Browse vulnerabilities
8,284 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2021-40438 | Act now | 100.0% | 9.0 | ● | A crafted request uri-path can cause mod_proxy to forward the request to an origin server … |
| CVE-2017-12617 | Act now | 100.0% | 8.1 | ● | When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.4… |
| CVE-2026-31431 | Act now | 99.9% | 7.8 | ● | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - … |
| CVE-2017-12615 | Act now | 99.6% | 8.1 | ● | When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via set… |
| CVE-2020-1938 | Act now | 99.3% | 9.8 | ● | When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming conn… |
| CVE-2018-7602 | Act now | 99.2% | 9.8 | ● | A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and … |
| CVE-2022-30333 | Act now | 99.1% | 7.5 | ● | RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files du… |
| CVE-2026-34486 | Act now | 98.6% | 7.5 | ● | Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE… |
| CVE-2012-4681 | Act now | 98.5% | 9.8 | ● | Multiple vulnerabilities in the Java Runtime Environment (JRE) component in Oracle Java SE… |
| CVE-2012-0507 | Act now | 98.1% | 9.8 | ● | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java S… |
| CVE-2021-4034 | Act now | 94.9% | 7.8 | ● | A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexe… |
| CVE-2016-4117 | Act now | 94.4% | 9.8 | ● | Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary cod… |
| CVE-2012-1723 | Act now | 93.7% | 9.8 | ● | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java S… |
| CVE-2016-8735 | Act now | 90.3% | 9.8 | ● | Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x… |
| CVE-2022-0847 | Act now | 89.7% | — | ● | Linux kernel contains an improper initialization vulnerability where an unprivileged local… |
| CVE-2018-15982 | Act now | 89.1% | 7.8 | ● | Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after … |
| CVE-2020-28949 | Act now | 84.6% | — | ● | PEAR Archive_Tar allows an unserialization attack because phar: is blocked but PHAR: is no… |
| CVE-2016-5195 | Act now | 83.5% | — | ● | Race condition in mm/gup.c in the Linux kernel allows local users to escalate privileges. |
| CVE-2010-1871 | Act now | 83.4% | — | ● | JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red… |
| CVE-2021-22555 | Act now | 78.7% | — | ● | Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacke… |
| CVE-2019-2215 | Act now | 72.1% | — | ● | Android Kernel contains a use-after-free vulnerability in binder.c that allows for privile… |
| CVE-2020-36193 | Act now | 70.6% | — | ● | PEAR Archive_Tar Tar.php allows write operations with directory traversal due to inadequat… |
| CVE-2022-2294 | Act now | 70.5% | 8.8 | ● | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote a… |
| CVE-2019-13272 | Act now | 52.2% | — | ● | Kernel/ptrace.c in Linux kernel mishandles contains an improper privilege management vulne… |
| CVE-2021-3493 | Act now | 49.2% | — | ● | The overlayfs stacking file system in Linux kernel does not properly validate the applicat… |
| CVE-2013-2094 | Act now | 47.7% | — | ● | Linux kernel fails to check all 64 bits of attr.config passed by user space, resulting to … |
| CVE-2013-6282 | Act now | 39.7% | — | ● | The get_user and put_user API functions of the Linux kernel fail to validate the target ad… |
| CVE-2014-3153 | Act now | 37.2% | — | ● | The futex_requeue function in kernel/futex.c in Linux kernel does not ensure that calls ha… |
| CVE-2026-48710 | Act now | 36.3% | 6.5 | ● | Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host`… |
| CVE-2024-1086 | Act now | 28.1% | 7.8 | ● | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be… |
| CVE-2016-7855 | Act now | 25.2% | — | ● | Use-after-free vulnerability in Adobe Flash Player Windows and OS and Linux allows remote … |
| CVE-2022-0185 | Act now | 25.2% | — | ● | Linux kernel contains a heap-based buffer overflow vulnerability in the legacy_parse_param… |
| CVE-2024-9680 | Act now | 23.2% | 9.8 | ● | An attacker was able to achieve code execution in the content process by exploiting a use-… |
| CVE-2014-0196 | Act now | 22.5% | — | ● | Linux Kernel contains a race condition vulnerability within the n_tty_write function that … |
| CVE-2016-1019 | Act now | 22.3% | 9.8 | ● | Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of ser… |
| CVE-2018-14634 | Act now | 14.7% | — | ● | Linux Kernel contains an integer overflow vulnerability in the create_elf_tables() functio… |
| CVE-2010-3904 | Act now | 14.5% | — | ● | Linux Kernel contains an improper input validation vulnerability in the Reliable Datagram … |
| CVE-2017-1000253 | Act now | 10.7% | — | ● | Linux kernel contains a position-independent executable (PIE) stack buffer corruption vuln… |
| CVE-2022-2586 | Act now | 10.5% | 5.3 | ● | It was discovered that a nft object or expression could reference a nft set on a different… |
| CVE-2022-0995 | Act now | 9.5% | 7.8 | ● | An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event… |
| CVE-2015-3246 | Act now | 8.8% | 5.1 | ● | libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the … |
| CVE-2023-0386 | Act now | 7.9% | — | ● | Linux Kernel contains an improper ownership management vulnerability, where unauthorized a… |
| CVE-2021-22600 | Act now | 6.1% | — | ● | Linux Kernel contains a flaw in the packet socket (AF_PACKET) implementation which could l… |
| CVE-2022-0492 | Act now | 5.5% | — | ● | Linux Kernel contains an improper authentication vulnerability which could allow for privi… |
| CVE-2015-5287 | Act now | 5.0% | 7.8 | ● | The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows… |
| CVE-2026-5281 | Act now | 4.9% | 8.8 | ● | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker … |
| CVE-2023-0266 | Act now | 3.7% | — | ● | Linux kernel contains a use-after-free vulnerability that allows for privilege escalation … |
| CVE-2024-53197 | Act now | 3.6% | — | ● | Linux Kernel contains an out-of-bounds access vulnerability in the USB-audio driver that a… |
| CVE-2024-53104 | Act now | 3.4% | — | ● | Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming comp… |
| CVE-2013-2596 | Act now | 3.2% | — | ● | Linux kernel fb_mmap function in drivers/video/fbmem.c contains an integer overflow vulner… |
Page 1 of 166
Next →