Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
X2000r Firmware CRITICAL 9.8
CVE-2023-51133

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRoute.

Mitigation only
Fix from $2,300 2023-12-30
X2000r Firmware CRITICAL 9.8
CVE-2023-51135

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPasswordSetup.

Mitigation only
Fix from $2,300 2023-12-30
X2000r Firmware CRITICAL 9.8
CVE-2023-51136

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formRebootSchedule.

Mitigation only
Fix from $2,300 2023-12-30
Jline MEDIUM 5.5
CVE-2023-50572

An issue in the component GroovyEngine.execute of jline-groovy v3.24.1 allows attackers to cause an OOM (OutofMemory) error.

Fix: 3.25.0+
Fix from $1,600 2023-12-29
Micropython CRITICAL 9.8
CVE-2023-7158

A vulnerability was found in MicroPython up to 1.21.0. It has been classified as critical. Affected is the function slice_indices of the file objslic…

Fix: 1.22.0+
Fix from $2,300 2023-12-29
Xnview Classic CRITICAL 9.8
CVE-2023-52173

XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.

Fix: 2.51.3+
Fix from $2,300 2023-12-29
Xnview Classic CRITICAL 9.8
CVE-2023-52174

XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.

Fix: 2.51.3+
Fix from $2,300 2023-12-29
Fedora CRITICAL 9.8
CVE-2023-6879

Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().

Fix: 3.7.1+
Fix from $2,300 2023-12-27
Hutool HIGH 7.5
CVE-2023-51080

The NumberUtil.toBigDecimal method in hutool-core v5.8.23 was discovered to contain a stack overflow.

Fix: 5.8.25+
Fix from $1,950 2023-12-27
Hyavijava CRITICAL 9.8
CVE-2023-51084

hyavijava v6.0.07.1 was discovered to contain a stack overflow via the ResultConverter.convert2Xml method.

No fix yet
Fix from $2,300 2023-12-27
M3 Firmware CRITICAL 9.8
CVE-2023-51090

Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formGetWeiXinConfig.

No fix yet
Fix from $2,300 2023-12-26
M3 Firmware CRITICAL 9.8
CVE-2023-51091EPSS 8%

Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function R7WebsSecurityHandler.

No fix yet
Fix from $2,300 2023-12-26
M3 Firmware CRITICAL 9.8
CVE-2023-51092EPSS 13%

Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function upgrade.

No fix yet
Fix from $2,300 2023-12-26
M3 Firmware CRITICAL 9.8
CVE-2023-51093

Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function fromSetLocalVlanInfo.

No fix yet
Fix from $2,300 2023-12-26
W9 Firmware CRITICAL 9.8
CVE-2023-51097

Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetAutoPing.

No fix yet
Fix from $2,300 2023-12-26
W9 Firmware CRITICAL 9.8
CVE-2023-51101

Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formSetUplinkInfo.

No fix yet
Fix from $2,300 2023-12-26
W9 Firmware CRITICAL 9.8
CVE-2023-51102

Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formWifiMacFilterSet.

No fix yet
Fix from $2,300 2023-12-26
M3 Firmware CRITICAL 9.8
CVE-2023-51095

Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function formDelWlRfPolicy.

No fix yet
Fix from $2,300 2023-12-26
Drawings Sdk HIGH 7.8
CVE-2023-5180

An issue was discovered in Open Design Alliance Drawings SDK before 2024.12. A corrupted value of number of sectors used by the Fat structure in a cr…

Fix: 2024.12+
Fix from $1,950 2023-12-26
Clickhouse HIGH 7.5
CVE-2023-48704

ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer ov…

Fix: 23.3.18.15 / 23.8.8.20+
Fix from $1,950 2023-12-22
Mp3gain HIGH 7.5
CVE-2023-49356

A stack buffer overflow vulnerability in MP3Gain v1.6.2 allows an attacker to cause a denial of service via the WriteMP3GainAPETag function at apetag…

No fix yet
Fix from $1,950 2023-12-22
Chrome HIGH 8.8
CVE-2023-7024 KEVEPSS 7%

Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 120.0.6099.129+
Fix from $1,950 2023-12-21
Fedora MEDIUM 5.5
CVE-2023-4255

An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vuln…

Patch available
Fix from $1,600 2023-12-21
I29 Firmware CRITICAL 9.8
CVE-2023-50988

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the bandwidth parameter in the wifiRadioSetIndoor function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50990

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleRebootSet function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50992

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50984

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the ip parameter in the spdtstConfigAndStart function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50985

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the lanGw parameter in the lanCfgSet function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50986

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysLogin function.

Mitigation only
Fix from $2,300 2023-12-20
I29 Firmware CRITICAL 9.8
CVE-2023-50987

Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysTimeInfoSet function.

Mitigation only
Fix from $2,300 2023-12-20