Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Unclassified HIGH 7.5
CVE-2025-14501

Sante PACS Server HTTP Content-Length Header Handling NULL Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote atta…

Mitigation only
Fix from $1,950 2025-12-23
Binaryen MEDIUM 5.5
CVE-2025-14957

A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBuilder::makeLocalSet/IRBuilder…

Fix: after 125
Fix from $1,600 2025-12-19
Open5gs MEDIUM 5.3
CVE-2025-14953

A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the component…

Fix: after 2.7.5
Fix from $1,600 2025-12-19
Upf HIGH 7.5
CVE-2025-65566

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2.1.3-dev. When the UPF receives …

Patch available
Fix from $1,950 2025-12-18
Upf HIGH 7.5
CVE-2025-65565

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2.1.3-dev. After PFCP association…

No fix yet
Fix from $1,950 2025-12-18
Upf HIGH 7.5
CVE-2025-65563

A denial-of-service vulnerability exists in the omec-project UPF (component upf-epc/pfcpiface) up to at least version upf-epc-pfcpiface:2.1.3-dev. Wh…

Fix: after 2.1.2
Fix from $1,950 2025-12-18
Upf HIGH 7.5
CVE-2025-65564

A denial-of-service vulnerability exists in the omec-upf (upf-epc-pfcpiface) in version upf-epc-pfcpiface:2.1.3-dev. When the UPF receives a PFCP Ass…

Patch available
Fix from $1,950 2025-12-18
Riot HIGH 7.5
CVE-2025-66646

RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) devices and other embedded de…

Fix: 2025.10+
Fix from $1,950 2025-12-17
Sipgo HIGH 7.5
CVE-2025-68274

SIPGO is a library for writing SIP services in the GO language. Starting in version 0.3.0 and prior to version 1.0.0-alpha-1, a nil pointer dereferen…

Fix: 1.0.0+
Fix from $1,950 2025-12-16
Qts HIGH 7.5
CVE-2025-62848

A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote attackers can then exploit th…

Mitigation only
Fix from $1,950 2025-12-16
Cordova Social Sharing MEDIUM 6.2
CVE-2025-65835

The Cordova plugin cordova-plugin-x-socialsharing (SocialSharing-PhoneGap-Plugin) for Android 6.0.4, registers an exported broadcast receiver nl.xser…

No fix yet
Fix from $1,600 2025-12-15
Pdf Editor HIGH 7.8
CVE-2025-55312

An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScript, the a…

Fix: after 2025.1.0.66692
Fix from $1,950 2025-12-11
Pdf Editor HIGH 7.8
CVE-2025-55314

An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScr…

Fix: after 2025.1.0.27937
Fix from $1,950 2025-12-11
Hub M2 Firmware MEDIUM 6.5
CVE-2025-65296

NULL-pointer dereference vulnerabilities in Aqara Hub M2 4.3.6_0027, Hub M3 4.3.6_0025, and Camera Hub G3 4.1.9_0027 in the JSON processing enable de…

No fix yet
Fix from $1,600 2025-12-10
Pdf Xchange Editor HIGH 7.5
CVE-2025-64085

A NULL pointer dereference vulnerability in the importDataObject() function of PDF-XChange Editor v10.7.3.401 allows attackers to cause a Denial of S…

No fix yet
Fix from $1,950 2025-12-09
Pdf Xchange Editor HIGH 7.5
CVE-2025-64086

A NULL pointer dereference vulnerability in the util.readFileIntoStream component of PDF-XChange Editor v10.7.3.401 allows attackers to cause a Denia…

No fix yet
Fix from $1,950 2025-12-09
Windows 10 21h2 MEDIUM 6.5
CVE-2025-62463

Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.

Fix: 10.0.19044.6691 / 10.0.19045.6691+
Fix from $1,600 2025-12-09
Windows 11 23h2 MEDIUM 6.5
CVE-2025-62465

Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.

Fix: 10.0.20348.4467 / 10.0.22631.6345+
Fix from $1,600 2025-12-09
Windows 10 1607 HIGH 7.8
CVE-2025-62466

Null pointer dereference in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8688 / 10.0.17763.8146+
Fix from $1,950 2025-12-09
Unclassified HIGH 7.5
CVE-2025-14309

NULL Pointer Dereference vulnerability in ravynsoft ravynos.This issue affects ravynos: through 0.5.2.

Patch available
Fix from $1,950 2025-12-09
Python Apt MEDIUM 5.5
CVE-2025-6966

NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process …

Fix: 0.9.3.11 / 1.6.6+
Fix from $1,600 2025-12-05
Linux Kernel MEDIUM 5.5
CVE-2025-40251

In the Linux kernel, the following vulnerability has been resolved: devlink: rate: Unset parent pointer in devl_rate_nodes_destroy The function dev…

Fix: 6.1.164 / 6.6.118+
Fix from $1,600 2025-12-04
Envoy MEDIUM 6.5
CVE-2025-64527

Envoy is a high-performance edge/middle/service proxy. In 1.33.12, 1.34.10, 1.35.6, 1.36.2, and earlier, Envoy crashes when JWT authentication is con…

Fix: 1.33.13 / 1.34.11+
Fix from $1,600 2025-12-03
Exynos 1280 Firmware HIGH 7.5
CVE-2025-54326

An issue was discovered in Camera in Samsung Mobile Processor Exynos 1280 and 2200. Unnecessary registration of a hardware IP address in the Camera d…

Mitigation only
Fix from $1,950 2025-12-03
Nr15 MEDIUM 5.3
CVE-2025-20790

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a …

Mitigation only
Fix from $1,600 2025-12-02
Nr15 MEDIUM 6.5
CVE-2025-20750

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a …

Mitigation only
Fix from $1,600 2025-12-02
Nr15 MEDIUM 5.3
CVE-2025-20755

In Modem, there is a possible application crash due to improper input validation. This could lead to remote denial of service, if a UE has connected …

Mitigation only
Fix from $1,600 2025-12-02
Streaming Media MEDIUM 6.5
CVE-2025-65408

A NULL pointer dereference in the ADTSAudioFileServerMediaSubsession::createNewRTPSink() function of Live555 Streaming Media v2018.09.02 allows attac…

No fix yet
Fix from $1,600 2025-12-01
Unclassified HIGH 7.5
CVE-2025-7007

NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the ant…

Mitigation only
Fix from $1,950 2025-12-01
Unclassified MEDIUM 5.9
CVE-2025-11156

Netskope was notified about a potential gap in its agent (NS Client) on Windows systems. If this gap is successfully exploited, a local, authenticat…

Mitigation only
Fix from $1,600 2025-11-28