Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Envoy HIGH 7.5
CVE-2023-35945

Envoy is a cloud-native high-performance edge/middle/service proxy. Envoy’s HTTP/2 codec may leak a header map and bookkeeping structures upon receiv…

Fix: 1.23.11 / 1.24.9+
Fix from $1,950 2023-07-13
Cmark Gfm HIGH 7.5
CVE-2023-37463

cmark-gfm is an extended version of the C reference implementation of CommonMark, a rationalized version of Markdown syntax with a spec. Three polyno…

Fix: 0.29.0.gfm.12+
Fix from $1,950 2023-07-13
Mx Chain Go MEDIUM 5.3
CVE-2023-34458

mx-chain-go is the official implementation of the MultiversX blockchain protocol, written in golang. When executing a relayed transaction, if the inn…

Fix: 1.4.17+
Fix from $1,600 2023-07-13
C300 Firmware HIGH 7.5
CVE-2023-26597

Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Honeywell Security Notification …

Fix: after 520.2tcu2
Fix from $1,950 2023-07-13
Android MEDIUM 5.5
CVE-2023-21240

In Policy of Policy.java, there is a possible boot loop due to resource exhaustion. This could lead to local denial of service with no additional exe…

Patch available
Fix from $1,600 2023-07-13
Routeros HIGH 7.5
CVE-2020-20021

An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon.

Fix: after 6.46.3
Fix from $1,950 2023-07-12
Windows 10 1507 MEDIUM 6.5
CVE-2023-35329

Windows Authentication Denial of Service Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,600 2023-07-11
Windows 10 1507 HIGH 7.5
CVE-2023-35339

Windows CryptoAPI Denial of Service Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,950 2023-07-11
Windows 11 21h2 HIGH 7.5
CVE-2023-35298

HTTP.sys Denial of Service Vulnerability

Fix: 10.0.22000.2176 / 10.0.22621.1992+
Fix from $1,950 2023-07-11
Simatic Mv540 H Firmware HIGH 7.5
CVE-2023-35920

A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All version…

Fix: 3.3.4+
Fix from $1,950 2023-07-11
Simatic Mv540 H Firmware HIGH 7.5
CVE-2023-35921

A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All version…

Fix: 3.3.4+
Fix from $1,950 2023-07-11
Anydesk HIGH 7.5
CVE-2023-26509

AnyDesk 7.0.8 allows remote Denial of Service.

No fix yet
Fix from $1,950 2023-07-03
Linux Kernel MEDIUM 5.7
CVE-2023-1206

A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN floo…

Fix: 6.5+
Fix from $1,600 2023-06-30
Drawio HIGH 7.5
CVE-2023-3398

Denial of Service in GitHub repository jgraph/drawio prior to 18.1.3.

Fix: 18.1.3+
Fix from $1,950 2023-06-26
Fastasyncworldedit MEDIUM 5.5
CVE-2023-35925

FastAsyncWorldEdit (FAWE) is designed for efficient world editing. This vulnerability enables the attacker to select a region with the `Infinity` key…

Fix: 2.6.3+
Fix from $1,600 2023-06-23
Yet Another Reverse Proxy HIGH 7.5
CVE-2023-33141

Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability

Fix: 1.1.2+
Fix from $1,950 2023-06-23
Netty MEDIUM 6.5
CVE-2023-34462

Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients…

Fix: 4.1.94+
Fix from $1,600 2023-06-22
Eft Server HIGH 7.5
CVE-2023-2990

Fortra Globalscape EFT versions before 8.1.0.16 suffer from a denial of service vulnerability, where a compressed message that decompresses to itself…

Fix: 8.1.0.16+
Fix from $1,950 2023-06-22
Emui HIGH 7.5
CVE-2023-34166

Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to …

No fix yet
Fix from $1,950 2023-06-19
Mattermost MEDIUM 6.5
CVE-2023-2793

Mattermost fails to validate links on external websites when constructing a preview for a linked website, allowing an attacker to cause a denial-of-s…

Fix: after 7.9.2
Fix from $1,600 2023-06-16
Mattermost MEDIUM 6.5
CVE-2023-2831

Mattermost fails to unescape Markdown strings in a memory-efficient way, allowing an attacker to cause a Denial of Service by sending a message conta…

Fix: after 7.9.3
Fix from $1,600 2023-06-16
Bluetooth Low Energy Software Development Kit MEDIUM 6.5
CVE-2023-2683

A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message and cause future legitimate c…

Fix: after 5.1.1
Fix from $1,600 2023-06-15
Cpp13 Firmware MEDIUM 6.5
CVE-2023-32229

Due to an error in the software interface to the secure element chip on Bosch IP cameras of family CPP13 and CPP14, the chip can be permanently damag…

Fix: 8.48.0017 / 8.80.0090+
Fix from $1,600 2023-06-15
Security Directory Suite Va HIGH 7.5
CVE-2022-33168

IBM Security Directory Suite VA 8.0.1 could allow an attacker to cause a denial of service due to uncontrolled resource consumption. IBM X-Force ID:…

Patch available
Fix from $1,950 2023-06-15
.net Framework HIGH 7.5
CVE-2023-29331

.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability

Patch available
Fix from $1,950 2023-06-14
Windows 10 1809 MEDIUM 5.3
CVE-2023-32013

Windows Hyper-V Denial of Service Vulnerability

Fix: 10.0.17763.4499 / 10.0.19044.3087+
Fix from $1,600 2023-06-14
Factorytalk Transaction Manager HIGH 7.5
CVE-2023-2778

A denial-of-service vulnerability exists in Rockwell Automation FactoryTalk Transaction Manager. This vulnerability can be exploited by sending a mod…

Fix: after 13.10
Fix from $1,950 2023-06-13
Youtrack HIGH 7.5
CVE-2023-35053

In JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms

Fix: 2023.1.10518+
Fix from $1,950 2023-06-12
Crossx MEDIUM 5.5
CVE-2023-29767

An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause a persistent denial of service via the database files.

No fix yet
Fix from $1,600 2023-06-09
Ruoyi HIGH 7.5
CVE-2023-3163

A vulnerability was found in y_project RuoYi up to 4.7.7. It has been classified as problematic. Affected is the function filterKeyword. The manipula…

Fix: after 4.7.7
Fix from $1,950 2023-06-08