Vulnerability index

Browse CVEs

2,036 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
Unclassified HIGH 7.5
CVE-2026-62389

ws before 8.21.1 contains a memory exhaustion vulnerability in lib/receiver.js where the fragment guard only triggers when fragment count reaches max…

Mitigation only
Fix from $1,950 2026-07-15
Big Ip Next Cloud Native Network Functions HIGH 7.5
CVE-2026-59762

When an HTTP/2 profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization.   Impac…

Fix: 1.4.3 / 1.7.18+
Fix from $1,950 2026-07-15
Unclassified HIGH 8.2
CVE-2026-13585

Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Inter…

Mitigation only
Fix from $1,950 2026-07-15
Twig MEDIUM 6.5
CVE-2026-46629

Twig is a template language for PHP. Prior to 3.26.0, twig/intl-extra memoises IntlDateFormatter and NumberFormatter instances in arrays keyed by tem…

Fix: 3.26.0+
Fix from $1,600 2026-07-14
Soup Sieve HIGH 7.5
CVE-2026-49476

Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.8.4, the CSS selector parser in soupsieve allocates unboun…

Fix: 2.8.4+
Fix from $1,950 2026-07-14
Unclassified MEDIUM 6.2
CVE-2026-24271

NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API, where an attacker could cause allocation of GPU resources withou…

Mitigation only
Fix from $1,600 2026-07-14
.net HIGH 7.5
CVE-2026-50651

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

Fix: 8.0.29 / 9.0.18+
Fix from $1,950 2026-07-14
.net Framework HIGH 7.5
CVE-2026-50525

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

Fix: 8.0.29 / 9.0.18+
Fix from $1,950 2026-07-14
.net Framework HIGH 7.5
CVE-2026-50648

Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.

Fix: 8.0.29 / 9.0.18+
Fix from $1,950 2026-07-14
Unclassified HIGH 7.5
CVE-2026-15711

A vulnerability was found in libsoup's WebSocket frame parsing implementation. The library fails to validate length rules specified in RFC 6455 §5.5,…

Mitigation only
Fix from $1,950 2026-07-14
.net Framework HIGH 7.5
CVE-2026-47302

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

Fix: 8.0.29 / 9.0.18+
Fix from $1,950 2026-07-14
Pyasn1 HIGH 7.5
CVE-2026-59886

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.4, the univ.Real type converted its mantissa, base, and exponent value to a Python float u…

Fix: 0.6.4+
Fix from $1,950 2026-07-14
Pillow HIGH 7.5
CVE-2026-59200

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize se…

Fix: 12.3.0+
Fix from $1,950 2026-07-14
.net HIGH 7.5
CVE-2026-56170

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Fix: 8.0.29 / 9.0.18+
Fix from $1,950 2026-07-14
Asp.net Core Odata HIGH 7.5
CVE-2026-50506

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Fix: 7.8.0 / 9.5.0+
Fix from $1,950 2026-07-14
Windows 10 1607 HIGH 7.5
CVE-2026-49787

Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Windows 10 1607 HIGH 7.5
CVE-2026-49788

Allocation of resources without limits or throttling in HTTP/2 allows an unauthorized attacker to deny service over a network.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Asp.net Core Odata HIGH 7.5
CVE-2026-45646

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Fix: 7.8.0 / 9.5.0+
Fix from $1,950 2026-07-14
Webmail MEDIUM 6.5
CVE-2026-62641

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the TNEF decoder was subject to denial of service via a crafted compressed-RTF size.

Fix: 1.6.17 / 1.7.2+
Fix from $1,600 2026-07-14
Unclassified HIGH 7.5
CVE-2026-60081

DBI::ProfileData versions before 1.651 for Perl do not limit the path index. The path index column of profile dump files is used to allocate an arra…

Mitigation only
Fix from $1,950 2026-07-14
Pillow HIGH 7.5
CVE-2026-59204

Pillow is a Python imaging library. From 8.2.0 through 12.2.0, src/libImaging/Jpeg2KDecode.c accumulates total_component_width across every tile in a…

Fix: 12.3.0+
Fix from $1,950 2026-07-14
Unclassified HIGH 7.5
CVE-2026-12707

Summary Cloudflare quiche was discovered to be vulnerable to memory resource exhaustion due to unbounded queuing of post-handshake client migratio…

Mitigation only
Fix from $1,950 2026-07-14
Unclassified HIGH 8.7
CVE-2026-9140

A denial-of-service security issue exists in the 1719-AENTR. The security issue stems from improper handling of a UDP unicast network storm, which ca…

Mitigation only
Fix from $1,950 2026-07-14
Unclassified HIGH 8.7
CVE-2026-10573

A denial-of-service security issue exists in 1734 POINT I/O™ module. The security issue stems from improper handling of crafted CIP messages, which c…

Mitigation only
Fix from $1,950 2026-07-14
Unclassified HIGH 7.4
CVE-2026-54429

A vulnerability has been identified in SIMATIC S7-PLCSIM Advanced (All versions). Affected devices do not properly handle high-volume multicast netwo…

Mitigation only
Fix from $1,950 2026-07-14
Unclassified HIGH 8.2
CVE-2026-58229

Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP server to exhaust memory on the client host and cause a…

Mitigation only
Fix from $1,950 2026-07-14
Unclassified MEDIUM 6.3
CVE-2026-59246

Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP/2 server to exhaust memory on the client host and cause…

Mitigation only
Fix from $1,600 2026-07-14
Unclassified MEDIUM 6.9
CVE-2026-58488

HedgeDoc is an open source, real-time, collaborative, markdown notes application. Versions prior to 1.11.0 allowed attackers to circumvent the rate-l…

Mitigation only
Fix from $1,600 2026-07-13
Imagemagick MEDIUM 6.5
CVE-2026-61465

ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An a…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-11
Rabbitmq Server HIGH 7.5
CVE-2026-57220

RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, the RabbitMQ stream listener does not enforce the configured stream frame-size limit wh…

Fix: 4.2.6+
Fix from $1,950 2026-07-10