Vulnerability index

Browse CVEs

414 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Yocto MEDIUM 6.7
CVE-2025-20747

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a mali…

Mitigation only
Fix from $1,600 2025-11-04
Yocto MEDIUM 6.7
CVE-2025-20746

In gnss service, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a mali…

Mitigation only
Fix from $1,600 2025-11-04
Yocto MEDIUM 6.7
CVE-2025-20730

In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege if a mal…

Mitigation only
Fix from $1,600 2025-11-04
Pytorch HIGH 7.5
CVE-2025-55560

An issue in pytorch v2.7.0 can lead to a Denial of Service (DoS) when a PyTorch model consists of torch.Tensor.to_sparse() and torch.Tensor.to_dense(…

Fix: after 2.7.0
Fix from $1,950 2025-09-25
Pytorch HIGH 7.5
CVE-2025-55552

pytorch v2.8.0 was discovered to display unexpected behavior when the components torch.rot90 and torch.randn_like are used together.

Fix: after 2.8.0
Fix from $1,950 2025-09-25
Pytorch HIGH 7.5
CVE-2025-55553

A syntax error in the component proxy_tensor.py of pytorch v2.7.0 allows attackers to cause a Denial of Service (DoS).

Fix: after 2.7.0
Fix from $1,950 2025-09-25
Pytorch HIGH 7.5
CVE-2025-55557

A Name Error occurs in pytorch v2.7.0 when a PyTorch model consists of torch.cummin and is compiled by Inductor, leading to a Denial of Service (DoS).

Fix: after 2.7.0
Fix from $1,950 2025-09-25
Pytorch HIGH 7.5
CVE-2025-55558

A buffer overflow occurs in pytorch v2.7.0 when a PyTorch model consists of torch.nn.Conv2d, torch.nn.functional.hardshrink, and torch.Tensor.view-to…

Fix: after 2.7.0
Fix from $1,950 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-55554

pytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long().

Fix: after 2.8.0
Fix from $1,600 2025-09-25
Pytorch HIGH 7.5
CVE-2025-55551

An issue in the component torch.linalg.lu of pytorch v2.8.0 allows attackers to cause a Denial of Service (DoS) when performing a slice operation.

Fix: after 2.8.0
Fix from $1,950 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-46148

In PyTorch through 2.6.0, when eager is used, nn.PairwiseDistance(p=2) produces incorrect results.

Fix: after 2.6.0
Fix from $1,600 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-46149

In PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.

Fix: 2.7.0+
Fix from $1,600 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-46150

In PyTorch before 2.7.0, when torch.compile is used, FractionalMaxPool2d has inconsistent results.

Fix: 2.7.0+
Fix from $1,600 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-46152

In PyTorch before 2.7.0, bitwise_right_shift produces incorrect output for certain out-of-bounds values of the "other" argument.

Fix: 2.7.0+
Fix from $1,600 2025-09-25
Pytorch MEDIUM 5.3
CVE-2025-46153

PyTorch before 3.7.0 has a bernoulli_p decompose function in decompositions.py even though it lacks full consistency with the eager CPU implementatio…

Fix: 2.7.0+
Fix from $1,600 2025-09-25
Dragonfly MEDIUM 5.3
CVE-2025-59354

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the DragonFly2 uses a variety of hash function…

Fix: 2.1.0+
Fix from $1,600 2025-09-17
Dragonfly CRITICAL 9.8
CVE-2025-59352

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the gRPC API and HTTP APIs allow peers to send…

Fix: 2.1.0+
Fix from $2,300 2025-09-17
Dragonfly HIGH 7.5
CVE-2025-59348

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the processPieceFromSource method does not upd…

Fix: 2.1.0+
Fix from $1,950 2025-09-17
Dragonfly HIGH 7.5
CVE-2025-59353

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, a peer can obtain a valid TLS certificate for …

Fix: 2.1.0+
Fix from $1,950 2025-09-17
Dragonfly MEDIUM 5.3
CVE-2025-59350

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the access control mechanism for the Proxy fea…

Fix: 2.1.0+
Fix from $1,600 2025-09-17
Dragonfly MEDIUM 5.3
CVE-2025-59351

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the first return value of a function is derefe…

Fix: 2.1.0+
Fix from $1,600 2025-09-17
Dragonfly MEDIUM 6.5
CVE-2025-59347

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The Manager disables TLS certificate verificat…

Fix: 2.1.0+
Fix from $1,600 2025-09-17
Dragonfly MEDIUM 5.3
CVE-2025-59346

Dragonfly is an open source P2P-based file distribution and image acceleration system. Versions prior to 2.1.0 contain a server-side request forgery …

Fix: 2.1.0+
Fix from $1,600 2025-09-17
Dragonfly CRITICAL 9.1
CVE-2025-59345

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The /api/v1/jobs and /preheats endpoints in Ma…

Fix: 2.1.10+
Fix from $2,300 2025-09-17
Yocto HIGH 7.8
CVE-2025-20705

In monitor_hang, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor h…

Mitigation only
Fix from $1,950 2025-09-01
Yocto MEDIUM 6.8
CVE-2025-20696

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has ph…

Mitigation only
Fix from $1,600 2025-08-04
Materialx HIGH 7.5
CVE-2025-53009

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In versions 1.39.2 an…

Patch available
Fix from $1,950 2025-08-01
Materialx HIGH 7.5
CVE-2025-53010

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In version 1.39.2, wh…

Patch available
Fix from $1,950 2025-08-01
Materialx HIGH 7.5
CVE-2025-53011

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In version 1.39.2, wh…

Patch available
Fix from $1,950 2025-08-01
Materialx HIGH 7.5
CVE-2025-53012

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In version 1.39.2, ne…

Patch available
Fix from $1,950 2025-08-01