Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Connect Secure CRITICAL 9.8
CVE-2025-22457 KEVEPSS 100%

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways…

Fix: 22.7 / 22.8+
Fix from $2,300 2025-04-03
Ac10 Firmware HIGH 8.8
CVE-2025-3161

A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function ShutdownSetAdd of the file /goform/Sh…

Mitigation only
Fix from $1,950 2025-04-03
Cryptolib CRITICAL 9.8
CVE-2025-30356

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-04-01
Linux Kernel HIGH 7.8
CVE-2025-21966

In the Linux kernel, the following vulnerability has been resolved: dm-flakey: Fix memory corruption in optional corrupt_bio_byte feature Fix memor…

Fix: 6.6.84 / 6.12.20+
Fix from $1,950 2025-04-01
Linux Kernel HIGH 7.8
CVE-2025-21927

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() nvme_tcp_recv_…

Fix: 6.12.19 / 6.13.7+
Fix from $1,950 2025-04-01
Linux Kernel HIGH 7.8
CVE-2025-21919

In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix potential memory corruption in child_cfs_rq_on_list child_cfs_r…

Fix: 5.15.179 / 6.1.131+
Fix from $1,950 2025-04-01
Linux Kernel HIGH 7.8
CVE-2025-21914

In the Linux kernel, the following vulnerability has been resolved: slimbus: messaging: Free transaction ID in delayed interrupt scenario In case o…

Fix: 5.4.291 / 5.10.235+
Fix from $1,950 2025-04-01
Firefox HIGH 8.1
CVE-2025-3034

Memory safety bugs present in Firefox 136 and Thunderbird 136. Some of these bugs showed evidence of memory corruption and we presume that with enoug…

Fix: 137.0+
Fix from $1,950 2025-04-01
Navisworks HIGH 7.8
CVE-2025-1660

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage…

Fix: 2025.5+
Fix from $1,950 2025-04-01
macOS HIGH 7.8
CVE-2025-30464

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventu…

Fix: 13.7.5 / 14.7.5+
Fix from $1,950 2025-03-31
Xcode MEDIUM 5.5
CVE-2025-30441

This issue was addressed through improved state management. This issue is fixed in Xcode 16.3. An app may be able to overwrite arbitrary files.

Fix: 16.3+
Fix from $1,600 2025-03-31
macOS MEDIUM 6.5
CVE-2025-30446

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5.…

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
macOS CRITICAL 9.8
CVE-2025-24273

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventu…

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
Ipados HIGH 7.1
CVE-2025-24257

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visio…

Fix: 2.4 / 15.4+
Fix from $1,950 2025-03-31
macOS CRITICAL 9.8
CVE-2025-24231

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be abl…

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
Unclassified MEDIUM 5.3
CVE-2025-3017

A vulnerability, which was classified as critical, has been found in TA-Lib up to 0.6.4. This issue affects the function setInputBuffer of the file s…

Patch available
Fix from $1,600 2025-03-31
Unclassified CRITICAL 9.4
CVE-2025-1268

Out-of-bounds vulnerability in EMF Recode processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Pr…

Mitigation only
Fix from $2,300 2025-03-31
Hdf5 MEDIUM 5.5
CVE-2025-2924

A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl_deserialize of the file src/…

Fix: after 1.14.6
Fix from $1,600 2025-03-28
Hdf5 MEDIUM 5.5
CVE-2025-2915

A vulnerability classified as problematic was found in HDF5 up to 1.14.6. This vulnerability affects the function H5F__accum_free of the file src/H5F…

Fix: after 1.14.6
Fix from $1,600 2025-03-28
Hdf5 MEDIUM 5.3
CVE-2025-2912

A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of …

Fix: 2.0.0+
Fix from $1,600 2025-03-28
Linux Kernel HIGH 7.8
CVE-2023-52980

In the Linux kernel, the following vulnerability has been resolved: block: ublk: extending queue_size to fix overflow When validating drafted SPDK …

Fix: 6.1.11+
Fix from $1,950 2025-03-27
Upx MEDIUM 5.5
CVE-2025-2849

A vulnerability, which was classified as problematic, was found in UPX up to 5.0.0. Affected is the function PackLinuxElf64::un_DT_INIT of the file s…

Fix: after 5.0.0
Fix from $1,600 2025-03-27
Linux Kernel HIGH 7.8
CVE-2025-21869

In the Linux kernel, the following vulnerability has been resolved: powerpc/code-patching: Disable KASAN report during patching via temporary mm Er…

Fix: 6.12.17 / 6.13.5+
Fix from $1,950 2025-03-27
Core Flight System HIGH 7.5
CVE-2025-25372

NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module.

No fix yet
Fix from $1,950 2025-03-25
Cryptolib CRITICAL 9.1
CVE-2025-30216

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-03-25
Keyshot HIGH 7.8
CVE-2025-2531

Luxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute…

Fix: 2025.1+
Fix from $1,950 2025-03-25
Assimp HIGH 8.8
CVE-2025-2750

A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::CSMImporter…

No fix yet
Fix from $1,950 2025-03-25
Fortisandbox HIGH 8.8
CVE-2021-26105

A stack-based buffer overflow vulnerability (CWE-121) in the profile parser of FortiSandbox version 3.2.2 and below, version 3.1.4 and below may allo…

Fix: 3.2.3+
Fix from $1,950 2025-03-24
Dap 1620 Firmware CRITICAL 9.8
CVE-2025-2621

A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. This issue affects the function check_dws_cookie of the file /storage. …

No fix yet
Fix from $2,300 2025-03-22
Dap 1620 Firmware CRITICAL 9.8
CVE-2025-2620EPSS 9%

A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerability affects the function mod_graph_auth_uri_handler…

No fix yet
Fix from $2,300 2025-03-22