Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2018-1000891
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving messages with invalid checksums.
Bitcoin Sv
0.1.1+
HIGH 7.5
CVE-2018-1000892
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving sendheaders messages.
Bitcoin Sv
0.1.1+
HIGH 7.5
CVE-2018-1000893
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when deserializing transactions.
Bitcoin Sv
0.1.1+
HIGH 7.5
CVE-2018-7580
Philips Hue is vulnerable to a Denial of Service attack. Sending a SYN flood on port tcp/80 will freeze Philips Hue's hub and it will stop responding…
Hue Firmware
No fix yet
HIGH 7.5
CVE-2020-5682
Improper input validation in GROWI versions prior to v4.2.3 (v4.2 Series), GROWI versions prior to v4.1.12 (v4.1 Series), and GROWI v3 series and ear…
Growi
4.1.12 / 4.2.3+
MEDIUM 6.5
CVE-2020-26264
Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.25 a denial-of-service vulnerabili…
Go Ethereum
1.9.25+
MEDIUM 6.5
CVE-2020-26409
A DOS vulnerability exists in Gitlab CE/EE >=10.3, <13.4.7,>=13.5, <13.5.5,>=13.6, <13.6.2 that allows an attacker to trigger uncontrolled resource b…
GitLab
13.4.7 / 13.5.5+
HIGH 7.5
CVE-2020-12516
Older firmware versions (FW1 up to FW10) of the WAGO PLC family 750-88x and 750-352 are vulnerable for a special denial of service attack.
750 352 Firmware
Patch available
MEDIUM 6.5
CVE-2020-26257
Matrix is an ecosystem for open federated Instant Messaging and VoIP. Synapse is a reference "homeserver" implementation of Matrix. A malicious or po…
Fedora
1.23.1+
MEDIUM 6.5
CVE-2020-26256
Fast-csv is an npm package for parsing and formatting CSVs or any other delimited value file in node. In fast-cvs before version 4.3.6 there is a pos…
Fast Csv
4.3.6+
HIGH 7.5
CVE-2020-25630
A vulnerability was found in Moodle where the decompressed size of zip files was not checked against available user quota before unzipping them, whic…
Moodle
3.5.14 / 3.7.8+
HIGH 7.5
CVE-2020-12524
Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unr…
Btp 2043w Firmware
Mitigation only
HIGH 7.5
CVE-2020-5423
CAPI (Cloud Controller) versions prior to 1.101.0 are vulnerable to a denial-of-service attack in which an unauthenticated malicious attacker can sen…
Capi Release
1.101.0 / 15.0.0+
HIGH 7.5
CVE-2020-27813
An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to …
Debian Linux
1.4.1+
HIGH 7.5
CVE-2020-16850
Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over…
R00cpu Firmware
after 52
HIGH 7.5
CVE-2020-10772
An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of…
Unbound
Mitigation only
HIGH 7.5
CVE-2020-7779
All versions of package djvalidator are vulnerable to Regular Expression Denial of Service (ReDoS) by sending crafted invalid emails - for example, -…
Djvalidator
No fix yet
HIGH 7.5
CVE-2020-14190
Affected versions of Atlassian Fisheye/Crucible allow remote attackers to achieve Regex Denial of Service via user-supplied regex in EyeQL. The affec…
Crucible
4.8.4+
HIGH 7.5
CVE-2020-5668
Uncontrolled resource consumption vulnerability in MELSEC iQ-R Series modules (R00/01/02CPU firmware version '19' and earlier, R04/08/16/32/120 (EN) …
R00cpu Firmware
after 51
HIGH 7.5
CVE-2020-8277EPSS 54%
A Node.js application that allows an attacker to trigger a DNS request for a host of their choice could trigger a Denial of Service in versions < 15.…
Node.js
1.16.0 / 9.2.6.0+
HIGH 7.5
CVE-2020-5666EPSS 9%
Uncontrolled resource consumption vulnerability in MELSEC iQ-R Series CPU Modules (R00/01/02CPU Firmware versions from '05' to '19' and R04/08/16/32/…
Melsec Iq R00 Firmware
after 51
HIGH 7.5
CVE-2020-15783
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC TDC CPU555 (A…
Sinumerik 840d Sl Firmware
Mitigation only
HIGH 7.5
CVE-2020-24573
BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via requests to the lighttpd compo…
Eibport Firmware
3.8.3+
MEDIUM 5.3
CVE-2020-7767
All versions of package express-validators are vulnerable to Regular Expression Denial of Service (ReDoS) when validating specifically-crafted invali…
Express Validators
No fix yet
HIGH 7.5
CVE-2020-0441
In Message and toBundle of Notification.java, there is a possible resource exhaustion due to improper input validation. This could lead to remote den…
Android
Patch available
HIGH 7.5
CVE-2020-5652
Uncontrolled resource consumption vulnerability in Ethernet Port on MELSEC iQ-R, Q and L series CPU modules (R 00/01/02 CPU firmware versions '20' an…
Melsec Q Q04udpvcpu Firmware
Mitigation only
HIGH 7.5
CVE-2020-7760EPSS 5%
This affects the package codemirror before 5.58.2; the package org.apache.marmotta.webjars:codemirror before 5.58.2. The vulnerable regular expressio…
Codemirror
5.58.2 / 11.2.9.0+
HIGH 7.5
CVE-2020-5936
On BIG-IP LTM 15.1.0-15.1.0.5, 14.1.0-14.1.2.7, 13.1.0-13.1.3.4, and 12.1.0-12.1.5.1, the Traffic Management Microkernel (TMM) process may consume ex…
Big Ip Local Traffic Manager
12.1.5.2 / 14.1.2.8+
MEDIUM 5.5
CVE-2019-8774
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15. Pars…
Ipad Os
10.15 / 13.1+
HIGH 7.5
CVE-2018-4474
A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, watchOS 5, Safari 12, iOS 12, …
Safari
5.0 / 7.7+