Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2023-28771 KEV |
|
[KEV] OS Command Injection in Zyxel multiple-firewalls (CVE-2023-28771)
OS command injection in Zyxel multiple-firewalls (CVE-2023-28771). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| OSV-2023-430 |
|
Vulnerability in hdf5 (OSV-2023-430)
vulnerability in hdf5 (OSV-2023-430). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-2868 KEV |
|
[KEV] Vulnerability in Barracuda networks barracuda-networks (CVE-2023-2868)
vulnerability in Barracuda networks barracuda-networks (CVE-2023-2868). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| UBUNTU-CVE-2023-25440 |
|
Vulnerability in civicrm (UBUNTU-CVE-2023-25440)
vulnerability in civicrm (UBUNTU-CVE-2023-25440). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-32373 KEV |
|
[KEV] Use-After-Free in Apple multiple-products (CVE-2023-32373)
vulnerability in Apple multiple-products (CVE-2023-32373). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-28204 KEV |
|
[KEV] Out-of-Bounds Read in Apple multiple-products (CVE-2023-28204)
vulnerability in Apple multiple-products (CVE-2023-28204). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-32409 KEV |
|
[KEV] Vulnerability in Apple multiple-products (CVE-2023-32409)
vulnerability in Apple multiple-products (CVE-2023-32409). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-21492 KEV |
|
[KEV] Vulnerability in Samsung mobile-devices (CVE-2023-21492)
vulnerability in Samsung mobile-devices (CVE-2023-21492). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2016-6415 KEV |
|
[KEV] Information Disclosure in Cisco ios (CVE-2016-6415)
vulnerability in Cisco ios (CVE-2016-6415). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2004-1464 KEV |
|
[KEV] Vulnerability in Cisco ios (CVE-2004-1464)
vulnerability in Cisco ios (CVE-2004-1464). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| UBUNTU-CVE-2023-31722 |
|
Vulnerability in nasm (UBUNTU-CVE-2023-31722)
vulnerability in nasm (UBUNTU-CVE-2023-31722). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.15.05-1ubuntu0.1~esm1` or later.
|
| OSV-2023-395 |
|
Vulnerability in opensc (OSV-2023-395)
vulnerability in opensc (OSV-2023-395). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-392 |
|
Vulnerability in hdf5 (OSV-2023-392)
vulnerability in hdf5 (OSV-2023-392). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-390 |
|
Vulnerability in qemu (OSV-2023-390)
vulnerability in qemu (OSV-2023-390). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-8735 KEV |
|
[KEV] Vulnerability in Apache tomcat (CVE-2016-8735)
vulnerability in Apache tomcat (CVE-2016-8735). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2016-3427 KEV |
|
[KEV] Vulnerability in Oracle java-se-and-jrockit (CVE-2016-3427)
vulnerability in Oracle java-se-and-jrockit (CVE-2016-3427). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2015-5317 KEV |
|
[KEV] Information Disclosure in jenkins (CVE-2015-5317)
vulnerability in jenkins (CVE-2015-5317). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2010-3904 KEV |
|
[KEV] Vulnerability in Linux kernel (CVE-2010-3904)
vulnerability in Linux kernel (CVE-2010-3904). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2014-0196 KEV |
|
[KEV] Vulnerability in Linux kernel (CVE-2014-0196)
vulnerability in Linux kernel (CVE-2014-0196). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-3560 KEV |
|
[KEV] Authorization Flaw in Red hat red-hat (CVE-2021-3560)
vulnerability in Red hat red-hat (CVE-2021-3560). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-25717 KEV |
|
[KEV] Code Injection in Ruckus wireless ruckus-wireless (CVE-2023-25717)
code injection in Ruckus wireless ruckus-wireless (CVE-2023-25717). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-29336 KEV |
|
[KEV] Use-After-Free in Microsoft win32k (CVE-2023-29336)
vulnerability in Microsoft win32k (CVE-2023-29336). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| OSV-2023-381 |
|
Vulnerability in hdf5 (OSV-2023-381)
vulnerability in hdf5 (OSV-2023-381). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-370 |
|
Vulnerability in hdf5 (OSV-2023-370)
vulnerability in hdf5 (OSV-2023-370). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-359 |
|
Vulnerability in hdf5 (OSV-2023-359)
vulnerability in hdf5 (OSV-2023-359). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-39617 |
|
Vulnerability in platform/frameworks/native (CVE-2021-39617)
vulnerability in platform/frameworks/native (CVE-2021-39617). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `12L:2023-05-01` or later.
