Vulnerability index

Browse CVEs

2,036 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
HIGH 7.5 CVE-2026-62389 ws before 8.21.1 contains a memory exhaustion vulnerability in lib/receiver.js where the fragment guard only triggers when fragment count reaches max… Mitigation only Fix from $1,9502026-07-15 HIGH 7.5 CVE-2026-59762 When an HTTP/2 profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization.   Impac… Big Ip Next Cloud Native Network Functions 1.4.3 / 1.7.18+ Fix from $1,9502026-07-15 HIGH 8.2 CVE-2026-13585 Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Inter… Mitigation only Fix from $1,9502026-07-15 MEDIUM 6.5 CVE-2026-46629 Twig is a template language for PHP. Prior to 3.26.0, twig/intl-extra memoises IntlDateFormatter and NumberFormatter instances in arrays keyed by tem… Twig 3.26.0+ Fix from $1,6002026-07-14 HIGH 7.5 CVE-2026-49476 Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.8.4, the CSS selector parser in soupsieve allocates unboun… Soup Sieve 2.8.4+ Fix from $1,9502026-07-14 MEDIUM 6.2 CVE-2026-24271 NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API, where an attacker could cause allocation of GPU resources withou… Mitigation only Fix from $1,6002026-07-14 HIGH 7.5 CVE-2026-50651 Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network. .net 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-50525 Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network. .net Framework 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-50648 Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network. .net Framework 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-15711 A vulnerability was found in libsoup's WebSocket frame parsing implementation. The library fails to validate length rules specified in RFC 6455 §5.5,… Mitigation only Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-47302 Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network. .net Framework 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-59886 pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.4, the univ.Real type converted its mantissa, base, and exponent value to a Python float u… Pyasn1 0.6.4+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-59200 Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize se… Pillow 12.3.0+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-56170 Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. .net 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-50506 Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. Asp.net Core Odata 7.8.0 / 9.5.0+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-49787 Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-49788 Allocation of resources without limits or throttling in HTTP/2 allows an unauthorized attacker to deny service over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-45646 Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. Asp.net Core Odata 7.8.0 / 9.5.0+ Fix from $1,9502026-07-14 MEDIUM 6.5 CVE-2026-62641 In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the TNEF decoder was subject to denial of service via a crafted compressed-RTF size. Webmail 1.6.17 / 1.7.2+ Fix from $1,6002026-07-14 HIGH 7.5 CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index. The path index column of profile dump files is used to allocate an arra… Mitigation only Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-59204 Pillow is a Python imaging library. From 8.2.0 through 12.2.0, src/libImaging/Jpeg2KDecode.c accumulates total_component_width across every tile in a… Pillow 12.3.0+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-12707 Summary Cloudflare quiche was discovered to be vulnerable to memory resource exhaustion due to unbounded queuing of post-handshake client migratio… Mitigation only Fix from $1,9502026-07-14 HIGH 8.7 CVE-2026-9140 A denial-of-service security issue exists in the 1719-AENTR. The security issue stems from improper handling of a UDP unicast network storm, which ca… Mitigation only Fix from $1,9502026-07-14 HIGH 8.7 CVE-2026-10573 A denial-of-service security issue exists in 1734 POINT I/O™ module. The security issue stems from improper handling of crafted CIP messages, which c… Mitigation only Fix from $1,9502026-07-14 HIGH 7.4 CVE-2026-54429 A vulnerability has been identified in SIMATIC S7-PLCSIM Advanced (All versions). Affected devices do not properly handle high-volume multicast netwo… Mitigation only Fix from $1,9502026-07-14 HIGH 8.2 CVE-2026-58229 Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP server to exhaust memory on the client host and cause a… Mitigation only Fix from $1,9502026-07-14 MEDIUM 6.3 CVE-2026-59246 Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP/2 server to exhaust memory on the client host and cause… Mitigation only Fix from $1,6002026-07-14 MEDIUM 6.9 CVE-2026-58488 HedgeDoc is an open source, real-time, collaborative, markdown notes application. Versions prior to 1.11.0 allowed attackers to circumvent the rate-l… Mitigation only Fix from $1,6002026-07-13 MEDIUM 6.5 CVE-2026-61465 ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An a… Imagemagick 6.9.13-51 / 7.1.2-26+ Fix from $1,6002026-07-11 HIGH 7.5 CVE-2026-57220 RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, the RabbitMQ stream listener does not enforce the configured stream frame-size limit wh… Rabbitmq Server 4.2.6+ Fix from $1,9502026-07-10