Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Clickhouse CRITICAL 9.8
CVE-2023-47118

ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer o…

Fix: 23.3.16.7 / 23.8.6.16+
Fix from $2,300 2023-12-20
Avalanche HIGH 7.5
CVE-2023-46804

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $1,950 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46261EPSS 11%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche HIGH 7.5
CVE-2023-46803

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $1,950 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46224EPSS 7%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46225EPSS 11%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46257EPSS 11%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46258EPSS 7%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46259EPSS 11%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46260EPSS 10%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46216EPSS 36%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46217EPSS 36%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46220EPSS 11%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46221EPSS 7%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46222EPSS 7%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-46223EPSS 7%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Avalanche CRITICAL 9.8
CVE-2023-41727EPSS 36%

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service …

Fix: 6.4.2+
Fix from $2,300 2023-12-19
Firefox HIGH 8.8
CVE-2023-6873

Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 121.0+
Fix from $1,950 2023-12-19
Linux Kernel HIGH 7.0
CVE-2023-6931

A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escala…

Fix: 6.7+
Fix from $1,950 2023-12-19
Firefox HIGH 8.8
CVE-2023-6856EPSS 20%

The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could al…

Fix: 115.6 / 121.0+
Fix from $1,950 2023-12-19
Firefox HIGH 8.8
CVE-2023-6858

Firefox was susceptible to a heap buffer overflow in `nsTextFragment` due to insufficient OOM handling. This vulnerability affects Firefox ESR < 115.…

Fix: 115.6 / 121.0+
Fix from $1,950 2023-12-19
Firefox HIGH 8.8
CVE-2023-6861

The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode. This vulnerability affects Firefox E…

Fix: 115.6 / 121.0+
Fix from $1,950 2023-12-19
Firefox HIGH 8.8
CVE-2023-6864

Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we p…

Fix: 115.6 / 121.0+
Fix from $1,950 2023-12-19
Fpwin Pro HIGH 7.8
CVE-2023-6314

Stack-based buffer overflow in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute arbitrary code via a specially craf…

Fix: after 7.7.0.0
Fix from $1,950 2023-12-19
Openimageio HIGH 7.5
CVE-2023-3430

A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote att…

No fix yet
Fix from $1,950 2023-12-18
Perl HIGH 7.8
CVE-2023-47038

A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an …

Fix: after 5.38.0
Fix from $1,950 2023-12-18
Micro Http Server CRITICAL 9.8
CVE-2023-50965

In MicroHttpServer (aka Micro HTTP Server) through 4398570, _ReadStaticFiles in lib/middleware.c allows a stack-based buffer overflow and potentially…

No fix yet
Fix from $2,300 2023-12-17
Rtspserver CRITICAL 9.8
CVE-2023-6888

A vulnerability classified as critical was found in PHZ76 RtspServer 1.0.0. This vulnerability affects the function ParseRequestLine of the file Rtsp…

No fix yet
Fix from $2,300 2023-12-17
Gecko Software Development Kit CRITICAL 9.1
CVE-2023-4020

An unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementatio…

Fix: 4.4.0+
Fix from $2,300 2023-12-15
Sigma Lite Firmware CRITICAL 9.8
CVE-2023-33222

When handling contactless cards, usage of a specific function to get additional information from the card which doesn't check the boundary on the da…

Fix: 1.2.7 / 2.12.2+
Fix from $2,300 2023-12-15