Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Json HIGH 7.2
CVE-2020-7712

This affects the package json before 10.0.0. It is possible to inject arbritary commands using the parseLookup function.

Fix: 10.0.0 / 21.1.1.1.0+
Fix from $1,950 2020-08-30
Smartos MEDIUM 5.5
CVE-2016-9040

An exploitable denial of service exists in the the Joyent SmartOS OS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl…

No fix yet
Fix from $1,600 2018-09-07
Sshpk HIGH 7.5
CVE-2018-3737

sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.

Fix: after 1.13.1
Fix from $1,950 2018-06-07
Http Signature HIGH 7.5
CVE-2017-16005

Http-signature is a "Reference implementation of Joyent's HTTP Signature Scheme". In versions <=0.9.11, http-signature signs only the header values, …

Fix: after 0.9.11
Fix from $1,950 2018-06-04
Smartos HIGH 7.0
CVE-2018-1171

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An …

Patch available
Fix from $1,950 2018-03-19
Smartos HIGH 7.8
CVE-2018-1166

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An …

Mitigation only
Fix from $1,950 2018-02-21
Smartos HIGH 7.0
CVE-2018-1165

This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An …

Mitigation only
Fix from $1,950 2018-02-21
Triton Datacenter HIGH 8.8
CVE-2017-10940EPSS 5%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Joyent Smart Data Center prior to [email protected].…

Mitigation only
Fix from $1,950 2017-10-31
Smartos MEDIUM 5.5
CVE-2016-9039

An exploitable denial of service exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system…

No fix yet
Fix from $1,600 2017-01-31
Smartos HIGH 7.0
CVE-2016-9035

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system c…

No fix yet
Fix from $1,950 2016-12-14
Smartos HIGH 7.0
CVE-2016-9034

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system c…

Fix: after 20161110t013148z
Fix from $1,950 2016-12-14
Smartos HIGH 7.0
CVE-2016-9033

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system c…

No fix yet
Fix from $1,950 2016-12-14
Smartos HIGH 7.0
CVE-2016-9032

An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system c…

No fix yet
Fix from $1,950 2016-12-14
Smartos HIGH 7.8
CVE-2016-9031

An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system …

No fix yet
Fix from $1,950 2016-12-14
Smartos HIGH 8.8
CVE-2016-8733

An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system …

Fix: after 20161110t013148z
Fix from $1,950 2016-12-14
Node.js HIGH 10.0
CVE-2014-7192EPSS 13%

Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Developer a…

Fix: after 0.10.32
Fix from $1,950 2014-12-11