Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora CRITICAL 10.0
CVE-2021-41556

sqclass.cpp in Squirrel through 2.2.5 and 3.x through 3.1 allows an out-of-bounds read (in the core interpreter) that can lead to Code Execution. If …

Fix: after 3.1
Fix from $2,300 2022-07-28
Fedora HIGH 7.5
CVE-2022-34749

In mistune through 2.0.2, support of inline markup is implemented by using regular expressions that can involve a high amount of backtracking on cert…

Fix: after 2.0.2
Fix from $1,950 2022-07-25
Fedora HIGH 7.8
CVE-2021-46829

GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated …

Fix: 2.42.8+
Fix from $1,950 2022-07-24
Fedora MEDIUM 5.3
CVE-2022-21549

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are …

Patch available
Fix from $1,600 2022-07-19
Fedora MEDIUM 5.5
CVE-2022-21527

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. …

Fix: after 8.0.29
Fix from $1,600 2022-07-19
Fedora MEDIUM 5.5
CVE-2022-21528

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. …

Fix: after 8.0.29
Fix from $1,600 2022-07-19
Fedora MEDIUM 5.5
CVE-2022-21509

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. …

Fix: after 8.0.29
Fix from $1,600 2022-07-19
Fedora MEDIUM 5.5
CVE-2022-2476

A null pointer dereference bug was found in wavpack-5.4.0 The results from the ASAN log: AddressSanitizer:DEADLYSIGNAL ==============================…

No fix yet
Fix from $1,600 2022-07-19
Fedora HIGH 7.3
CVE-2022-32323

AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.

Patch available
Fix from $1,950 2022-07-14
Fedora MEDIUM 6.5
CVE-2022-29901

Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak…

Mitigation only
Fix from $1,600 2022-07-12
Fedora HIGH 7.8
CVE-2022-2345

Use After Free in GitHub repository vim/vim prior to 9.0.0046.

Fix: 9.0.0046+
Fix from $1,950 2022-07-08
Fedora HIGH 7.8
CVE-2022-2344

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0045.

Fix: 9.0.0045+
Fix from $1,950 2022-07-08
Fedora HIGH 7.8
CVE-2022-2343

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0044.

Fix: 9.0.0044+
Fix from $1,950 2022-07-08
Fedora HIGH 7.5
CVE-2022-31129

moment is a JavaScript date library for parsing, validating, manipulating, and formatting dates. Affected versions of moment were found to use an ine…

Fix: 2.29.4+
Fix from $1,950 2022-07-06
Fedora HIGH 7.8
CVE-2022-2304

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0035+
Fix from $1,950 2022-07-05
Fedora HIGH 7.1
CVE-2022-33740

Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

Fix: 4.9.322 / 4.14.287+
Fix from $1,950 2022-07-05
Fedora HIGH 7.1
CVE-2022-33741

Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

Fix: 4.9.322 / 4.14.287+
Fix from $1,950 2022-07-05
Fedora HIGH 7.1
CVE-2022-33742

Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

Fix: 4.9.322 / 4.14.287+
Fix from $1,950 2022-07-05
Fedora HIGH 7.5
CVE-2022-2309

NULL Pointer Dereference allows attackers to cause a denial of service (or application crash). This only applies when lxml is used together with libx…

Fix: 4.9.1+
Fix from $1,950 2022-07-05
Fedora HIGH 7.8
CVE-2022-2289

Use After Free in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0026+
Fix from $1,950 2022-07-03
Fedora HIGH 7.8
CVE-2022-2288

Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0025+
Fix from $1,950 2022-07-03
Fedora HIGH 7.1
CVE-2022-2287

Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0021+
Fix from $1,950 2022-07-02
Fedora MEDIUM 6.1
CVE-2022-34911

An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1. XSS can occur in configurations that a…

Fix: 1.35.7 / 1.37.3+
Fix from $1,600 2022-07-02
Fedora MEDIUM 6.1
CVE-2022-34912

An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title, used on Special:Contributions, is used as page …

Fix: 1.37.3+
Fix from $1,600 2022-07-02
Fedora HIGH 7.8
CVE-2022-2286

Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0020+
Fix from $1,950 2022-07-02
Fedora HIGH 7.8
CVE-2022-2285

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0018+
Fix from $1,950 2022-07-02
Fedora HIGH 7.8
CVE-2022-2284

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0017+
Fix from $1,950 2022-07-02
Fedora MEDIUM 6.5
CVE-2022-34903

GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g.…

Fix: after 2.3.6
Fix from $1,600 2022-07-01
Fedora MEDIUM 6.5
CVE-2022-32325

JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c.

No fix yet
Fix from $1,600 2022-07-01
Fedora HIGH 7.5
CVE-2022-33099

An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.

Fix: after 5.4.4
Fix from $1,950 2022-07-01