All vulnerabilities
1697 / 1697
Sort
7.5
CVE-2023-50387AST
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) al…
2023-01-01MicrosoftPre-auth
EPSS100.0%
pct 99
5.3
CVE-2019-11478AST
Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in …
2019-01-01Pre-auth
EPSS94.7%
pct 99
7.5
CVE-2024-27316ANC
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to gen…
2024-01-01Pre-auth
EPSS91.3%
pct 99
5.3
CVE-2024-28182ANC
nghttp2 is an implementation of the Hypertext Transfer Protocol version 2 in C. The nghttp2 lib…
2024-01-01Pre-auth
EPSS85.0%
pct 99
4.3
CVE-2023-0921ANC
A lack of length validation in GitLab CE/EE affecting all versions from 8.3 before 15.10.8, 15.…
2023-01-01
EPSS84.4%
pct 99
7.5
CVE-2017-8779DEB
rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC throug…
2017-01-01Pre-auth
EPSS81.9%
pct 99
6.5
CVE-2023-2650AST
Issue summary: Processing some specially crafted ASN.1 object identifiers or
data containing th…
2023-01-01Pre-auth
EPSS77.9%
pct 99
5.3
CVE-2008-5180CVE
Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers…
2008-01-01Pre-auth
EPSS68.0%
pct 99
7.5
CVE-2025-48976ANC
Allocation of resources for multipart headers with insufficient limits enabled a DoS vulnerabil…
2025-01-01Pre-auth
EPSS63.3%
pct 99
7.5
CVE-2023-38039DEB
When curl retrieves an HTTP response, it stores the incoming headers so that
they can be access…
2023-01-01MicrosoftPre-auth
EPSS62.2%
pct 99
5.3
CVE-2016-6515DEB
The auth_password function in auth-passwd.c in sshd in OpenSSH before 7.3 does not limit passwo…
2016-01-01Pre-auth
EPSS57.7%
pct 98
7.5
CVE-2009-1955DEB
The expat XML parser in the apr_xml_* interface in xml/apr_xml.c in Apache APR-util before 1.3.…
2009-01-01Pre-auth
EPSS53.3%
pct 98
7.5
CVE-2025-48988ANC
Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat.
This issu…
2025-01-01Pre-auth
EPSS53.2%
pct 98
7.5
CVE-2023-46695DEB
An issue was discovered in Django 3.2 before 3.2.23, 4.1 before 4.1.13, and 4.2 before 4.2.7. T…
2023-01-01Pre-auth
EPSS49.8%
pct 98
7.5
CVE-2023-23969AST
In Django 3.2 before 3.2.17, 4.0 before 4.0.9, and 4.1 before 4.1.6, the parsed values of Accep…
2023-01-01Pre-auth
EPSS47.1%
pct 98
6.5
CVE-2023-24998DEB
Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed…
2023-01-01
EPSS46.8%
pct 98
7.5
CVE-2020-5802CVE
An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr…
2020-01-01Pre-auth
EPSS38.8%
pct 98
5.9
CVE-2025-26466ANC
A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong p…
2025-01-01Pre-auth
EPSS38.5%
pct 98
7.5
CVE-2018-7582CVE
WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a lo…
2018-01-01Pre-auth
EPSS37.6%
pct 98
7.5
CVE-2022-22950DEB
n Spring Framework versions 5.3.0 - 5.3.16 and older unsupported versions, it is possible for a…
2022-01-01Pre-auth
EPSS36.7%
pct 98
7.5
CVE-2017-7696CVE
SAP AS JAVA SSO Authentication Library 2.0 through 3.0 allow remote attackers to cause a denial…
2017-01-01Pre-auth
EPSS36.2%
pct 98
6.5
CVE-2024-2454ANC
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior t…
2024-01-01
EPSS33.3%
pct 98
6.5
CVE-2022-32206AST
curl < 7.84.0 supports "chained" HTTP compression algorithms, meaning that a serverresponse can…
2022-01-01Pre-auth
EPSS32.0%
pct 98
4.3
CVE-2011-0419DEB
Stack consumption vulnerability in the fnmatch implementation in apr_fnmatch.c in the Apache Po…
2011-01-01
EPSS30.4%
pct 97
5.9
CVE-2022-32205DEB
A malicious server can serve excessive amounts of `Set-Cookie:` headers in a HTTP response to c…
2022-01-01Pre-auth
EPSS26.9%
pct 97
7.6
CVE-2017-18640DEB
The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a r…
2017-01-01Pre-auth
EPSS26.7%
pct 97
2.6
CVE-2014-8602DEB
iterator.c in NLnet Labs Unbound before 1.5.1 does not limit delegation chaining, which allows …
2014-01-01
EPSS25.2%
pct 97
7.5
CVE-2022-43945AST
The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buff…
2022-01-01Pre-auth
EPSS21.3%
pct 97
5.0
CVE-2014-0230DEB
Apache Tomcat 6.x before 6.0.44, 7.x before 7.0.55, and 8.x before 8.0.9 does not properly hand…
2014-01-01
EPSS20.3%
pct 97
7.5
CVE-2023-31472CVE
An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in wh…
2023-01-01Pre-auth
EPSS19.9%
pct 97
4.3
CVE-2015-5262DEB
http/conn/ssl/SSLConnectionSocketFactory.java in Apache HttpComponents HttpClient before 4.3.6 …
2015-01-01
EPSS19.3%
pct 96
5.9
CVE-2017-5495DEB
All versions of Quagga, 0.93 through 1.1.0, are vulnerable to an unbounded memory allocation in…
2017-01-01Pre-auth
EPSS18.8%
pct 96
7.5
CVE-2024-2878ANC
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.7 prior to…
2024-01-01Pre-auth
EPSS17.6%
pct 96
7.5
CVE-2017-5850CVE
httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via …
2017-01-01Pre-auth
EPSS17.2%
pct 96
7.5
CVE-2021-32675AST
Redis is an open source, in-memory database that persists on disk. When parsing an incoming Red…
2021-01-01Pre-auth
EPSS15.8%
pct 96
7.5
CVE-2024-12705ANC
Clients using DNS-over-HTTPS (DoH) can exhaust a DNS resolver's CPU and/or memory by flooding i…
2024-01-01Pre-auth
EPSS15.7%
pct 96
5.3
CVE-2018-2799ANC
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcompone…
2018-01-01Pre-auth
EPSS15.5%
pct 96
5.3
CVE-2021-35559ANC
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (comp…
2021-01-01Pre-auth
EPSS14.8%
pct 96
5.1
CVE-2014-8158DEB
Multiple stack-based buffer overflows in jpc_qmfb.c in JasPer 1.900.1 and earlier allow remote …
2014-01-01
EPSS14.4%
pct 96
7.5
CVE-2020-8416CVE
IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large vo…
2020-01-01Pre-auth
EPSS14.2%
pct 96
Select a vulnerability on the left to open the preview.