CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2020-36179 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 17.07% Jan 6, 2021
CVE-2020-36180 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-36182 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-36184 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

CVSS 8.8 EPSS 8.36% Jan 6, 2021
CVE-2020-36181 HIGH

jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

CVSS 8.8 EPSS 4.04% Jan 6, 2021
CVE-2020-14782 LOW

OpenJDK: Certificate blacklist bypass via alternate certificate encodings (Libraries, 8237995)

CVSS 3.7 EPSS 2.27% Oct 21, 2020
CVE-2020-8758 CRITICAL

Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39…

CVSS 9.8 EPSS 1.89% Sep 10, 2020
CVE-2020-8624 MEDIUM

update-policy rules of type "subdomain" are enforced incorrectly

CVSS 4.3 EPSS 3.67% Aug 21, 2020
CVE-2020-8623 HIGH

A flaw in native PKCS#11 code can lead to a remotely triggerable assertion failure in pk11.c

CVSS 7.5 EPSS 6.40% Aug 21, 2020
CVE-2020-8622 MEDIUM

A truncated TSIG response can lead to an assertion failure

CVSS 6.5 EPSS 5.59% Aug 21, 2020
CVE-2020-8621 HIGH

Attempting QNAME minimization after forwarding can lead to an assertion failure in resolver.c

CVSS 7.5 EPSS 2.97% Aug 21, 2020
CVE-2020-8620 HIGH

bind: A specially crafted large TCP payload can trigger an assertion failure in tcpdns.c

CVSS 7.5 EPSS 3.69% Aug 21, 2020
CVE-2020-16166 LOW

kernel: information exposure in drivers/char/random.c and kernel/time/timer.c

CVSS 3.7 EPSS 5.27% Jul 30, 2020
CVE-2020-15778 HIGH

openssh: scp allows command injection when using backtick characters in the destination argument

CVSS 7.8 EPSS 13.00% Jul 24, 2020
CVE-2020-15852 HIGH

xen: Linux ioperm bitmap context switching issues

CVSS 7.8 EPSS 0.34% Jul 20, 2020
CVE-2020-14664 HIGH

JavaFX: Out-of-bounds write in HTML Rendering

CVSS 8.3 EPSS 4.25% Jul 15, 2020
CVE-2020-14621 MEDIUM

OpenJDK: XML validation manipulation due to incomplete application of the use-grammar-pool-only feature (JAXP, 8242136)

CVSS 5.3 EPSS 4.35% Jul 15, 2020
CVE-2020-14593 HIGH

OpenJDK: Incomplete bounds checks in Affine Transformations (2D, 8240119)

CVSS 7.4 EPSS 3.85% Jul 15, 2020
CVE-2020-14583 HIGH

OpenJDK: Bypass of boundary checks in nio.Buffer via concurrent access (Libraries, 8238920)

CVSS 8.3 EPSS 3.92% Jul 15, 2020
CVE-2020-14581 LOW

OpenJDK: Information disclosure in color management (2D, 8238002)

CVSS 3.7 EPSS 3.28% Jul 15, 2020
CVE-2020-14579 LOW

OpenJDK: Unexpected exception raised by DerValue.equals() (Libraries, 8237736)

CVSS 3.7 EPSS 4.28% Jul 15, 2020
CVE-2020-14578 LOW

OpenJDK: Unexpected exception raised by DerInputStream (Libraries, 8237731)

CVSS 3.7 EPSS 4.28% Jul 15, 2020
CVE-2020-14577 LOW

OpenJDK: HostnameChecker does not ensure X.509 certificate names are in normalized form (JSSE, 8237592)

CVSS 3.7 EPSS 3.38% Jul 15, 2020
CVE-2020-14556 MEDIUM

OpenJDK: Incorrect handling of access control context in ForkJoinPool (Libraries, 8237117)

CVSS 4.8 EPSS 3.02% Jul 15, 2020
CVE-2020-14145 MEDIUM

openssh: Observable discrepancy leading to an information leak in the algorithm negotiation

CVSS 5.9 EPSS 2.06% Jun 29, 2020

Showing 1 to 25 CVEs · page 1 (more available)