Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2025-63261 AWStats 8.0 is vulnerable to Command Injection via the open function Debian Linux No fix yet Fix from $1,9502026-03-20 CRITICAL 9.8 CVE-2025-8454 It was discovered that uscan, a tool to scan/watch upstream sources for new releases of software, included in devscripts (a collection of scripts to … Devscripts Mitigation only Fix from $2,3002025-08-01 CRITICAL 9.8 CVE-2015-0842 yubiserver before 0.6 is prone to SQL injection issues, potentially leading to an authentication bypass. Yubiserver Mitigation only Fix from $2,3002025-06-26 CRITICAL 9.8 CVE-2015-0843 yubiserver before 0.6 is prone to buffer overflows due to misuse of sprintf. Yubiserver Mitigation only Fix from $2,3002025-06-26 HIGH 7.8 CVE-2024-52035 An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed… Debian Linux No fix yet Fix from $1,9502025-06-02 HIGH 7.8 CVE-2024-54028 An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead … Debian Linux No fix yet Fix from $1,9502025-06-02 HIGH 7.4 CVE-2025-3155EPSS 13% A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious … Debian Linux No fix yet Fix from $1,9502025-04-03 HIGH 7.4 CVE-2024-55581 When AdaCore Ada Web Server 25.0.0 is linked with GnuTLS, the default behaviour of AWS.Client is vulnerable to a man-in-the-middle attack because of … Debian Linux No fix yet Fix from $1,9502025-02-26 MEDIUM 6.5 CVE-2025-22921 FFmpeg git-master,N-113007-g8d24a28d06 was discovered to contain a segmentation violation via the component /libavcodec/jpeg2000dec.c. Debian Linux Mitigation only Fix from $1,6002025-02-18 MEDIUM 5.5 CVE-2024-53566 An issue in the action_listcategories() function of Sangoma Asterisk v22/22.0.0/22.0.0-rc1/22.0.0-rc2/22.0.0-pre1 allows attackers to execute a path … Debian Linux Mitigation only Fix from $1,6002024-12-02 HIGH 7.5 CVE-2024-28130 An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially craft… Debian Linux No fix yet Fix from $1,9502024-04-23 CRITICAL 9.8 CVE-2024-25189 libjwt 1.15.3 uses strcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side cha… Debian Linux No fix yet Fix from $2,3002024-02-08 HIGH 7.8 CVE-2023-23583 Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable es… Debian Linux Mitigation only Fix from $1,9502023-11-14 HIGH 8.8 CVE-2023-39928 A use-after-free vulnerability exists in the MediaRecorder API of Webkit WebKitGTK 2.40.5. A specially crafted web page can abuse this vulnerability … Debian Linux Mitigation only Fix from $1,9502023-10-06 HIGH 7.3 CVE-2023-3550 Mediawiki v1.40.0 does not validate namespaces used in XML files. Therefore, if the instance administrator allows XML file uploads, a remote attack… Debian Linux No fix yet Fix from $1,9502023-09-25 HIGH 8.8 CVE-2020-24165 An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial o… Debian Linux Mitigation only Fix from $1,9502023-08-28 MEDIUM 5.5 CVE-2022-48554 File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project. Debian Linux No fix yet Fix from $1,6002023-08-22 MEDIUM 6.5 CVE-2020-19189 Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of… Debian Linux No fix yet Fix from $1,6002023-08-22 MEDIUM 6.7 CVE-2022-41804 Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable e… Debian Linux Mitigation only Fix from $1,6002023-08-11 MEDIUM 5.5 CVE-2023-20588EPSS 11% A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.  Debian Linux Mitigation only Fix from $1,6002023-08-08 MEDIUM 6.7 CVE-2023-21400 In multiple functions of io_uring.c, there is a possible kernel memory corruption due to improper locking. This could lead to local escalation of pr… Debian Linux No fix yet Fix from $1,6002023-07-13 HIGH 7.5 CVE-2023-31490 An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function. Debian Linux No fix yet Fix from $1,9502023-05-09 HIGH 7.8 CVE-2022-42332 x86 shadow plus log-dirty mode use-after-free In environments where host assisted address translation is necessary but Hardware Assisted Paging (HAP)… Debian Linux Mitigation only Fix from $1,9502023-03-21 HIGH 7.8 CVE-2023-27635 debmany in debian-goodies 0.88.1 allows attackers to execute arbitrary shell commands (because of an eval call) via a crafted .deb file. (The path is… Debmany Mitigation only Fix from $1,9502023-03-05 HIGH 8.8 CVE-2023-26314 The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type is associ… Debian Linux Mitigation only Fix from $1,9502023-02-22 HIGH 7.8 CVE-2022-47655 Libde265 1.0.9 is vulnerable to Buffer Overflow in function void put_qpel_fallback<unsigned short> Debian Linux No fix yet Fix from $1,9502023-01-05 HIGH 8.1 CVE-2022-43597 Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A spec… Debian Linux No fix yet Fix from $1,9502022-12-22 HIGH 8.1 CVE-2022-43598 Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A spec… Debian Linux No fix yet Fix from $1,9502022-12-22 HIGH 8.1 CVE-2022-43599 Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte… Debian Linux No fix yet Fix from $1,9502022-12-22 HIGH 8.1 CVE-2022-43600 Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte… Debian Linux No fix yet Fix from $1,9502022-12-22