CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1 (more results available)
jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS
jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS
jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS
jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource
jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS
OpenJDK: Certificate blacklist bypass via alternate certificate encodings (Libraries, 8237995)
Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39…
update-policy rules of type "subdomain" are enforced incorrectly
A flaw in native PKCS#11 code can lead to a remotely triggerable assertion failure in pk11.c
A truncated TSIG response can lead to an assertion failure
Attempting QNAME minimization after forwarding can lead to an assertion failure in resolver.c
bind: A specially crafted large TCP payload can trigger an assertion failure in tcpdns.c
kernel: information exposure in drivers/char/random.c and kernel/time/timer.c
openssh: scp allows command injection when using backtick characters in the destination argument
xen: Linux ioperm bitmap context switching issues
JavaFX: Out-of-bounds write in HTML Rendering
OpenJDK: XML validation manipulation due to incomplete application of the use-grammar-pool-only feature (JAXP, 8242136)
OpenJDK: Incomplete bounds checks in Affine Transformations (2D, 8240119)
OpenJDK: Bypass of boundary checks in nio.Buffer via concurrent access (Libraries, 8238920)
OpenJDK: Information disclosure in color management (2D, 8238002)
OpenJDK: Unexpected exception raised by DerValue.equals() (Libraries, 8237736)
OpenJDK: Unexpected exception raised by DerInputStream (Libraries, 8237731)
OpenJDK: HostnameChecker does not ensure X.509 certificate names are in normalized form (JSSE, 8237592)
OpenJDK: Incorrect handling of access control context in ForkJoinPool (Libraries, 8237117)
openssh: Observable discrepancy leading to an information leak in the algorithm negotiation
Showing 1 to 25 CVEs · page 1 (more available)