Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Vnet\/ip Interface Package MEDIUM 6.5
CVE-2025-48020

A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously craft…

Mitigation only
Fix from $1,600 2026-02-13
MongoDB MEDIUM 6.5
CVE-2026-25610

An authorized user may trigger a server crash by running a $geoNear pipeline with certain invalid index hints.

Fix: 7.0.29 / 8.0.13+
Fix from $1,600 2026-02-10
Simplicity Software Development Kit MEDIUM 6.5
CVE-2025-12131

A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service.

Fix: after 2025.6.2
Fix from $1,600 2026-02-05
Linux Kernel MEDIUM 5.5
CVE-2026-23067

In the Linux kernel, the following vulnerability has been resolved: iommu/io-pgtable-arm: fix size_t signedness bug in unmap path __arm_lpae_unmap(…

Fix: 6.18.8+
Fix from $1,600 2026-02-04
Nr15 MEDIUM 6.5
CVE-2026-20422

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a …

Mitigation only
Fix from $1,600 2026-02-02
Nr15 MEDIUM 6.5
CVE-2026-20405

In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rog…

Mitigation only
Fix from $1,600 2026-02-02
Nr15 HIGH 7.5
CVE-2026-20401

In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogu…

Mitigation only
Fix from $1,950 2026-02-02
Open5gs MEDIUM 5.3
CVE-2026-1737

A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function sgwc_s5c_handle_create_bearer_request of the file /src/sgwc…

Fix: after 2.7.6
Fix from $1,600 2026-02-02
Open5gs MEDIUM 5.3
CVE-2026-1738

A flaw has been found in Open5GS up to 2.7.6. The impacted element is the function sgwc_tunnel_add of the file /src/sgwc/context.c of the component S…

Fix: after 2.7.6
Fix from $1,600 2026-02-02
Open5gs MEDIUM 5.3
CVE-2026-1736

A security vulnerability has been detected in Open5GS up to 2.7.6. Impacted is the function sgwc_s11_handle_create_indirect_data_forwarding_tunnel_re…

Fix: after 2.7.6
Fix from $1,600 2026-02-02
Unclassified CRITICAL 10.0
CVE-2026-24826

Out-of-bounds Write, Divide By Zero, NULL Pointer Dereference, Use of Uninitialized Resource, Out-of-bounds Read, Reachable Assertion vulnerability i…

Patch available
Fix from $2,300 2026-01-27
Linux Kernel MEDIUM 5.5
CVE-2026-22990

In the Linux kernel, the following vulnerability has been resolved: libceph: replace overzealous BUG_ON in osdmap_apply_incremental() If the osdmap…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-23
Go Tuf HIGH 7.5
CVE-2026-23991

go-tuf is a Go implementation of The Update Framework (TUF). Starting in version 2.0.0 and prior to version 2.3.1, if the TUF repository (or any of i…

Fix: 2.3.1+
Fix from $1,950 2026-01-22
Unclassified HIGH 7.5
CVE-2025-13878EPSS 8%

Malformed BRID/HHIT records can cause `named` to terminate unexpectedly. This issue affects BIND 9 versions 9.18.40 through 9.18.43, 9.20.13 through …

Mitigation only
Fix from $1,950 2026-01-21
Quicly HIGH 7.5
CVE-2025-61684

Quicly, an IETF QUIC protocol implementation, is susceptible to a denial-of-service attack prior to commit d9d3df6a8530a102b57d840e39b0311ce5c9e14e. …

Fix: 2026-01-18+
Fix from $1,950 2026-01-19
Open5gs MEDIUM 5.3
CVE-2025-15531

A vulnerability was identified in Open5GS up to 2.7.5. This vulnerability affects the function sgwc_bearer_add of the file src/sgwc/context.c. The ma…

Fix: after 2.7.5
Fix from $1,600 2026-01-17
Open5gs HIGH 7.5
CVE-2025-15530

A vulnerability was determined in Open5GS up to 2.7.6. This affects the function sgwc_s11_handle_create_indirect_data_forwarding_tunnel_request of th…

Fix: after 2.7.6
Fix from $1,950 2026-01-17
Linux Kernel MEDIUM 5.5
CVE-2025-71085

In the Linux kernel, the following vulnerability has been resolved: ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() There exi…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-13
Linux Kernel MEDIUM 5.5
CVE-2025-71080

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT On PREEMPT_RT kernels,…

Fix: 6.12.64 / 6.18.4+
Fix from $1,600 2026-01-13
Avahi MEDIUM 6.5
CVE-2025-68468

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can…

Fix: 0.9+
Fix from $1,600 2026-01-12
Avahi MEDIUM 6.5
CVE-2025-68471

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can…

Fix: 0.9+
Fix from $1,600 2026-01-12
Avahi MEDIUM 5.5
CVE-2025-68276

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged …

Fix: 0.9+
Fix from $1,600 2026-01-12
Nr15 MEDIUM 6.5
CVE-2025-20760

In Modem, there is a possible read of uninitialized heap data due to an uncaught exception. This could lead to remote denial of service, if a UE has …

Mitigation only
Fix from $1,600 2026-01-06
Nr17 MEDIUM 6.5
CVE-2025-20762

In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a r…

Mitigation only
Fix from $1,600 2026-01-06
Open5gs HIGH 7.5
CVE-2025-15176

A flaw has been found in Open5GS up to 2.7.5. This affects the function decode_ipv6_header/ogs_pfcp_pdr_rule_find_by_packet of the file lib/pfcp/rule…

Fix: after 2.7.5
Fix from $1,950 2025-12-29
Pexip Infinity HIGH 7.5
CVE-2025-66379

Pexip Infinity before 39.0 has Improper Input Validation in the media implementation, allowing a remote attacker to trigger a software abort via a cr…

Fix: 39.0+
Fix from $1,950 2025-12-25
Pexip Infinity MEDIUM 5.3
CVE-2025-66443

Pexip Infinity 35.0 through 38.1 before 39.0, in non-default configurations that use Direct Media for WebRTC, has Improper Input Validation in signal…

Fix: 39.0+
Fix from $1,600 2025-12-25
Pexip Infinity HIGH 7.5
CVE-2025-32096

Pexip Infinity 33.0 through 37.0 before 37.1 has improper input validation in signaling that allows an attacker to trigger a software abort, resultin…

Fix: 37.1+
Fix from $1,950 2025-12-25
Pexip Infinity HIGH 7.5
CVE-2025-48704

Pexip Infinity 35.0 through 37.2 before 38.0 has Improper Input Validation in signalling that allows an attacker to trigger a software abort, resulti…

Fix: 38.0+
Fix from $1,950 2025-12-25
Pexip Infinity MEDIUM 5.9
CVE-2025-49088

Pexip Infinity 32.0 through 37.1 before 37.2, in certain configurations of OTJ (One Touch Join) for Teams SIP Guest Join, has Improper Input Validati…

Fix: 37.2+
Fix from $1,600 2025-12-25