Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2022-41952
Synapse before 1.52.0 with URL preview functionality enabled will attempt to generate URL previews for media stream URLs without properly limiting co…
Synapse
1.53.0+
HIGH 7.5
CVE-2022-38871
In Free5gc v3.0.5, the AMF breaks due to malformed NAS messages.
Free5gc
No fix yet
HIGH 7.5
CVE-2022-4006
A vulnerability, which was classified as problematic, has been found in WBCE CMS. Affected by this issue is the function increase_attempts of the fil…
Wbce Cms
Patch available
HIGH 7.5
CVE-2022-20854
A vulnerability in the processing of SSH connections of Cisco Firepower Management Center (FMC) and Cisco Firepower Threat Defense (FTD) Software cou…
Secure Firewall Management Center
after 6.7.0.3
HIGH 7.5
CVE-2022-40735
The Diffie-Hellman Key Agreement Protocol allows use of long exponents that arguably make certain calculations unnecessarily expensive, because the 1…
Diffie Hellman Key Exchange
Mitigation only
HIGH 7.5
CVE-2022-45199
Pillow before 9.3.0 allows denial of service via SAMPLESPERPIXEL.
Pillow
9.3.0+
MEDIUM 5.5
CVE-2022-30691
Uncontrolled resource consumption in the Intel(R) Support Android application before version 22.02.28 may allow an authenticated user to potentially …
Support
22.02.28+
MEDIUM 5.3
CVE-2022-3818
An uncontrolled resource consumption issue when parsing URLs in GitLab CE/EE affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 p…
GitLab
15.3.5 / 15.4.4+
MEDIUM 6.5
CVE-2022-43572
In Splunk Enterprise versions below 8.2.9, 8.1.12, and 9.0.2, sending a malformed file through the Splunk-to-Splunk (S2S) or HTTP Event Collector (HE…
Splunk
8.1.12 / 8.2.9+
MEDIUM 6.5
CVE-2022-43564
In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, a remote user who can create search macros and schedule search reports can cause a deni…
Splunk
8.1.12 / 8.2.9+
MEDIUM 5.3
CVE-2022-20937
A vulnerability in a feature that monitors RADIUS requests on Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote at…
Identity Services Engine
2.7.0+
HIGH 7.5
CVE-2022-20960
A vulnerability in Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated remote attacker to cause a denial o…
Email Security Appliance
14.2.1-015 / 14.3.0-020+
MEDIUM 6.5
CVE-2022-43238
Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This vulnerability allows attacker…
Debian Linux
No fix yet
HIGH 7.5
CVE-2022-32927
The issue was addressed with improved memory handling. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 16.1 and iPadOS 16. Joining a malicio…
Ipados
15.7.1+
HIGH 7.5
CVE-2022-39294
conduit-hyper integrates a conduit application with the hyper server. Prior to version 0.4.2, `conduit-hyper` did not check any limit on a request's …
Conduit Hyper
0.4.2+
HIGH 7.5
CVE-2022-2741
The denial-of-service can be triggered by transmitting a carefully crafted CAN frame on the same CAN network as the vulnerable node. The frame must h…
Zephyr
after 3.1.0
HIGH 7.5
CVE-2022-40617
strongSwan before 5.9.8 allows remote attackers to cause a denial of service in the revocation plugin by sending a crafted end-entity (and intermedia…
Ubuntu Linux
3.11.20 / 4.3.15+
HIGH 7.5
CVE-2022-43766
Apache IoTDB version 0.12.2 to 0.12.6, 0.13.0 to 0.13.2 are vulnerable to a Denial of Service attack when accepting untrusted patterns for REGEXP que…
Iotdb
after 0.13.2
HIGH 7.5
CVE-2022-3639
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions from 10.8 before 15.1.6, all versions starting from 15.2 before 1…
GitLab
15.1.6 / 15.2.4+
HIGH 7.5
CVE-2022-41806
In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with IPv6/IPv4 translation rules is…
Big Ip Advanced Firewall Manager
15.1.5.1 / 16.1.3.2+
HIGH 7.5
CVE-2022-41833
In all BIG-IP 13.1.x versions, when an iRule containing the HTTP::collect command is configured on a virtual server, undisclosed requests can cause T…
Big Ip Access Policy Manager
after 13.1.5
MEDIUM 6.5
CVE-2022-41770
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BIG-…
Big Ip Access Policy Manager
14.1.5.1 / 15.1.7+
MEDIUM 5.3
CVE-2020-15853
supybot-fedora implements the command 'refresh', that refreshes the cache of all users from FAS. This takes quite a while to run, and zodbot stops re…
Supybot Fedora
Mitigation only
HIGH 7.5
CVE-2022-3517
A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand func…
Debian Linux
3.0.5+
HIGH 7.5
CVE-2022-3283
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3…
GitLab
15.2.5 / 15.3.4+
MEDIUM 6.5
CVE-2022-2455
A business logic issue in the handling of large repositories in all versions of GitLab CE/EE from 10.0 before 15.1.6, all versions starting from 15.2…
GitLab
15.1.6 / 15.2.4+
HIGH 7.5
CVE-2022-2931
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting from 15.2 before 15.2.4, all…
GitLab
15.1.6 / 15.2.4+
MEDIUM 5.5
CVE-2022-39128
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-39123
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-39124
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Android
Mitigation only