|
| CVE-2022-20338 |
|
Vulnerability in platform/frameworks/base (CVE-2022-20338)
vulnerability in platform/frameworks/base (CVE-2022-20338). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `12L:2023-05-01` or later.
|
| CVE-2023-21839 KEV |
|
[KEV] Vulnerability in Oracle weblogic-server (CVE-2023-21839)
vulnerability in Oracle weblogic-server (CVE-2023-21839). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-45046 KEV |
|
[KEV] Vulnerability in Apache log4j2 (CVE-2021-45046)
vulnerability in Apache log4j2 (CVE-2021-45046). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-1389 KEV |
|
[KEV] Command Injection in Tp-link archer-ax21 (CVE-2023-1389)
command injection in Tp-link archer-ax21 (CVE-2023-1389). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| OSV-2023-346 |
|
Vulnerability in wabt (OSV-2023-346)
vulnerability in wabt (OSV-2023-346). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2023-2007 |
|
Vulnerability in linux (UBUNTU-CVE-2023-2007)
vulnerability in linux (UBUNTU-CVE-2023-2007). Successful exploitation can lead to full system takeover.
|
| UBUNTU-CVE-2023-31082 |
|
Vulnerability in linux (UBUNTU-CVE-2023-31082)
vulnerability in linux (UBUNTU-CVE-2023-31082). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2023-31081 |
|
Vulnerability in linux-aws-fips (UBUNTU-CVE-2023-31081)
vulnerability in linux-aws-fips (UBUNTU-CVE-2023-31081). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-335 |
|
Vulnerability in spring-boot (OSV-2023-335)
vulnerability in spring-boot (OSV-2023-335). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-2136 KEV |
|
[KEV] Vulnerability in Google chromium-skia (CVE-2023-2136)
vulnerability in Google chromium-skia (CVE-2023-2136). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-27350 KEV |
|
[KEV] Vulnerability in Papercut mfng (CVE-2023-27350)
vulnerability in Papercut mfng (CVE-2023-27350). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-28432 KEV |
|
[KEV] Information Disclosure in minio (CVE-2023-28432)
vulnerability in minio (CVE-2023-28432). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-6742 KEV |
|
[KEV] Buffer Overflow in Cisco ios-and-ios-xe-software (CVE-2017-6742)
vulnerability in Cisco ios-and-ios-xe-software (CVE-2017-6742). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-2033 KEV |
|
[KEV] Vulnerability in Google chromium-v8 (CVE-2023-2033)
vulnerability in Google chromium-v8 (CVE-2023-2033). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-8526 KEV |
|
[KEV] Use-After-Free in Apple macos (CVE-2019-8526)
vulnerability in Apple macos (CVE-2019-8526). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| OSV-2023-319 |
|
Vulnerability in c-blosc2 (OSV-2023-319)
vulnerability in c-blosc2 (OSV-2023-319). Risk of unauthorized operations or information disclosure.
|
| OSV-2023-307 |
|
Vulnerability in libredwg (OSV-2023-307)
vulnerability in libredwg (OSV-2023-307). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-29492 KEV |
|
[KEV] Code Injection in Novi survey novi-survey (CVE-2023-29492)
code injection in Novi survey novi-survey (CVE-2023-29492). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-20963 KEV |
|
[KEV] Vulnerability in Android framework (CVE-2023-20963)
vulnerability in Android framework (CVE-2023-20963). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-28252 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2023-28252)
vulnerability in Microsoft windows (CVE-2023-28252). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-28206 KEV |
|
[KEV] Out-of-Bounds Write in Apple ios (CVE-2023-28206)
out-of-bounds write in Apple ios (CVE-2023-28206). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-28205 KEV |
|
[KEV] Use-After-Free in Apple multiple-products (CVE-2023-28205)
vulnerability in Apple multiple-products (CVE-2023-28205). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-26083 KEV |
|
[KEV] Vulnerability in Arm mali-graphics-processing-unit-gpu (CVE-2023-26083)
vulnerability in Arm mali-graphics-processing-unit-gpu (CVE-2023-26083). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1388 KEV |
|
[KEV] Privilege Escalation in Microsoft windows (CVE-2019-1388)
vulnerability in Microsoft windows (CVE-2019-1388). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|