Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2020-20813
Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet.
Openvpn
after 2.4.7
HIGH 8.8
CVE-2020-19726
An issue was discovered in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows attackers to read or write to system memory or cause a…
Binutils
No fix yet
MEDIUM 5.5
CVE-2020-18770
An issue was discovered in function zzip_disk_entry_to_file_header in mmapped.c in zziplib 0.13.69, which will lead to a denial-of-service.
Zziplib
No fix yet
HIGH 7.5
CVE-2023-39748
An issue in the component /userRpm/NetworkCfgRpm of TP-Link TL-WR1041N V2 allows attackers to cause a Denial of Service (DoS) via a crafted GET reque…
Tl Wr1041n V2 Firmware
No fix yet
MEDIUM 6.0
CVE-2023-4394
A use-after-free flaw was found in btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system in the Linux Kernel. This flaw allows a lo…
Linux Kernel
6.0+
HIGH 7.5
CVE-2023-38737
IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted reque…
Websphere Application Server
after 23.0.0.7
MEDIUM 5.5
CVE-2023-21280
In setMediaButtonBroadcastReceiver of MediaSessionRecord.java, there is a possible permanent DoS due to resource exhaustion. This could lead to local…
Android
Patch available
HIGH 7.5
CVE-2023-38741
IBM TXSeries for Multiplatforms 8.1, 8.2, and 9.1 is vulnerable to a denial of service, caused by improper enforcement of the timeout on individual r…
Txseries For Multiplatform
Mitigation only
MEDIUM 6.5
CVE-2021-29057
An issue was discovered in StaticPool in SUCHMOKUO node-worker-threads-pool version 1.4.3, allows attackers to cause a denial of service.
Node Worker Threads Pool
No fix yet
MEDIUM 5.5
CVE-2023-38210
Adobe XMP Toolkit versions 2022.06 is affected by a Uncontrolled Resource Consumption vulnerability. An unauthenticated attacker could leverage this …
Xmp Toolkit Software Development Kit
after 2022.06
HIGH 7.5
CVE-2023-38180 KEVEPSS 14%
.NET and Visual Studio Denial of Service Vulnerability
Fedora
2.1.40 / 6.0.21+
HIGH 7.5
CVE-2023-38178
.NET Core and Visual Studio Denial of Service Vulnerability
.net
17.2.18 / 17.4.10+
MEDIUM 5.3
CVE-2023-29409
Extremely large RSA keys in certificate chains can cause a client/server to expend significant CPU time verifying signatures. With fix, the size of R…
Go
1.19.12 / 1.20.7+
HIGH 7.5
CVE-2023-3825
PTC’s KEPServerEX Versions 6.0 to 6.14.263 are vulnerable to being made to read a recursively defined object that leads to uncontrolled resource cons…
Kepserverex
after 6.14.263
MEDIUM 5.5
CVE-2023-34872
A vulnerability in Outline.cc for Poppler prior to 23.06.0 allows a remote attacker to cause a Denial of Service (DoS) (crash) via a crafted PDF file…
Poppler
23.06.0+
MEDIUM 6.5
CVE-2023-38498
Discourse is an open source discussion platform. Prior to version 3.0.6 of the `stable` branch and version 3.1.0.beta7 of the `beta` and `tests-passe…
Discourse
3.0.6+
MEDIUM 6.5
CVE-2023-3637
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…
Openstack Platform
Mitigation only
HIGH 7.5
CVE-2023-38200
A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections…
Enterprise Linux
Patch available
MEDIUM 5.9
CVE-2023-3782
DoS of the OkHttp client when using a BrotliInterceptor and surfing to a malicious web server, or when an attacker can perform MitM to inject a Brotl…
Okhttp Brotli
No fix yet
MEDIUM 5.5
CVE-2023-37140
ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::DiagScopeVariablesWalker::GetChildrenCount().
Chakracore
No fix yet
MEDIUM 5.5
CVE-2023-37141
ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::ProfilingHelpers::ProfiledNewScArray().
Chakracore
No fix yet
MEDIUM 5.5
CVE-2023-37142
ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::EntryPointInfo::HasInlinees().
Chakracore
No fix yet
MEDIUM 5.5
CVE-2023-37143
ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function BackwardPass::IsEmptyLoopAfterMemOp().
Chakracore
Patch available
HIGH 7.5
CVE-2023-37788
goproxy v1.1 was discovered to contain an issue which can lead to a Denial of service (DoS) via unspecified vectors.
Goproxy
No fix yet
HIGH 7.5
CVE-2023-2263
The Rockwell Automation Kinetix 5700 DC Bus Power Supply Series A is vulnerable to CIP fuzzing. The new ENIP connections cannot be established if im…
Kinetix 5700 Firmware
Mitigation only
MEDIUM 6.5
CVE-2022-30858
An issue was discovered in ngiflib 0.4. There is SEGV in SDL_LoadAnimatedGif when use SDLaffgif. poc : ./SDLaffgif CA_file2_0
Ngiflib
No fix yet
HIGH 7.5
CVE-2023-37475
Hamba avro is a go lang encoder/decoder implementation of the avro codec specification. In affected versions a well-crafted string passed to avro's `…
Avro
2.13.0+
MEDIUM 6.5
CVE-2023-3593
Mattermost fails to properly validate markdown, allowing an attacker to crash the server via a specially crafted markdown input.
Mattermost Server
7.8.7 / 7.9.5+
HIGH 7.5
CVE-2022-4952
A vulnerability has been found in OmniSharp csharp-language-server-protocol up to 0.19.6 and classified as problematic. This vulnerability affects th…
C\# Language Server Protocol
0.19.7+
HIGH 7.5
CVE-2023-36818
Discourse is an open source discussion platform. In affected versions a request to create or update custom sidebar section can cause a denial of serv…
Discourse
Patch available