Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
HIGH 7.5 CVE-2025-14501 Sante PACS Server HTTP Content-Length Header Handling NULL Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote atta… Mitigation only Fix from $1,9502025-12-23 MEDIUM 5.5 CVE-2025-14957 A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBuilder::makeLocalSet/IRBuilder… Binaryen after 125 Fix from $1,6002025-12-19 MEDIUM 5.3 CVE-2025-14953 A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the component… Open5gs after 2.7.5 Fix from $1,6002025-12-19 HIGH 7.5 CVE-2025-65566 A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2.1.3-dev. When the UPF receives … Upf Patch available Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-65565 A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2.1.3-dev. After PFCP association… Upf No fix yet Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-65563 A denial-of-service vulnerability exists in the omec-project UPF (component upf-epc/pfcpiface) up to at least version upf-epc-pfcpiface:2.1.3-dev. Wh… Upf after 2.1.2 Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-65564 A denial-of-service vulnerability exists in the omec-upf (upf-epc-pfcpiface) in version upf-epc-pfcpiface:2.1.3-dev. When the UPF receives a PFCP Ass… Upf Patch available Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-66646 RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) devices and other embedded de… Riot 2025.10+ Fix from $1,9502025-12-17 HIGH 7.5 CVE-2025-68274 SIPGO is a library for writing SIP services in the GO language. Starting in version 0.3.0 and prior to version 1.0.0-alpha-1, a nil pointer dereferen… Sipgo 1.0.0+ Fix from $1,9502025-12-16 HIGH 7.5 CVE-2025-62848 A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote attackers can then exploit th… Qts Mitigation only Fix from $1,9502025-12-16 MEDIUM 6.2 CVE-2025-65835 The Cordova plugin cordova-plugin-x-socialsharing (SocialSharing-PhoneGap-Plugin) for Android 6.0.4, registers an exported broadcast receiver nl.xser… Cordova Social Sharing No fix yet Fix from $1,6002025-12-15 HIGH 7.8 CVE-2025-55312 An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScript, the a… Pdf Editor after 2025.1.0.66692 Fix from $1,9502025-12-11 HIGH 7.8 CVE-2025-55314 An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScr… Pdf Editor after 2025.1.0.27937 Fix from $1,9502025-12-11 MEDIUM 6.5 CVE-2025-65296 NULL-pointer dereference vulnerabilities in Aqara Hub M2 4.3.6_0027, Hub M3 4.3.6_0025, and Camera Hub G3 4.1.9_0027 in the JSON processing enable de… Hub M2 Firmware No fix yet Fix from $1,6002025-12-10 HIGH 7.5 CVE-2025-64085 A NULL pointer dereference vulnerability in the importDataObject() function of PDF-XChange Editor v10.7.3.401 allows attackers to cause a Denial of S… Pdf Xchange Editor No fix yet Fix from $1,9502025-12-09 HIGH 7.5 CVE-2025-64086 A NULL pointer dereference vulnerability in the util.readFileIntoStream component of PDF-XChange Editor v10.7.3.401 allows attackers to cause a Denia… Pdf Xchange Editor No fix yet Fix from $1,9502025-12-09 MEDIUM 6.5 CVE-2025-62463 Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally. Windows 10 21h2 10.0.19044.6691 / 10.0.19045.6691+ Fix from $1,6002025-12-09 MEDIUM 6.5 CVE-2025-62465 Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally. Windows 11 23h2 10.0.20348.4467 / 10.0.22631.6345+ Fix from $1,6002025-12-09 HIGH 7.8 CVE-2025-62466 Null pointer dereference in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8688 / 10.0.17763.8146+ Fix from $1,9502025-12-09 HIGH 7.5 CVE-2025-14309 NULL Pointer Dereference vulnerability in ravynsoft ravynos.This issue affects ravynos: through 0.5.2. Patch available Fix from $1,9502025-12-09 MEDIUM 5.5 CVE-2025-6966 NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process … Python Apt 0.9.3.11 / 1.6.6+ Fix from $1,6002025-12-05 MEDIUM 5.5 CVE-2025-40251 In the Linux kernel, the following vulnerability has been resolved: devlink: rate: Unset parent pointer in devl_rate_nodes_destroy The function dev… Linux Kernel 6.1.164 / 6.6.118+ Fix from $1,6002025-12-04 MEDIUM 6.5 CVE-2025-64527 Envoy is a high-performance edge/middle/service proxy. In 1.33.12, 1.34.10, 1.35.6, 1.36.2, and earlier, Envoy crashes when JWT authentication is con… Envoy 1.33.13 / 1.34.11+ Fix from $1,6002025-12-03 HIGH 7.5 CVE-2025-54326 An issue was discovered in Camera in Samsung Mobile Processor Exynos 1280 and 2200. Unnecessary registration of a hardware IP address in the Camera d… Exynos 1280 Firmware Mitigation only Fix from $1,9502025-12-03 MEDIUM 5.3 CVE-2025-20790 In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a … Nr15 Mitigation only Fix from $1,6002025-12-02 MEDIUM 6.5 CVE-2025-20750 In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a … Nr15 Mitigation only Fix from $1,6002025-12-02 MEDIUM 5.3 CVE-2025-20755 In Modem, there is a possible application crash due to improper input validation. This could lead to remote denial of service, if a UE has connected … Nr15 Mitigation only Fix from $1,6002025-12-02 MEDIUM 6.5 CVE-2025-65408 A NULL pointer dereference in the ADTSAudioFileServerMediaSubsession::createNewRTPSink() function of Live555 Streaming Media v2018.09.02 allows attac… Streaming Media No fix yet Fix from $1,6002025-12-01 HIGH 7.5 CVE-2025-7007 NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the ant… Mitigation only Fix from $1,9502025-12-01 MEDIUM 5.9 CVE-2025-11156 Netskope was notified about a potential gap in its agent (NS Client) on Windows systems. If this gap is successfully exploited, a local, authenticat… Mitigation only Fix from $1,6002025-11-28