Vulnerability index

Browse CVEs

2,041 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
Unclassified HIGH 7.5
CVE-2024-47614

async-graphql is a GraphQL server library implemented in Rust. async-graphql before 7.0.10 does not limit the number of directives for a field. This …

Patch available
Fix from $1,950 2024-10-03
Linux Kernel MEDIUM 5.5
CVE-2024-46745

In the Linux kernel, the following vulnerability has been resolved: Input: uinput - reject requests with unreasonable number of slots When exercis…

Fix: 4.19.322 / 5.4.284+
Fix from $1,600 2024-09-18
Vernemq HIGH 7.5
CVE-2024-44459

A memory allocation issue in vernemq v2.0.1 allows attackers to cause a Denial of Service (DoS) via excessive memory consumption.

Mitigation only
Fix from $1,950 2024-09-12
Edirectory HIGH 7.5
CVE-2021-22532

Possible NLDAP Denial of Service attack Vulnerability in eDirectory has been discovered in OpenText™ eDirectory before 9.2.4.0000.

Fix: 9.2.4.0000+
Fix from $1,950 2024-09-12
Linux Kernel MEDIUM 5.5
CVE-2024-45012

In the Linux kernel, the following vulnerability has been resolved: nouveau/firmware: use dma non-coherent allocator Currently, enabling SG_DEBUG i…

Fix: 6.6.48 / 6.10.7+
Fix from $1,600 2024-09-11
Linux Kernel MEDIUM 5.5
CVE-2024-45014

In the Linux kernel, the following vulnerability has been resolved: s390/boot: Avoid possible physmem_info segment corruption When physical memory …

Fix: 6.10.7+
Fix from $1,600 2024-09-11
Yeti HIGH 7.5
CVE-2024-45412

Yeti bridges the gap between CTI and DFIR practitioners by providing a Forensics Intelligence platform and pipeline. Remote user-controlled data tags…

Fix: 2.1.11+
Fix from $1,950 2024-09-10
Unclassified MEDIUM 5.0
CVE-2024-23184

Having a large number of address headers (From, To, Cc, Bcc, etc.) becomes excessively CPU intensive. With 100k header lines CPU usage is already 12 …

Mitigation only
Fix from $1,600 2024-09-10
Unclassified HIGH 7.5
CVE-2024-23185

Very large headers can cause resource exhaustion when parsing message. The message-parser normally reads reasonably sized chunks of the message. Howe…

Mitigation only
Fix from $1,950 2024-09-10
Tc Mguard Rs4000 4g Vzw Vpn Firmware MEDIUM 5.3
CVE-2024-7734

An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connecti…

Fix: 8.9.3+
Fix from $1,600 2024-09-10
Unclassified MEDIUM 6.5
CVE-2024-6509

Marinus Pfund, member of the AXIS OS Bug Bounty Program, has found the VAPIX API alwaysmulti.cgi was vulnerable for file globbing which could lead t…

Mitigation only
Fix from $1,600 2024-09-10
Mq Operator MEDIUM 5.5
CVE-2024-40680

IBM MQ 9.3 CD and 9.4 LTS/CD could allow a local user to cause a denial of service due to improper memory allocation causing a segmentation fault.

Mitigation only
Fix from $1,600 2024-09-07
Vert.x HIGH 7.5
CVE-2024-8391

In Eclipse Vert.x version 4.3.0 to 4.5.9, the gRPC server does not limit the maximum length of message payload (Maven GAV: io.vertx:vertx-grpc-server…

Fix: 4.5.10+
Fix from $1,950 2024-09-04
Apollo Router HIGH 7.5
CVE-2024-43783

The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. …

Fix: 1.52.1+
Fix from $1,950 2024-08-27
Ipc Diagnostics Package MEDIUM 5.5
CVE-2024-41175

The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local denial-of-service attack by a low privileged attacker.

Fix: 2.0.0.1 / 14.1.2.0+
Fix from $1,600 2024-08-27
Russh HIGH 7.5
CVE-2024-43410

Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to OOM a russh server. An SSH p…

Fix: 0.10.2 / 0.44.1+
Fix from $1,950 2024-08-21
Ida Pro HIGH 7.5
CVE-2024-44083

ida64.dll in Hex-Rays IDA Pro through 8.4 crashes when there is a section that has many jumps linked, and the final jump corresponds to the payload f…

Fix: after 8.4
Fix from $1,950 2024-08-19
Linux Kernel MEDIUM 5.5
CVE-2024-43856

In the Linux kernel, the following vulnerability has been resolved: dma: fix call order in dmam_free_coherent dmam_free_coherent() frees a DMA allo…

Fix: 4.19.320 / 5.4.282+
Fix from $1,600 2024-08-17
Unclassified MEDIUM 6.5
CVE-2024-5209

A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny print…

Mitigation only
Fix from $1,600 2024-08-16
Unclassified MEDIUM 6.5
CVE-2024-5210

A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to prevent pr…

Mitigation only
Fix from $1,600 2024-08-16
Unclassified MEDIUM 6.5
CVE-2024-6004

A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny print…

Mitigation only
Fix from $1,600 2024-08-16
Unclassified MEDIUM 5.3
CVE-2024-6098

When performing an online tag generation to devices which communicate using the ControlLogix protocol, a machine-in-the-middle, or a device that is…

Mitigation only
Fix from $1,600 2024-08-16
Unclassified MEDIUM 6.5
CVE-2024-4781

A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to crash prin…

Mitigation only
Fix from $1,600 2024-08-16
Unclassified MEDIUM 6.5
CVE-2024-4782

A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to disrupt th…

Mitigation only
Fix from $1,600 2024-08-16
Big Ip Access Policy Manager HIGH 7.5
CVE-2024-41727

In BIG-IP tenants running on r2000 and r4000 series hardware, or BIG-IP Virtual Edition (VEs) using Intel E810 SR-IOV NIC, undisclosed traffic can ca…

Fix: 16.1.5+
Fix from $1,950 2024-08-14
Unclassified HIGH 8.7
CVE-2024-7113

If exploited, this vulnerability could cause a SuiteLink server to consume excessive system resources and slow down processing of Data I/O for the du…

Mitigation only
Fix from $1,950 2024-08-13
Linux Kernel MEDIUM 5.5
CVE-2024-42258

In the Linux kernel, the following vulnerability has been resolved: mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machin…

Fix: 6.10.3+
Fix from $1,600 2024-08-12
Zabbix HIGH 7.5
CVE-2024-36462

Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources, such as CPU, memory, or net…

No fix yet
Fix from $1,950 2024-08-12
Linux Kernel MEDIUM 5.5
CVE-2024-42242

In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci: Fix max_seg_size for 64KiB PAGE_SIZE blk_queue_max_segment_size() e…

Fix: 6.9.10+
Fix from $1,600 2024-08-07
Linux Kernel MEDIUM 5.5
CVE-2024-42247

In the Linux kernel, the following vulnerability has been resolved: wireguard: allowedips: avoid unaligned 64-bit memory accesses On the parisc pla…

Fix: 5.10.222 / 5.15.163+
Fix from $1,600 2024-08-07