Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 5.5
CVE-2022-21704

log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the file, fileSync and dateFile ap…

Fix: 6.4.0+
Fix from $1,600 2022-01-19
Debian Linux HIGH 8.8
CVE-2022-21699

IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally developed for the Python prog…

Fix: 7.16.3 / 7.31.1+
Fix from $1,950 2022-01-19
Debian Linux MEDIUM 5.4
CVE-2021-23225

Cacti 1.1.38 allows authenticated users with User Management permissions to inject arbitrary web script or HTML in the "new_username" field during cr…

Mitigation only
Fix from $1,600 2022-01-19
Debian Linux CRITICAL 9.8
CVE-2021-33912EPSS 10%

libspf2 before 1.2.11 has a four-byte heap-based buffer overflow that might allow remote attackers to execute arbitrary code (via an unauthenticated …

Fix: 1.2.11+
Fix from $2,300 2022-01-19
Debian Linux CRITICAL 9.8
CVE-2022-23221EPSS 65%

H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTINGS=TRUE;FO…

Fix: 2.0.206+
Fix from $2,300 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21349

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affecte…

Fix: after 11.70.1
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21360

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21365

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21366

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21340EPSS 8%

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are …

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21341

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Supported versions that …

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21305

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21291

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21293EPSS 8%

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are …

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21294

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are …

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21296

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affec…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21299

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affec…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21277

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are af…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21282

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affec…

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux MEDIUM 5.3
CVE-2022-21283

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are …

Fix: after 15.0.5
Fix from $1,600 2022-01-19
Debian Linux HIGH 7.8
CVE-2022-0261

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4120 / 13.0+
Fix from $1,950 2022-01-18
Debian Linux MEDIUM 6.1
CVE-2022-0235

node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor

Fix: 1.0 / 2.6.7+
Fix from $1,600 2022-01-16
Debian Linux MEDIUM 6.6
CVE-2022-0213

vim is vulnerable to Heap-based Buffer Overflow

Fix: 8.2+
Fix from $1,600 2022-01-14
Debian Linux CRITICAL 9.8
CVE-2022-23218

The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on t…

Fix: 2.31+
Fix from $2,300 2022-01-14
Debian Linux CRITICAL 9.8
CVE-2022-23219

The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on …

Fix: 2.31+
Fix from $2,300 2022-01-14
Debian Linux HIGH 7.5
CVE-2022-20698

A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software version 0.104.1 and LTS version 0.103.4 and prior versions could allo…

Fix: 0.103.5 / 0.104.2+
Fix from $1,950 2022-01-14
Debian Linux MEDIUM 5.5
CVE-2021-37529

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of…

Fix: after 3.2.8a
Fix from $1,600 2022-01-12
Debian Linux MEDIUM 5.5
CVE-2021-37530

A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c.

Fix: after 3.2.8a
Fix from $1,600 2022-01-12
Debian Linux HIGH 7.8
CVE-2021-36409

There is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1.0.8 when decoding file, which allows attackers to ca…

No fix yet
Fix from $1,950 2022-01-10
Debian Linux MEDIUM 5.5
CVE-2021-36410

A stack-buffer-overflow exists in libde265 v1.0.8 via fallback-motion.cc in function put_epel_hv_fallback when running program dec265.

No fix yet
Fix from $1,600 2022-01-10