CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2015-3149 MEDIUM

OpenJDK8: insecure hsperfdata temporary file handling, CVE-2015-0383 regression (Hotspot)

CVSS 5.5 EPSS 0.38% Jul 25, 2017
CVE-2015-5300 HIGH

ntp: MITM attacker can force ntpd to make a step larger than the panic threshold

CVSS 7.5 EPSS 9.13% Jul 21, 2017
CVE-2016-7166 MEDIUM

libarchive: Denial of service using a crafted gzip file

CVSS 5.5 EPSS 1.64% Sep 21, 2016
CVE-2016-5844 MEDIUM

libarchive: undefined behaviour (integer overflow) in iso parser

CVSS 6.5 EPSS 4.13% Sep 21, 2016
CVE-2016-5418 HIGH

libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite

CVSS 7.5 EPSS 4.67% Sep 21, 2016
CVE-2016-4809 HIGH

libarchive: Memory allocate error with symbolic links in cpio archives

CVSS 7.5 EPSS 4.77% Sep 21, 2016
CVE-2016-4302 HIGH

libarchive: Heap buffer overflow in the Rar decompression functionality

CVSS 7.8 EPSS 4.76% Sep 21, 2016
CVE-2016-4300 HIGH

libarchive: Heap buffer overflow vulnerability in the 7zip read_SubStreamsInfo

CVSS 8.4 EPSS 4.92% Sep 21, 2016
CVE-2016-5388 HIGH

Tomcat: CGI sets environmental variable based on user supplied Proxy request header

CVSS 8.1 EPSS 50.90% Jul 19, 2016
CVE-2016-4470 HIGH

kernel: Uninitialized variable in request_key handling causes kernel crash in error handling path

CVSS 7.8 EPSS 0.58% Jun 27, 2016
CVE-2016-0758 HIGH

kernel: tags with indefinite length can corrupt pointers in asn1_find_indefinite_length()

CVSS 7.8 EPSS 0.40% Jun 27, 2016
CVE-2016-3698 HIGH

libndp: denial of service due to insufficient validation of source of NDP messages

CVSS 8.1 EPSS 3.81% Jun 13, 2016
CVE-2016-2150 HIGH

spice: Host memory access from guest with invalid primary surface parameters

CVSS 7.1 EPSS 0.36% Jun 9, 2016
CVE-2016-0749 CRITICAL

spice: heap-based memory corruption within smartcard handling

CVSS 9.8 EPSS 8.49% Jun 9, 2016
CVE-2015-5261 HIGH

spice: host memory access from guest using crafted images

CVSS 7.1 EPSS 0.49% Jun 7, 2016
CVE-2015-5260 HIGH

spice: insufficient validation of surface_id parameter can cause crash

CVSS 7.8 EPSS 0.57% Jun 7, 2016
CVE-2015-4605 HIGH

php: denial of service when processing a crafted file with Fileinfo

CVSS 7.5 EPSS 7.39% May 16, 2016
CVE-2015-4604 HIGH

php: denial of service when processing a crafted file with Fileinfo

CVSS 7.5 EPSS 7.39% May 16, 2016
CVE-2015-4603 CRITICAL

php: exception:: getTraceAsString type confusion issue after unserialize

CVSS 9.8 EPSS 11.00% May 16, 2016
CVE-2015-4602 CRITICAL

php: Incomplete Class unserialization type confusion

CVSS 9.8 EPSS 10.67% May 16, 2016
CVE-2015-4601 CRITICAL

php: type confusion issue in unserialize() with various SOAP methods

CVSS 9.8 EPSS 8.17% May 16, 2016
CVE-2015-4600 CRITICAL

php: type confusion issue in unserialize() with various SOAP methods

CVSS 9.8 EPSS 10.72% May 16, 2016
CVE-2015-4599 CRITICAL

php: type confusion issue in unserialize() with various SOAP methods

CVSS 9.8 EPSS 10.72% May 16, 2016
CVE-2015-4598 MEDIUM

php: missing null byte checks for paths in DOM and GD extensions

CVSS 6.5 EPSS 3.92% May 16, 2016
CVE-2015-3412 MEDIUM

php: missing null byte checks for paths in various PHP extensions

CVSS 5.3 EPSS 4.09% May 16, 2016

Showing 1 to 25 CVEs · page 1 (more available)