Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2024-47614
async-graphql is a GraphQL server library implemented in Rust. async-graphql before 7.0.10 does not limit the number of directives for a field. This …
Patch available
MEDIUM 5.5
CVE-2024-46745
In the Linux kernel, the following vulnerability has been resolved:
Input: uinput - reject requests with unreasonable number of slots
When exercis…
Linux Kernel
4.19.322 / 5.4.284+
HIGH 7.5
CVE-2024-44459
A memory allocation issue in vernemq v2.0.1 allows attackers to cause a Denial of Service (DoS) via excessive memory consumption.
Vernemq
Mitigation only
HIGH 7.5
CVE-2021-22532
Possible NLDAP Denial of Service attack Vulnerability
in eDirectory has been discovered in
OpenText™
eDirectory before 9.2.4.0000.
Edirectory
9.2.4.0000+
MEDIUM 5.5
CVE-2024-45012
In the Linux kernel, the following vulnerability has been resolved:
nouveau/firmware: use dma non-coherent allocator
Currently, enabling SG_DEBUG i…
Linux Kernel
6.6.48 / 6.10.7+
MEDIUM 5.5
CVE-2024-45014
In the Linux kernel, the following vulnerability has been resolved:
s390/boot: Avoid possible physmem_info segment corruption
When physical memory …
Linux Kernel
6.10.7+
HIGH 7.5
CVE-2024-45412
Yeti bridges the gap between CTI and DFIR practitioners by providing a Forensics Intelligence platform and pipeline. Remote user-controlled data tags…
Yeti
2.1.11+
MEDIUM 5.0
CVE-2024-23184
Having a large number of address headers (From, To, Cc, Bcc, etc.) becomes excessively CPU intensive. With 100k header lines CPU usage is already 12 …
Mitigation only
HIGH 7.5
CVE-2024-23185
Very large headers can cause resource exhaustion when parsing message. The message-parser normally reads reasonably sized chunks of the message. Howe…
Mitigation only
MEDIUM 5.3
CVE-2024-7734
An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing a high number of TCP connecti…
Tc Mguard Rs4000 4g Vzw Vpn Firmware
8.9.3+
MEDIUM 6.5
CVE-2024-6509
Marinus Pfund, member of the AXIS OS Bug Bounty Program,
has found the VAPIX API alwaysmulti.cgi was vulnerable for file globbing which could lead t…
Mitigation only
MEDIUM 5.5
CVE-2024-40680
IBM MQ 9.3 CD and 9.4 LTS/CD could allow a local user to cause a denial of service due to improper memory allocation causing a segmentation fault.
Mq Operator
Mitigation only
HIGH 7.5
CVE-2024-8391
In Eclipse Vert.x version 4.3.0 to 4.5.9, the gRPC server does not limit the maximum length of message payload (Maven GAV: io.vertx:vertx-grpc-server…
Vert.x
4.5.10+
HIGH 7.5
CVE-2024-43783
The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. …
Apollo Router
1.52.1+
MEDIUM 5.5
CVE-2024-41175
The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local denial-of-service attack by a low privileged attacker.
Ipc Diagnostics Package
2.0.0.1 / 14.1.2.0+
HIGH 7.5
CVE-2024-43410
Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to OOM a russh server. An SSH p…
Russh
0.10.2 / 0.44.1+
HIGH 7.5
CVE-2024-44083
ida64.dll in Hex-Rays IDA Pro through 8.4 crashes when there is a section that has many jumps linked, and the final jump corresponds to the payload f…
Ida Pro
after 8.4
MEDIUM 5.5
CVE-2024-43856
In the Linux kernel, the following vulnerability has been resolved:
dma: fix call order in dmam_free_coherent
dmam_free_coherent() frees a DMA allo…
Linux Kernel
4.19.320 / 5.4.282+
MEDIUM 6.5
CVE-2024-5209
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny print…
Mitigation only
MEDIUM 6.5
CVE-2024-5210
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to prevent pr…
Mitigation only
MEDIUM 6.5
CVE-2024-6004
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny print…
Mitigation only
MEDIUM 5.3
CVE-2024-6098
When performing an online tag generation to devices which communicate
using the ControlLogix protocol, a machine-in-the-middle, or a device
that is…
Mitigation only
MEDIUM 6.5
CVE-2024-4781
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to crash prin…
Mitigation only
MEDIUM 6.5
CVE-2024-4782
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to disrupt th…
Mitigation only
HIGH 7.5
CVE-2024-41727
In BIG-IP tenants running on r2000 and r4000 series hardware, or BIG-IP Virtual Edition (VEs) using Intel E810 SR-IOV NIC, undisclosed traffic can ca…
Big Ip Access Policy Manager
16.1.5+
HIGH 8.7
CVE-2024-7113
If exploited, this vulnerability could cause a SuiteLink server to consume excessive system resources and slow down processing of Data I/O for the du…
Mitigation only
MEDIUM 5.5
CVE-2024-42258
In the Linux kernel, the following vulnerability has been resolved:
mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machin…
Linux Kernel
6.10.3+
HIGH 7.5
CVE-2024-36462
Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources, such as CPU, memory, or net…
Zabbix
No fix yet
MEDIUM 5.5
CVE-2024-42242
In the Linux kernel, the following vulnerability has been resolved:
mmc: sdhci: Fix max_seg_size for 64KiB PAGE_SIZE
blk_queue_max_segment_size() e…
Linux Kernel
6.9.10+
MEDIUM 5.5
CVE-2024-42247
In the Linux kernel, the following vulnerability has been resolved:
wireguard: allowedips: avoid unaligned 64-bit memory accesses
On the parisc pla…
Linux Kernel
5.10.222 / 5.15.163+