Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2021-36047
XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Improper Input Validation vulnerability potentially resulting in arbitrary code execut…
Debian Linux
after 2020.1
HIGH 7.8
CVE-2021-36048
XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Improper Input Validation vulnerability potentially resulting in arbitrary code execut…
Debian Linux
after 2020.1
HIGH 7.5
CVE-2021-31863
Insufficient input validation in the Git repository integration of Redmine before 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1 allows Redmine us…
Debian Linux
4.0.9 / 4.1.3+
MEDIUM 5.5
CVE-2020-10001
An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, …
Debian Linux
11.1.0+
HIGH 8.6
CVE-2020-25097EPSS 8%
An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Req…
Debian Linux
4.14 / 5.0.5+
HIGH 7.5
CVE-2021-20273
A flaw was found in privoxy before 3.0.32. A crash can occur via a crafted CGI request if Privoxy is toggled off.
Debian Linux
3.0.32+
HIGH 7.4
CVE-2021-20247
A flaw was found in mbsync before v1.3.5 and v1.4.1. Validations of the mailbox names returned by IMAP LIST/LSUB do not occur allowing a malicious or…
Debian Linux
1.3.5 / 1.4.1+
HIGH 7.8
CVE-2020-27844
A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg dur…
Debian Linux
2.4.0+
HIGH 7.5
CVE-2020-25275
Dovecot before 2.3.13 has Improper Input Validation in lda, lmtp, and imap, leading to an application crash via a crafted email message with certain …
Debian Linux
2.3.13+
HIGH 7.5
CVE-2020-8184
A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an…
Debian Linux
2.1.4 / 2.2.3+
MEDIUM 5.5
CVE-2020-3810
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafte…
Apt
2.1.2+
HIGH 7.5
CVE-2015-5230EPSS 9%
The DNS packet parsing/generation code in PowerDNS (aka pdns) Authoritative Server 3.4.x before 3.4.6 allows remote attackers to cause a denial of se…
Debian Linux
3.4.6+
HIGH 7.5
CVE-2012-6111
gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function
Debian Linux
Mitigation only
HIGH 7.8
CVE-2012-3409
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation
Debian Linux
99+
HIGH 7.3
CVE-2013-4245
Orca has arbitrary code execution due to insecure Python module load
Debian Linux
Mitigation only
HIGH 8.1
CVE-2012-2248
An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable.
Debian Linux
Mitigation only
CRITICAL 9.8
CVE-2011-4120
Yubico PAM Module before 2.10 performed user authentication when 'use_first_pass' PAM configuration option was not used and the module was configured…
Debian Linux
2.10+
HIGH 7.5
CVE-2014-1936
rc before 1.7.1-5 insecurely creates temporary files.
Debian Linux
1.7.1-5+
MEDIUM 5.3
CVE-2014-1935
9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames.
Debian Linux
No fix yet
HIGH 7.5
CVE-2012-2350
pam_shield before 0.9.4: Default configuration does not perform protective action
Debian Linux
0.9.4+
HIGH 7.5
CVE-2013-1816
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially craf…
Debian Linux
1.19.4 / 1.20.3+
HIGH 7.5
CVE-2011-0529
Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP.
Debian Linux
0.12.5+
CRITICAL 9.8
CVE-2011-1028
The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_private_s…
Debian Linux
3.0.7+
CRITICAL 9.8
CVE-2011-0703
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 ses…
Debian Linux
0.0.3+
MEDIUM 6.5
CVE-2018-12207
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to …
Debian Linux
after 15.0.1
MEDIUM 6.5
CVE-2010-3439
It is possible to cause a DoS condition by causing the server to crash in alien-arena 7.33 by supplying various invalid parameters to the download co…
Debian Linux
No fix yet
HIGH 7.4
CVE-2012-0051
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.
Debian Linux
No fix yet
HIGH 7.8
CVE-2005-4890
There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su - user -c program". The user session can be escaped to…
Shadow
after 4.1.5
HIGH 7.5
CVE-2013-2227EPSS 13%
GLPI 0.83.7 has Local File Inclusion in common.tabs.php.
Debian Linux
No fix yet
MEDIUM 5.5
CVE-2013-3718
evince is missing a check on number of pages which can lead to a segmentation fault
Debian Linux
Patch available