Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2023-0056
An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated r…
Ceph Storage
Mitigation only
MEDIUM 6.5
CVE-2023-20861
In Spring Framework versions 6.0.0 - 6.0.6, 5.3.0 - 5.3.25, 5.2.0.RELEASE - 5.2.22.RELEASE, and older unsupported versions, it is possible for a user…
Spring Framework
after 6.0.6
HIGH 7.5
CVE-2023-1605
Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6.
Radare2
5.8.6+
HIGH 7.5
CVE-2022-45003
Gophish through 0.12.1 allows attackers to cause a Denial of Service (DoS) via a crafted payload involving autofocus.
Gophish
after 0.12.1
MEDIUM 5.5
CVE-2023-24862
Windows Secure Channel Denial of Service Vulnerability
Windows 10 1507
10.0.10240.19805 / 10.0.14393.5786+
MEDIUM 6.5
CVE-2023-23411
Windows Hyper-V Denial of Service Vulnerability
Windows 10 1507
10.0.10240.19805 / 10.0.14393.5786+
MEDIUM 6.5
CVE-2023-23396
Microsoft Excel Denial of Service Vulnerability
Office Online Server
Patch available
MEDIUM 6.5
CVE-2023-27270
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, has mult…
Netweaver Application Server Abap
Mitigation only
MEDIUM 6.5
CVE-2023-25618
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, has mult…
Netweaver Application Server Abap
Mitigation only
HIGH 7.5
CVE-2023-27530
A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an at…
Rack
2.0.9.3 / 2.1.4.3+
MEDIUM 5.3
CVE-2023-1072
An issue has been discovered in GitLab affecting all versions starting from 9.0 before 15.7.8, all versions starting from 15.8 before 15.8.4, all ver…
GitLab
15.7.8 / 15.8.4+
HIGH 7.5
CVE-2023-27483
crossplane-runtime is a set of go libraries used to build Kubernetes controllers in Crossplane and its related stacks. An out of memory panic vulnera…
Crossplane Runtime
0.19.2+
HIGH 7.5
CVE-2022-41333EPSS 7%
An uncontrolled resource consumption vulnerability [CWE-400] in FortiRecorder version 6.4.3 and below, 6.0.11 and below login authentication mechanis…
Fortirecorder Firmware
after 6.4.3
MEDIUM 6.5
CVE-2022-3277
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…
Openstack Platform
18.6.0 / 19.5.0+
HIGH 7.5
CVE-2023-26601EPSS 34%
Zoho ManageEngine ServiceDesk Plus through 14104, Asset Explorer through 6987, ServiceDesk Plus MSP before 14000, and Support Center Plus before 1400…
Manageengine Assetexplorer
6.9 / 14.0+
HIGH 7.5
CVE-2021-36395
In Moodle, the file repository's URL parsing required additional recursion handling to mitigate the risk of recursion denial of service.
Moodle
3.9.8 / 3.10.5+
HIGH 7.5
CVE-2023-27567
In OpenBSD 7.2, a TCP packet with destination port 0 that matches a pf divert-to rule can crash the kernel.
OpenBSD
Patch available
HIGH 7.5
CVE-2023-26470
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible to make the farm unusable by a…
Xwiki
14.0+
HIGH 7.5
CVE-2022-38734
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0.8 are susceptible to a Denial of Service (DoS) vulnerability. A successful explo…
Storagegrid
11.6.0.8+
HIGH 7.5
CVE-2023-20014
A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attacker to cause a denial of servi…
Nexus Dashboard
2.3+
HIGH 7.5
CVE-2022-41724
Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients…
Go
1.19.6+
HIGH 7.5
CVE-2023-23689
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource cons…
A200 Firmware
Patch available
MEDIUM 5.5
CVE-2022-20455
In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local d…
Android
Mitigation only
HIGH 7.5
CVE-2023-23524
A denial-of-service issue was addressed with improved input validation. This issue is fixed in tvOS 16.3.2, iOS 16.3.1 and iPadOS 16.3.1, watchOS 9.3…
Ipados
9.3.1 / 13.2.1+
HIGH 7.5
CVE-2023-26104
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control cha…
Lite Web Server
No fix yet
MEDIUM 6.5
CVE-2023-25816
Nextcloud is an Open Source private cloud software. Versions 25.0.0 and above, prior to 25.0.3, are subject to Uncontrolled Resource Consumption. A u…
Nextcloud Server
25.0.3+
MEDIUM 6.5
CVE-2023-23296
Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
Jetwave 2212g Firmware
1.5 / 1.6+
MEDIUM 6.5
CVE-2023-23009
Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selec…
Debian Linux
Patch available
HIGH 7.5
CVE-2023-0662
In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, excessive number of parts in HTTP form upload can cause high resource consump…
PHP
8.0.28 / 8.1.16+
HIGH 7.5
CVE-2023-24580EPSS 63%
An issue was discovered in the Multipart Request Parser in Django 3.2 before 3.2.18, 4.0 before 4.0.10, and 4.1 before 4.1.7. Passing certain inputs …
Django
3.2.18 / 4.0.10+