Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.2
CVE-2025-32777
Volcano is a Kubernetes-native batch scheduling system. Prior to versions 1.11.2, 1.10.2, 1.9.1, 1.11.0-network-topology-preview.3, and 1.12.0-alpha.…
Mitigation only
MEDIUM 6.5
CVE-2025-24341
A vulnerability in the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to induce a Denial-of-Service (DoS) condit…
Mitigation only
HIGH 7.5
CVE-2025-30202
vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.5.2 and prior to 0.8.5 are vulnerable …
Vllm
0.8.5+
MEDIUM 6.5
CVE-2025-43857
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.5.7, 0.4.20, 0.3.9, and 0.2.5, there i…
Net\
0.2.5 / 0.3.9+
HIGH 7.8
CVE-2025-46687
quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overflow. QuickJS before 2025-04-26…
Quickjs
2025-04-26+
MEDIUM 5.5
CVE-2025-30409
Denial of service due to allocation of resources without limits. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) bef…
Mitigation only
HIGH 7.5
CVE-2025-0639
An issue has been discovered affecting service availability via issue preview in GitLab CE/EE affecting all versions from 16.7 before 17.9.7, 17.10 b…
GitLab
17.9.7 / 17.10.5+
HIGH 7.5
CVE-2025-35965
Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11.10 fail to validate the uniqueness and quantity of task actions within the Upd…
Mattermost Server
9.11.11 / 10.4.3+
HIGH 7.5
CVE-2025-21605
Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can caus…
Redis
6.2.18 / 7.2.8+
MEDIUM 6.5
CVE-2025-32952
Jmix is a set of libraries and tools to speed up Spring Boot data-centric application development. In versions 1.0.0 to 1.6.1 and 2.0.0 to 2.3.4, the…
Cuba Platform
1.1.1 / 1.6.2+
MEDIUM 6.5
CVE-2025-32959
CUBA Platform is a high level framework for enterprise applications development. Prior to version 7.2.23, the local file storage implementation does …
Patch available
MEDIUM 5.9
CVE-2025-3734
Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy allows Flooding.This issue affects Stage File Proxy: fr…
Stage File Proxy
3.1.5+
MEDIUM 5.1
CVE-2025-0122
A denial-of-service (DoS) vulnerability in Palo Alto Networks Prisma® SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to…
Mitigation only
MEDIUM 6.5
CVE-2024-51461
IBM QRadar WinCollect Agent 10.0 through 10.1.13 could allow a remote attacker to cause a denial of service by interrupting an HTTP request that coul…
Qradar Wincollect
10.1.14+
MEDIUM 5.5
CVE-2025-29917
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The bytes setting in the decode…
Suricata
7.0.9+
MEDIUM 5.5
CVE-2025-29916
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Datasets declared in rules have…
Suricata
7.0.9+
HIGH 7.5
CVE-2025-1677
A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all up to 17.8.7, 17.9 prior to 17.9.6 and 17.10 prior to 17.10.4 A den…
GitLab
17.9.6 / 17.10.4+
HIGH 7.5
CVE-2025-26480
Dell PowerScale OneFS, versions 9.5.0.0 through 9.10.0.0, contains an uncontrolled resource consumption vulnerability. An unauthenticated attacker wi…
Powerscale Onefs
after 9.10.0.0
MEDIUM 6.5
CVE-2025-32386
Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than com…
Helm
3.17.3+
MEDIUM 6.5
CVE-2025-3475
Allocation of Resources Without Limits or Throttling, Incorrect Authorization vulnerability in Drupal WEB-T allows Excessive Allocation, Content Spoo…
Web T
1.1.0+
HIGH 7.5
CVE-2025-32380
The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. …
Patch available
MEDIUM 6.5
CVE-2025-32381
XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to 0.1.18, Xgrammar includes a cache for compil…
Xgrammar
0.1.18+
HIGH 7.5
CVE-2025-32374
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Possible denial of service with special…
Dotnetnuke
9.13.8+
HIGH 7.5
CVE-2025-26682
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Asp.net Core
8.0.15 / 9.0.4+
MEDIUM 6.9
CVE-2025-32024
bep/imagemeta is a Go library for reading EXIF, IPTC and XMP image meta data from JPEG, TIFF, PNG, and WebP files. The EXIF data format allows for de…
Patch available
MEDIUM 6.9
CVE-2025-32025
bep/imagemeta is a Go library for reading EXIF, IPTC and XMP image meta data from JPEG, TIFF, PNG, and WebP files. The buffer created for parsing met…
Patch available
HIGH 7.5
CVE-2025-32030
Apollo Gateway provides utilities for combining multiple GraphQL microservices into a single GraphQL endpoint. Prior to 2.10.1, a vulnerability in Ap…
Apollo Gateway
2.10.1+
HIGH 7.5
CVE-2025-32031
Apollo Gateway provides utilities for combining multiple GraphQL microservices into a single GraphQL endpoint. Prior to 2.10.1, a vulnerability in Ap…
Apollo Gateway
2.10.1+
HIGH 7.5
CVE-2025-32032
The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. …
Patch available
HIGH 7.5
CVE-2025-32034
The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. …
Patch available