Browse vulnerabilities

105 results

CVEPriorityEPSSCVSSKEVWhat
CVE-2014-6324 Act now 87.3% — ● The Kerberos Key Distribution Center (KDC) in Microsoft allows remote authenticated domain…
CVE-2020-28949 Act now 84.6% — ● PEAR Archive_Tar allows an unserialization attack because phar: is blocked but PHAR: is no…
CVE-2020-36193 Act now 70.6% — ● PEAR Archive_Tar Tar.php allows write operations with directory traversal due to inadequat…
CVE-2022-21445 Act now 62.5% — ● Oracle ADF Faces library, included with Oracle JDeveloper Distribution, contains a deseria…
CVE-2022-26500 Act now 5.8% — ● The Veeam Distribution Service in the Backup & Replication application allows unauthentica…
CVE-2022-26501 Act now 4.1% — ● The Veeam Distribution Service in the Backup & Replication application allows unauthentica…
CVE-2021-27365 Medium 2.1% 7.8 An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures …
CVE-2025-4517 Medium 1.4% 9.4 Allows arbitrary filesystem writes outside the extraction directory during extraction with…
CVE-2025-4138 Medium 1.4% 7.5 Allows the extraction filter to be ignored, allowing symlink targets to point outside the …
CVE-2026-42027 Medium 1.3% 9.8 Arbitrary Class Instantiation via Model Manifest in Apache OpenNLP ExtensionLoader Ve…
CVE-2026-84001 Medium 1.2% 7.5 Out-of-bounds read in Windows Key Distribution Center allows an unauthorized attacker to d…
CVE-2026-88889 Medium 1.0% 7.8 Renovate before 44.14.7 contains a command injection vulnerability in the Maven Wrapper ma…
CVE-2026-55976 Medium 1.0% 9.1 Server-Side Request Forgery (SSRF) in Avro SerDe schema resolution in Apache Hive before 4…
CVE-2026-28754 Medium 1.0% 7.3 Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored…
CVE-2026-28756 Medium 1.0% 7.3 Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored…
CVE-2021-27364 Medium 1.0% 7.1 An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_is…
CVE-2025-4330 Medium 0.9% 7.5 Allows the extraction filter to be ignored, allowing symlink targets to point outside the …
CVE-2026-69712 Medium 0.9% 8.8 Use after free in Windows Key Distribution Center allows an authorized attacker to execute…
CVE-2026-34078 Medium 0.9% 10.0 Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the…
CVE-2023-29541 Medium 0.7% 8.8 Firefox did not properly handle downloads of files ending in <code>.desktop</code>, which …
CVE-2026-67211 Medium 0.7% 7.5 OOM Denial of Service via Unbounded Map Pre-Sizing in Apache OpenNLP SymSpellModelSerializ…
CVE-2026-73634 Medium 0.7% 7.5 Uncontrolled resource consumption vulnerability in Apache Struts. An application that expo…
CVE-2026-73639 Medium 0.7% 9.1 Imager::File::PNG versions from 1.003 before 1.004 for Perl write past the end of the row …
CVE-2026-74281 Medium 0.7% 7.5 In the Linux kernel, the following vulnerability has been resolved: tipc: reject inverted…
CVE-2026-35172 Medium 0.7% 7.5 Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.…
CVE-2026-54890 Medium 0.7% 7.5 Integer Underflow (Wrap or Wraparound) vulnerability in erlang otp erlang/otp (erts module…
CVE-2026-85446 Medium 0.6% 7.5 MOOS-IvP versions through 24.8.1 contain a quadratic processing vulnerability in uFldNodeC…
CVE-2026-87081 Medium 0.6% 7.5 Net::IDN::UTS46 versions before 2.590 for Perl allow CPU exhaustion via quadratic punycode…
CVE-2022-49110 Medium 0.6% 7.5 In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack:…
CVE-2026-75329 Medium 0.6% 9.8 The Netty configuration distribution service (port 8283) of super-diamond-server <= 1.3.3 …
CVE-2026-75569 Medium 0.6% 7.7 A flaw was found in mce-operator-bundle. The build process fetches and executes scripts fr…
CVE-2022-48629 Medium 0.5% 8.1 In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - en…
CVE-2026-11976 Medium 0.5% 10.0 The official MonsterInsights Pro update distribution bucket (`monster-insights.s3.amazonaw…
CVE-2026-19082 Medium 0.5% 7.5 Imager versions from 0.45_02 before 1.034 for Perl may expose adjacent heap bytes via strl…
CVE-2026-61833 Medium 0.5% 8.1 zot is a container image and artifact registry based on the Open Container Initiative Dist…
CVE-2026-23111 Medium 0.5% 7.8 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables:…
CVE-2026-93599 Medium 0.5% 7.5 rustls-webpki through 0.103.12 (and 0.104.0-alpha releases before 0.104.0-alpha.7) contain…
CVE-2026-60396 Medium 0.5% 7.2 Vulnerability in Oracle GoldenGate (component: Distribution Server executable). Supported…
CVE-2026-34079 Medium 0.4% 7.5 Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the…
CVE-2026-79572 Medium 0.4% 7.5 An XXE (XML External Entity) vulnerability in the level-rule module of Distribution Manage…
CVE-2026-60932 Medium 0.4% 8.8 Vulnerability in the Oracle Labor Distribution product of Oracle E-Business Suite (compone…
CVE-2026-83017 Medium 0.4% 8.8 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (compo…
CVE-2026-47237 Medium 0.4% 8.0 Kubeflow Community Distribution helps users to install Kubeflow Platform in popular Kubern…
CVE-2026-22590 Medium 0.4% 9.1 eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard …
CVE-2026-16028 Medium 0.4% 7.5 Protocol::HTTP2 versions before 1.14 for Perl allow memory exhaustion via closed streams t…
CVE-2026-70782 Medium 0.4% 8.1 Vulnerability in the Oracle Labor Distribution product of Oracle E-Business Suite (compone…
CVE-2026-11378 Medium 0.3% 8.8 IBM MQ could allow an authenticated attacker to cause a denial of service or potentially e…
CVE-2026-11381 Medium 0.3% 8.8 IBM MQ could allow an authenticated attacker to cause a denial of service or potentially e…
CVE-2026-22591 Medium 0.3% 7.5 eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard …
CVE-2026-10575 Medium 0.3% 8.8 IBM MQ could allow an authenticated attacker to cause a denial of service or potentially e…
Page 1 of 3 Next →