Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.8 CVE-2025-2630 There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW. This vulnerability may result in arbitrary code… Labview after 2021 Fix from $1,9502025-04-09 HIGH 7.3 CVE-2025-29802 Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. Visual Studio 2022 17.8.20 / 17.10.13+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-22458 DLL hijacking in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an authenticated attacker to escalate to System. Endpoint Manager 2022+ Fix from $1,9502025-04-08 HIGH 8.4 CVE-2024-11859 DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and e… No fix yet Fix from $1,9502025-04-07 MEDIUM 6.5 CVE-2025-3051 Linux::Statm::Tiny for Perl before 0.0701 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If a… Mitigation only Fix from $1,6002025-04-01 MEDIUM 6.5 CVE-2025-30673 Sub::HandlesVia for Perl before 0.050002 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If an… Mitigation only Fix from $1,6002025-04-01 MEDIUM 6.5 CVE-2025-30672 Mite for Perl before 0.013000 generates code with the current working directory ('.') added to the @INC path similar to CVE-2016-1238. If an attacke… Mitigation only Fix from $1,6002025-04-01 HIGH 7.3 CVE-2025-26631 Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally. Visual Studio Code 1.98.0+ Fix from $1,9502025-03-11 HIGH 7.3 CVE-2025-25003 Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. Visual Studio 2019 16.11.45 / 17.8.19+ Fix from $1,9502025-03-11 HIGH 7.3 CVE-2025-24998 Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. Visual Studio 2017 15.9.71 / 16.11.45+ Fix from $1,9502025-03-11 HIGH 7.8 CVE-2020-23438 Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation. Filmora after 9.2.11 Fix from $1,9502025-03-04 HIGH 7.8 CVE-2024-10930 An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with… Block Load after 4.16 Fix from $1,9502025-03-04 HIGH 7.0 CVE-2025-1804 A vulnerability was found in Blizzard Battle.Net up to 2.39.0.15212 on Windows and classified as critical. Affected by this issue is some unknown fun… Mitigation only Fix from $1,9502025-03-01 HIGH 8.5 CVE-2024-55898 IBM i 7.2, 7.3, 7.4, and 7.5 could allow a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified… I Mitigation only Fix from $1,9502025-02-24 HIGH 7.8 CVE-2022-28339 Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an at… Housecall For Home Networks 5.3.1308+ Fix from $1,9502025-02-22 MEDIUM 6.1 CVE-2025-1223 An attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac Secure Access Client 25.01.2+ Fix from $1,6002025-02-20 MEDIUM 6.8 CVE-2025-26624 Rufus is a utility that helps format and create bootable USB flash drives. A DLL hijacking vulnerability in Rufus 4.6.2208 and earlier versions allow… Patch available Fix from $1,6002025-02-18 HIGH 7.3 CVE-2024-57963 Insecure Loading of Dynamic Link Libraries have been discovered in USB-CONVERTERCABLE DRIVER, which could allow local attackers to potentially disclo… Mitigation only Fix from $1,9502025-02-18 HIGH 7.3 CVE-2024-57964 Insecure Loading of Dynamic Link Libraries have been discovered in HVAC Energy Saving Program, which could allow local attackers to potentially discl… Mitigation only Fix from $1,9502025-02-18 MEDIUM 6.7 CVE-2024-47006 Uncontrolled search path for the Intel(R) RealSense D400 Series Universal Windows Platform (UWP) Driver for Windows(R) 10 all versions may allow an a… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-42405 Uncontrolled search path for some Intel(R) Quartus(R) Prime Software before version 23.1.1 Patch 1.01std may allow an authenticated user to potential… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-42492 Uncontrolled search path element in some BIOS and System Firmware Update Package for Intel(R) Server M50FCP family before version R01.02.0002 may all… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-39813 Uncontrolled search path for some EPCT software before version 1.42.8.0 may allow an authenticated user to potentially enable escalation of privilege… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-39284 Uncontrolled search path for some Intel(R) Advisor software before version 2024.2 may allow an authenticated user to potentially enable escalation of… Advisor 2024.2+ Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-39365 Uncontrolled search path for the FPGA Support Package for the Intel(R) oneAPI DPC++/C++ Compiler software for Windows before version 2024.2 may allow… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-39372 Uncontrolled search path for the Intel(R) XTU software for Windows before version 7.14.2.14 may allow an authenticated user to potentially enable esc… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-36280 Uncontrolled search path for some Intel(R) High Level Synthesis Compiler software before version 24.2 may allow an authenticated user to potentially … Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-36283 Uncontrolled search path for the Intel(R) Thread Director Visualizer software before version 1.0.1 may allow an authenticated user to potentially ena… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-36291 Uncontrolled search path for some Intel(R) Chipset Software Installation Utility before version 10.1.19867.8574 may allow an authenticated user to po… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-32938 Uncontrolled search path for some Intel(R) MPI Library for Windows software before version 2021.13 may allow an authenticated user to potentially ena… Mitigation only Fix from $1,6002025-02-12