Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
MEDIUM 5.3 CVE-2023-5915 A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corporation. This vulnerability may… Stardom Fcj Firmware Mitigation only Fix from $1,6002023-12-01 HIGH 7.5 CVE-2023-48951 An issue in the box_equal function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT… Virtuoso Patch available Fix from $1,9502023-11-29 MEDIUM 5.3 CVE-2023-48713 Knative Serving builds on Kubernetes to support deploying and serving of applications and functions as serverless containers. An attacker who control… Serving 1.10.5 / 1.11.3+ Fix from $1,6002023-11-28 HIGH 7.5 CVE-2023-48268 Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to cons… Mattermost after 9.0.1 Fix from $1,9502023-11-27 MEDIUM 5.3 CVE-2023-48369 Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially o… Mattermost after 9.0.1 Fix from $1,6002023-11-27 HIGH 7.5 CVE-2023-40703 Mattermost fails to properly limit the characters allowed in different fields of a block in Mattermost Boards allowing a attacker to consume excessiv… Mattermost after 9.0.1 Fix from $1,9502023-11-27 MEDIUM 6.5 CVE-2023-6277 An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service vi… Fedora Patch available Fix from $1,6002023-11-24 MEDIUM 5.5 CVE-2023-33202 Bouncy Castle for Java before 1.73 contains a potential Denial of Service (DoS) issue within the Bouncy Castle org.bouncycastle.openssl.PEMParser cla… Bouncy Castle For Java 1.0.2.4 / 1.73+ Fix from $1,6002023-11-23 HIGH 7.5 CVE-2023-41102 An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple memory leaks due to not freeing up allocated memory. … Opennds 10.1.3+ Fix from $1,9502023-11-17 MEDIUM 5.5 CVE-2023-47025 An issue in Free5gc v.3.3.0 allows a local attacker to cause a denial of service via the free5gc-compose component. Free5gc No fix yet Fix from $1,6002023-11-16 HIGH 7.8 CVE-2023-38043 A vulnerability exists on all versions of the Ivanti Secure Access Client below 22.6R1.1, which could allow a locally authenticated attacker to explo… Secure Access Client 22.6+ Fix from $1,9502023-11-15 HIGH 7.5 CVE-2023-45621 Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vul… Arubaos 8.6.0.23 / 8.10.0.9+ Fix from $1,9502023-11-14 HIGH 7.5 CVE-2023-45622 Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the BLE daemon service accessed via the PAPI protocol. Successful exploitation of th… Arubaos 8.6.0.23 / 8.10.0.9+ Fix from $1,9502023-11-14 HIGH 7.5 CVE-2023-36038 ASP.NET Core Denial of Service Vulnerability Visual Studio 2022 17.2.22 / 17.4.14+ Fix from $1,9502023-11-14 MEDIUM 5.5 CVE-2023-25949 Uncontrolled resource consumption in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable deni… Aptio V Uefi Firmware Integrator Tools Mitigation only Fix from $1,6002023-11-14 MEDIUM 5.5 CVE-2023-36042 Visual Studio Denial of Service Vulnerability Visual Studio 2019 16.11.32 / 17.2.22+ Fix from $1,6002023-11-14 MEDIUM 6.5 CVE-2023-44321 Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web interface allowing an authent… 6gk5205 3bb00 2ab2 Firmware 4.5+ Fix from $1,6002023-11-14 MEDIUM 5.3 CVE-2023-42813 Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of … Kyverno Patch available Fix from $1,6002023-11-13 MEDIUM 5.5 CVE-2023-45167 IBM AIX's 7.3 Python implementation could allow a non-privileged local user to exploit a vulnerability to cause a denial of service. IBM X-Force ID:… Vios No fix yet Fix from $1,6002023-11-10 HIGH 7.5 CVE-2023-5759 In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the buffer was identified. Reported by Jason Geffner.   Helix Core 2023.2+ Fix from $1,9502023-11-08 HIGH 7.5 CVE-2023-45319 In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the commit function was identified. Reported by Jason … Helix Core 2023.2+ Fix from $1,9502023-11-08 HIGH 7.5 CVE-2023-35767 In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was identified. Reported by Jaso… Helix Core 2023.2+ Fix from $1,9502023-11-08 MEDIUM 5.3 CVE-2023-46737 Cosign is a sigstore signing tool for OCI containers. Cosign is susceptible to a denial of service by an attacker controlled registry. An attacker wh… Cosign 2.2.1+ Fix from $1,6002023-11-07 HIGH 7.5 CVE-2023-41378 In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico Enterprise Typha (v3.17.1, v3.16.3, v3.15.3 and below), a client TLS … Calico Cloud 3.15.4 / 3.16.4+ Fix from $1,9502023-11-06 MEDIUM 5.3 CVE-2023-5969 Mattermost fails to properly sanitize the request to /api/v4/redirect_location allowing an attacker, sending a specially crafted request to /api/v4/r… Mattermost after 8.1.2 Fix from $1,6002023-11-06 MEDIUM 6.5 CVE-2023-42669 A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnera… Storage 4.17.12 / 4.18.8+ Fix from $1,6002023-11-06 MEDIUM 6.5 CVE-2023-42670 A flaw was found in Samba. It is susceptible to a vulnerability where multiple incompatible RPC listeners can be initiated, causing disruptions in th… Fedora 4.17.12 / 4.18.8+ Fix from $1,6002023-11-03 MEDIUM 5.3 CVE-2023-5876 Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial… Mattermost Desktop 5.5.1+ Fix from $1,6002023-11-02 MEDIUM 6.5 CVE-2023-20155 A vulnerability in a logging API in Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to cause the dev… Secure Firewall Management Center after 7.3.1.1 Fix from $1,6002023-11-01 HIGH 7.5 CVE-2023-5625 A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2… Openshift Container Platform For Arm64 Patch available Fix from $1,9502023-11-01