Vulnerability index

Browse CVEs

2,041 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
MEDIUM 5.3 CVE-2026-0398 Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor. Recursor 5.1.10 / 5.2.8+ Fix from $1,6002026-02-09 MEDIUM 6.8 CVE-2025-31990 Rate limiting for certain API calls is not being enforced, making HCL Velocity vulnerable to Denial of Service (DoS) attacks. An attacker could floo… Mitigation only Fix from $1,6002026-02-07 CRITICAL 9.1 CVE-2026-25804 Antrea is a Kubernetes networking solution intended to be Kubernetes native. Prior to versions 2.3.2 and 2.4.3, Antrea's network policy priority assi… Antrea 2.3.2 / 2.4.3+ Fix from $2,3002026-02-06 HIGH 7.5 CVE-2026-25762 AdonisJS is a TypeScript-first web framework. Prior to versions 10.1.3 and 11.0.0-next.9, a denial of service (DoS) vulnerability exists in the multi… Bodyparser 10.1.3 / 11.0.0+ Fix from $1,9502026-02-06 MEDIUM 6.5 CVE-2025-32393 AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Prio… Autogpt Platform 0.6.32+ Fix from $1,6002026-02-05 HIGH 8.4 CVE-2020-37139 Odin Secure FTP Expert 7.6.3 contains a local denial of service vulnerability that allows attackers to crash the application by manipulating site inf… No fix yet Fix from $1,9502026-02-05 HIGH 7.5 CVE-2020-37143 ProficySCADA for iOS 5.0.25920 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the password… No fix yet Fix from $1,9502026-02-05 HIGH 7.5 CVE-2020-37134 UltraVNC Viewer 1.2.4.0 contains a denial of service vulnerability that allows attackers to crash the application by manipulating VNC Server input. A… No fix yet Fix from $1,9502026-02-05 MEDIUM 6.5 CVE-2026-25579 Navidrome is an open source web-based music collection server and streamer. Prior to version 0.60.0, authenticated users can crash the Navidrome serv… Navidrome 0.60.0+ Fix from $1,6002026-02-04 MEDIUM 5.3 CVE-2024-39724 IBM Db2 Big SQL on Cloud Pak for Data versions 7.6 (on CP4D 4.8), 7.7 (on CP4D 5.0), and 7.8 (on CP4D 5.1) do not properly limit the allocation of sy… Mitigation only Fix from $1,6002026-02-04 HIGH 7.5 CVE-2026-25140 apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before 1.1.1, an attacker who controls or… Apko 1.1.1+ Fix from $1,9502026-02-04 MEDIUM 5.5 CVE-2026-25122 apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before 1.1.0, expandapk.Split drains the … Apko 1.1.0+ Fix from $1,6002026-02-04 MEDIUM 6.5 CVE-2026-24514 A security issue was discovered in ingress-nginx where the validating admission controller feature is subject to a denial of service condition. By se… Mitigation only Fix from $1,6002026-02-03 HIGH 7.5 CVE-2020-37085 VirtualTablet Server 3.0.2 contains a denial of service vulnerability that allows attackers to crash the service by sending oversized string payloads… No fix yet Fix from $1,9502026-02-03 CRITICAL 9.8 CVE-2020-37067 Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attacker… Mitigation only Fix from $2,3002026-02-03 MEDIUM 5.5 CVE-2025-58345 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 5.5 CVE-2025-58346 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 5.5 CVE-2025-58347 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 5.5 CVE-2025-58348 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 6.2 CVE-2025-58340 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 6.2 CVE-2025-58341 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 6.2 CVE-2025-58342 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 5.5 CVE-2025-58343 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 6.2 CVE-2025-58344 An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W… Exynos 980 Firmware Mitigation only Fix from $1,6002026-02-03 MEDIUM 6.5 CVE-2026-24133 jsPDF is a library to generate PDFs in JavaScript. Prior to 4.1.0, user control of the first argument of the addImage method results in denial of ser… Jspdf 4.1.0+ Fix from $1,6002026-02-02 MEDIUM 6.1 CVE-2026-22780 Rizin is a UNIX-like reverse engineering framework and command-line toolset. Prior to 0.8.2, a heap overflow can be exploited when a malicious mach0 … Rizin 0.8.2+ Fix from $1,6002026-02-02 MEDIUM 6.5 CVE-2026-20406 In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogu… Nr15 Mitigation only Fix from $1,6002026-02-02 HIGH 7.5 CVE-2020-37038 Code Blocks 20.03 contains a denial of service vulnerability that allows attackers to crash the application by manipulating input in the FSymbols sea… No fix yet Fix from $1,9502026-01-30 HIGH 7.5 CVE-2020-37039 Frigate 2.02 contains a denial of service vulnerability that allows attackers to crash the application by sending oversized input to the command line… No fix yet Fix from $1,9502026-01-30 MEDIUM 6.5 CVE-2025-36387 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an authenticated user to cause a denial of service when… Db2 after 11.5.9 Fix from $1,6002026-01-30