Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
.NET Framework Denial of Service Vulnerability
Symfony: OidcTokenHandler Accepts JWTs Missing aud/iss/exp Claims
Microsoft Word Information Disclosure Vulnerability
Rancher Fleet vulnerable to cross namespace secret disclosure via unvalidated `valuesFrom` references in Helm Deployer
vLLM: temperature=NaN and temperature=Infinity bypass validation and propagate to GPU kernels
Improper JSON Input Validation in WebSocket API Leads to Denial of Service
Server crash via malformed binary diff passed to $_internalApplyOplogUpdate.
Authenticate command with specific mechanism parameter can trigger server crash
Boost Serialization improper validation of specified type of input
In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable dev...
Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses
Hono: Cookie helper does not sanitize sameSite and priority, allowing Set-Cookie injection
Command injection via USB
fraillt bitsery std_smart_ptr.h loadFromSharedState improper validation of specified type of input
Insufficient input validation in GitHub plugin API causes denial of service
For Concrete CMS 9.5.0 and below, OAuth 2.0 Authorization-Code Handler Bypasses Account Status
An ACAP configuration file lacked sufficient input validation, which could allow command injection and potentially lead to privilege escalation
fastify vulnerable to Body Schema Validation Bypass via Leading Space in Content-Type Header
SpotAuditor 5.2.6 Name Field Denial of Service
Keycloak-services: keycloak: unauthorized access via improper validation of encrypted saml assertions
Showing 1 - 20 of 1,000+ results