Vulnerability index

Browse CVEs

2,041 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
Recursor MEDIUM 5.3
CVE-2026-0398

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

Fix: 5.1.10 / 5.2.8+
Fix from $1,600 2026-02-09
Unclassified MEDIUM 6.8
CVE-2025-31990

Rate limiting for certain API calls is not being enforced, making HCL Velocity vulnerable to Denial of Service (DoS) attacks. An attacker could floo…

Mitigation only
Fix from $1,600 2026-02-07
Antrea CRITICAL 9.1
CVE-2026-25804

Antrea is a Kubernetes networking solution intended to be Kubernetes native. Prior to versions 2.3.2 and 2.4.3, Antrea's network policy priority assi…

Fix: 2.3.2 / 2.4.3+
Fix from $2,300 2026-02-06
Bodyparser HIGH 7.5
CVE-2026-25762

AdonisJS is a TypeScript-first web framework. Prior to versions 10.1.3 and 11.0.0-next.9, a denial of service (DoS) vulnerability exists in the multi…

Fix: 10.1.3 / 11.0.0+
Fix from $1,950 2026-02-06
Autogpt Platform MEDIUM 6.5
CVE-2025-32393

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Prio…

Fix: 0.6.32+
Fix from $1,600 2026-02-05
Unclassified HIGH 8.4
CVE-2020-37139

Odin Secure FTP Expert 7.6.3 contains a local denial of service vulnerability that allows attackers to crash the application by manipulating site inf…

No fix yet
Fix from $1,950 2026-02-05
Unclassified HIGH 7.5
CVE-2020-37143

ProficySCADA for iOS 5.0.25920 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the password…

No fix yet
Fix from $1,950 2026-02-05
Unclassified HIGH 7.5
CVE-2020-37134

UltraVNC Viewer 1.2.4.0 contains a denial of service vulnerability that allows attackers to crash the application by manipulating VNC Server input. A…

No fix yet
Fix from $1,950 2026-02-05
Navidrome MEDIUM 6.5
CVE-2026-25579

Navidrome is an open source web-based music collection server and streamer. Prior to version 0.60.0, authenticated users can crash the Navidrome serv…

Fix: 0.60.0+
Fix from $1,600 2026-02-04
Unclassified MEDIUM 5.3
CVE-2024-39724

IBM Db2 Big SQL on Cloud Pak for Data versions 7.6 (on CP4D 4.8), 7.7 (on CP4D 5.0), and 7.8 (on CP4D 5.1) do not properly limit the allocation of sy…

Mitigation only
Fix from $1,600 2026-02-04
Apko HIGH 7.5
CVE-2026-25140

apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before 1.1.1, an attacker who controls or…

Fix: 1.1.1+
Fix from $1,950 2026-02-04
Apko MEDIUM 5.5
CVE-2026-25122

apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before 1.1.0, expandapk.Split drains the …

Fix: 1.1.0+
Fix from $1,600 2026-02-04
Unclassified MEDIUM 6.5
CVE-2026-24514

A security issue was discovered in ingress-nginx where the validating admission controller feature is subject to a denial of service condition. By se…

Mitigation only
Fix from $1,600 2026-02-03
Unclassified HIGH 7.5
CVE-2020-37085

VirtualTablet Server 3.0.2 contains a denial of service vulnerability that allows attackers to crash the service by sending oversized string payloads…

No fix yet
Fix from $1,950 2026-02-03
Unclassified CRITICAL 9.8
CVE-2020-37067

Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attacker…

Mitigation only
Fix from $2,300 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58345

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58346

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58347

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58348

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58340

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58341

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58342

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58343

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58344

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Jspdf MEDIUM 6.5
CVE-2026-24133

jsPDF is a library to generate PDFs in JavaScript. Prior to 4.1.0, user control of the first argument of the addImage method results in denial of ser…

Fix: 4.1.0+
Fix from $1,600 2026-02-02
Rizin MEDIUM 6.1
CVE-2026-22780

Rizin is a UNIX-like reverse engineering framework and command-line toolset. Prior to 0.8.2, a heap overflow can be exploited when a malicious mach0 …

Fix: 0.8.2+
Fix from $1,600 2026-02-02
Nr15 MEDIUM 6.5
CVE-2026-20406

In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogu…

Mitigation only
Fix from $1,600 2026-02-02
Unclassified HIGH 7.5
CVE-2020-37038

Code Blocks 20.03 contains a denial of service vulnerability that allows attackers to crash the application by manipulating input in the FSymbols sea…

No fix yet
Fix from $1,950 2026-01-30
Unclassified HIGH 7.5
CVE-2020-37039

Frigate 2.02 contains a denial of service vulnerability that allows attackers to crash the application by sending oversized input to the command line…

No fix yet
Fix from $1,950 2026-01-30
Db2 MEDIUM 6.5
CVE-2025-36387

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an authenticated user to cause a denial of service when…

Fix: after 11.5.9
Fix from $1,600 2026-01-30