48951

An issue in the box_equal function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT…

Patch available
Fix from $1,950 2023-11-29
Serving MEDIUM 5.3
CVE-2023-48713

Knative Serving builds on Kubernetes to support deploying and serving of applications and functions as serverless containers. An attacker who control…

Fix: 1.10.5 / 1.11.3+
Fix from $1,600 2023-11-28
Mattermost HIGH 7.5
CVE-2023-48268

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to cons…

Fix: after 9.0.1
Fix from $1,950 2023-11-27
Mattermost MEDIUM 5.3
CVE-2023-48369

Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially o…

Fix: after 9.0.1
Fix from $1,600 2023-11-27
Mattermost HIGH 7.5
CVE-2023-40703

Mattermost fails to properly limit the characters allowed in different fields of a block in Mattermost Boards allowing a attacker to consume excessiv…

Fix: after 9.0.1
Fix from $1,950 2023-11-27
Fedora MEDIUM 6.5
CVE-2023-6277

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service vi…

Patch available
Fix from $1,600 2023-11-24
Bouncy Castle For Java MEDIUM 5.5
CVE-2023-33202

Bouncy Castle for Java before 1.73 contains a potential Denial of Service (DoS) issue within the Bouncy Castle org.bouncycastle.openssl.PEMParser cla…

Fix: 1.0.2.4 / 1.73+
Fix from $1,600 2023-11-23
Opennds HIGH 7.5
CVE-2023-41102

An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple memory leaks due to not freeing up allocated memory. …

Fix: 10.1.3+
Fix from $1,950 2023-11-17
Free5gc MEDIUM 5.5
CVE-2023-47025

An issue in Free5gc v.3.3.0 allows a local attacker to cause a denial of service via the free5gc-compose component.

No fix yet
Fix from $1,600 2023-11-16
Secure Access Client HIGH 7.8
CVE-2023-38043

A vulnerability exists on all versions of the Ivanti Secure Access Client below 22.6R1.1, which could allow a locally authenticated attacker to explo…

Fix: 22.6+
Fix from $1,950 2023-11-15
Arubaos HIGH 7.5
CVE-2023-45621

Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vul…

Fix: 8.6.0.23 / 8.10.0.9+
Fix from $1,950 2023-11-14
Arubaos HIGH 7.5
CVE-2023-45622

Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the BLE daemon service accessed via the PAPI protocol. Successful exploitation of th…

Fix: 8.6.0.23 / 8.10.0.9+
Fix from $1,950 2023-11-14
Visual Studio 2022 HIGH 7.5
CVE-2023-36038

ASP.NET Core Denial of Service Vulnerability

Fix: 17.2.22 / 17.4.14+
Fix from $1,950 2023-11-14
Aptio V Uefi Firmware Integrator Tools MEDIUM 5.5
CVE-2023-25949

Uncontrolled resource consumption in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable deni…

Mitigation only
Fix from $1,600 2023-11-14
Visual Studio 2019 MEDIUM 5.5
CVE-2023-36042

Visual Studio Denial of Service Vulnerability

Fix: 16.11.32 / 17.2.22+
Fix from $1,600 2023-11-14
6gk5205 3bb00 2ab2 Firmware MEDIUM 6.5
CVE-2023-44321

Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web interface allowing an authent…

Fix: 4.5+
Fix from $1,600 2023-11-14
Kyverno MEDIUM 5.3
CVE-2023-42813

Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of …

Patch available
Fix from $1,600 2023-11-13
Vios MEDIUM 5.5
CVE-2023-45167

IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerability to cause a denial of service. IBM X-Force ID:…

No fix yet
Fix from $1,600 2023-11-10
Helix Core HIGH 7.5
CVE-2023-5759

In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the buffer was identified. Reported by Jason Geffner.  

Fix: 2023.2+
Fix from $1,950 2023-11-08
Helix Core HIGH 7.5
CVE-2023-45319

In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the commit function was identified. Reported by Jason …

Fix: 2023.2+
Fix from $1,950 2023-11-08
Helix Core HIGH 7.5
CVE-2023-35767

In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was identified. Reported by Jaso…

Fix: 2023.2+
Fix from $1,950 2023-11-08
Cosign MEDIUM 5.3
CVE-2023-46737

Cosign is a sigstore signing tool for OCI containers. Cosign is susceptible to a denial of service by an attacker controlled registry. An attacker wh…

Fix: 2.2.1+
Fix from $1,600 2023-11-07
Calico Cloud HIGH 7.5
CVE-2023-41378

In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico Enterprise Typha (v3.17.1, v3.16.3, v3.15.3 and below), a client TLS …

Fix: 3.15.4 / 3.16.4+
Fix from $1,950 2023-11-06
Mattermost MEDIUM 5.3
CVE-2023-5969

Mattermost fails to properly sanitize the request to /api/v4/redirect_location allowing an attacker, sending a specially crafted request to /api/v4/r…

Fix: after 8.1.2
Fix from $1,600 2023-11-06
Storage MEDIUM 6.5
CVE-2023-42669

A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnera…

Fix: 4.17.12 / 4.18.8+
Fix from $1,600 2023-11-06
Fedora MEDIUM 6.5
CVE-2023-42670

A flaw was found in Samba. It is susceptible to a vulnerability where multiple incompatible RPC listeners can be initiated, causing disruptions in th…

Fix: 4.17.12 / 4.18.8+
Fix from $1,600 2023-11-03
Mattermost Desktop MEDIUM 5.3
CVE-2023-5876

Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial…

Fix: 5.5.1+
Fix from $1,600 2023-11-02
Secure Firewall Management Center MEDIUM 6.5
CVE-2023-20155

A vulnerability in a logging API in Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to cause the dev…

Fix: after 7.3.1.1
Fix from $1,600 2023-11-01
Openshift Container Platform For Arm64 HIGH 7.5
CVE-2023-5625

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2…

Patch available
Fix from $1,950 2023-11-01