Latest CVE Feed
-
5.5
MEDIUMCVE-2023-32668
LuaTeX before 1.17.0 allows a document (compiled with the default settings) to make arbitrary network requests. This occurs because full access to the socket library is permitted by default, as stated in the documentation. This also affects TeX Live befor... Read more
- EPSS Score: %0.05
- Published: May. 11, 2023
- Modified: Jan. 27, 2025
-
5.5
MEDIUM- EPSS Score: %2.28
- Published: Jan. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-21816
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where a user in the guest OS can cause a GPU interrupt storm on the hypervisor host, leading to a denial of service.... Read more
- EPSS Score: %0.03
- Published: Feb. 07, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32611
A flaw was found in GLib. GVariant deserialization is vulnerable to a slowdown issue where a crafted GVariant can cause excessive processing, leading to denial of service.... Read more
Affected Products : glib- EPSS Score: %0.04
- Published: Sep. 14, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-21461
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes... Read more
- EPSS Score: %0.12
- Published: Apr. 19, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32556
A link following vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to disclose sensitive information. Please note: an attacker must first obtain the ability to execute low-privileged code on the targ... Read more
- EPSS Score: %0.04
- Published: Jun. 26, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-1261
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1263.... Read more
- EPSS Score: %0.48
- Published: Jun. 09, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-20651
A vulnerability in the logging component of Cisco Adaptive Security Device Manager (ASDM) could allow an authenticated, local attacker to view sensitive information in clear text on an affected system. Cisco ADSM must be deployed in a shared workstation e... Read more
Affected Products : adaptive_security_device_manager- EPSS Score: %0.02
- Published: Jun. 22, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-20621
Jenkins Metrics Plugin 4.0.2.8 and earlier stores an access key unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.... Read more
Affected Products : metrics- EPSS Score: %0.12
- Published: Jan. 12, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-1507
chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2. chafa: NULL Pointer Dereference i... Read more
- EPSS Score: %0.22
- Published: Apr. 27, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32455
Dell Wyse ThinOS versions prior to 2208 (9.3.2102) contain a sensitive information disclosure vulnerability. An unauthenticated malicious user with local access to the device could exploit this vulnerability to read sensitive information written to the l... Read more
Affected Products : wyse_thinos latitude_3420 latitude_3440 latitude_5440 optiplex_3000_thin_client thinos wyse_5070_thin_client wyse_5470_all-in-one_thin_client wyse_3040_thin_client optiplex_5400 +1 more products- EPSS Score: %0.02
- Published: Jul. 20, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-1325
A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with modified dx and dy header field values it is possible to trick the application into allocating huge buffer sizes like 64 Gigabyte upon reading the file from di... Read more
Affected Products : cimg- EPSS Score: %0.13
- Published: Aug. 31, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32442
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Ventura 13.5, macOS Monterey 12.6.8. A shortcut may be able to modify sensitive Shortcuts app settings.... Read more
Affected Products : macos- EPSS Score: %0.03
- Published: Jul. 27, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-0861
A XML Extended entity vulnerability in McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a remote administrator attacker to upload a malicious XML file through the extension import functionality. The impact is limited to some acc... Read more
Affected Products : epolicy_orchestrator- EPSS Score: %0.15
- Published: Mar. 23, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32429
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.5. An app may be able to bypass Privacy preferences.... Read more
Affected Products : macos- EPSS Score: %0.01
- Published: Jul. 27, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-0496
A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) properties may cause an out-of-bounds memory access when imported using import().... Read more
Affected Products : openscad- EPSS Score: %0.10
- Published: Aug. 29, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32416
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5, watchOS 9.6. An app may be able to read sensitive location information.... Read more
- EPSS Score: %0.04
- Published: Jul. 27, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-47660
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix some memory leaks in an error handling path of 'log_replay()' All error handling paths lead to 'out' where many resources are freed. Do it as well here instead of a direc... Read more
Affected Products : linux_kernel- Published: Feb. 26, 2025
- Modified: Mar. 18, 2025
- Vuln Type: Memory Corruption
-
5.5
MEDIUMCVE-2023-32432
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to access user-sensitive data.... Read more
- EPSS Score: %0.04
- Published: Sep. 06, 2023
- Modified: Dec. 12, 2024
-
5.5
MEDIUMCVE-2023-32411
This issue was addressed with improved entitlements. This issue is fixed in tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.... Read more
- EPSS Score: %0.01
- Published: Jun. 23, 2023
- Modified: Nov. 21, 2024