All vulnerabilities
58 / 58
Sort
7.5
CVE-2023-50387AST
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) al…
2023-01-01MicrosoftPre-auth
EPSS100.0%
pct 99
7.5
CVE-2024-27316ANC
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to gen…
2024-01-01Pre-auth
EPSS91.3%
pct 99
7.5
CVE-2017-8779DEB
rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC throug…
2017-01-01Pre-auth
EPSS81.9%
pct 99
5.3
CVE-2008-5180CVE
Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers…
2008-01-01Pre-auth
EPSS68.0%
pct 99
7.5
CVE-2025-48976ANC
Allocation of resources for multipart headers with insufficient limits enabled a DoS vulnerabil…
2025-01-01Pre-auth
EPSS63.3%
pct 99
7.5
CVE-2023-38039DEB
When curl retrieves an HTTP response, it stores the incoming headers so that
they can be access…
2023-01-01MicrosoftPre-auth
EPSS62.2%
pct 99
5.3
CVE-2016-6515DEB
The auth_password function in auth-passwd.c in sshd in OpenSSH before 7.3 does not limit passwo…
2016-01-01Pre-auth
EPSS57.7%
pct 98
7.5
CVE-2025-48988ANC
Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat.
This issu…
2025-01-01Pre-auth
EPSS53.2%
pct 98
6.5
CVE-2023-24998DEB
Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed…
2023-01-01
EPSS46.8%
pct 98
5.9
CVE-2025-26466ANC
A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong p…
2025-01-01Pre-auth
EPSS38.5%
pct 98
7.5
CVE-2018-7582CVE
WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a lo…
2018-01-01Pre-auth
EPSS37.6%
pct 98
4.3
CVE-2011-0419DEB
Stack consumption vulnerability in the fnmatch implementation in apr_fnmatch.c in the Apache Po…
2011-01-01
EPSS30.4%
pct 97
7.5
CVE-2017-5850CVE
httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via …
2017-01-01Pre-auth
EPSS17.2%
pct 96
7.5
CVE-2020-8416CVE
IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large vo…
2020-01-01Pre-auth
EPSS14.2%
pct 96
5.3
CVE-2025-32873DEB
An issue was discovered in Django 4.2 before 4.2.21, 5.1 before 5.1.9, and 5.2 before 5.2.1. Th…
2025-01-01Pre-auth
EPSS14.0%
pct 96
7.5
CVE-2021-36090DEB
When reading a specially crafted ZIP archive, Compress can be made to allocate large amounts of…
2021-01-01Pre-auth
EPSS13.3%
pct 95
7.5
CVE-2026-21710ANC
A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is receiv…
2026-01-01Pre-auth
EPSS13.1%
pct 95
7.5
CVE-2021-35516DEB
When reading a specially crafted 7Z archive, Compress can be made to allocate large amounts of …
2021-01-01Pre-auth
EPSS12.7%
pct 95
5.0
CVE-2009-4017DEB
PHP before 5.2.12 and 5.3.x before 5.3.1 does not restrict the number of temporary files create…
2009-01-01
EPSS12.0%
pct 95
7.5
CVE-2021-35517DEB
When reading a specially crafted TAR archive, Compress can be made to allocate large amounts of…
2021-01-01Pre-auth
EPSS10.9%
pct 95
5.3
CVE-2022-21340ANC
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java S…
2022-01-01Pre-auth
EPSS7.7%
pct 93
7.5
CVE-2019-16889CVE
Ubiquiti EdgeMAX devices before 2.0.3 allow remote attackers to cause a denial of service (disk…
2019-01-01Pre-auth
EPSS5.1%
pct 91
7.5
CVE-2024-0760ANC
A malicious client can send many DNS messages over TCP, potentially causing the server to becom…
2024-01-01Pre-auth
EPSS4.7%
pct 90
7.5
CVE-2021-36798CVE
A Denial-of-Service (DoS) vulnerability was discovered in Team Server in HelpSystems Cobalt Str…
2021-01-01Pre-auth
EPSS4.3%
pct 89
6.5
CVE-2021-35492CVE
Wowza Streaming Engine through 4.8.11+5 could allow an authenticated, remote attacker to exhaus…
2021-01-01
EPSS3.3%
pct 86
5.3
CVE-2023-26048ANC
Jetty is a java based web server and servlet engine. In affected versions servlets with multipa…
2023-01-01Pre-auth
EPSS3.3%
pct 86
7.5
CVE-2020-28491DEB
This affects the package com.fasterxml.jackson.dataformat:jackson-dataformat-cbor from 0 and be…
2020-01-01Pre-auth
EPSS3.1%
pct 85
6.5
CVE-2022-22971DEB
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applicati…
2022-01-01
EPSS2.9%
pct 85
6.5
CVE-2018-12541CVE
In version from 3.0.0 to 3.5.3 of Eclipse Vert.x, the WebSocket HTTP upgrade implementation buf…
2018-01-01
EPSS2.7%
pct 83
7.5
CVE-2021-36630CVE
DDOS reflection amplification vulnerability in eAut module of Ruckus Wireless SmartZone control…
2021-01-01Pre-auth
EPSS2.4%
pct 81
6.5
CVE-2024-57972
The pairing API request handler in Microsoft HoloLens 1 (Windows Holographic) through 10.0.1776…
2024-01-01
EPSS2.2%
pct 80
7.5
CVE-2025-9784DEB
A flaw was found in Undertow where malformed client requests can trigger server-side stream res…
2025-01-01Pre-auth
EPSS2.2%
pct 79
6.5
CVE-2021-33831CVE
api/account/register in the TH Wildau COVID-19 Contact Tracing application through 2021-09-01 h…
2021-01-01
EPSS2.0%
pct 77
7.5
CVE-2018-1274CVE
Spring Data Commons, versions 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, co…
2018-01-01Pre-auth
EPSS2.0%
pct 77
5.3
CVE-2022-22970DEB
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applicati…
2022-01-01
EPSS1.9%
pct 76
7.4
CVE-2024-38821
Spring WebFlux applications that have Spring Security authorization rules on static resources c…
2024-01-01Pre-auth
EPSS1.7%
pct 74
7.5
CVE-2023-47108CVE
OpenTelemetry-Go Contrib is a collection of third-party packages for OpenTelemetry-Go. Prior to…
2023-01-01Pre-auth
EPSS1.6%
pct 72
7.5
CVE-2024-44083CVE
ida64.dll in Hex-Rays IDA Pro through 8.4 crashes when there is a section that has many jumps l…
2024-01-01Pre-auth
EPSS1.4%
pct 68
5.5
CVE-2024-27804CVE
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPad…
2024-01-01
EPSS1.3%
pct 67
5.3
CVE-2021-22210ANC
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When qu…
2021-01-01Pre-auth
EPSS1.1%
pct 62
Select a vulnerability on the left to open the preview.