EN
58.628 CVE seguite
797 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

58.628 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordina dal più alto Prodotto e difetto EPSS, ordinato dal più alto In KEV dal, ordina dal più alto
CVE-2026-53916 HIGH 7.5 apache activemq Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. An unauthenticated client that opens a STOMP NIO connection can send header bytes that never terminate which makes the broker buffer the 0,7% —
CVE-2026-50734 HIGH 7.5 apache activemq Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ Client, Apache ActiveMQ, Apache ActiveMQ All. An unauthenticated network attacker can cause a broker DoS by sending a crafted WireFormatInfo frame with a malicious large size value. 0,7% —
CVE-2026-50645 HIGH 7.5 apache cxf There is no restriction on the amount of attachment headers that a message can contain when being deserialized by Apache CXF, which can lead to uncontrolled resource consumption or a denial of service attack. Users are recommended to upgrade to versions 4.2.2 0,7% —
CVE-2026-42402 HIGH 7.5 apache neethi Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbou 0,7% —
CVE-2026-24012 HIGH 7.5 apache iotdb Uncontrolled Resource Consumption vulnerability in Apache IoTDB.  Some interface fails to impose reasonable limits on the time span and aggregation interval of the query. An attacker can construct a request with extreme parameters (e.g., a very large time ran 0,7% —
CVE-2024-50095 HIGH 7.5 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: RDMA/mad: Improve handling of timed out WRs of mad agent Current timeout handler of mad agent acquires/releases mad_agent_priv lock for every timed out WRs. This causes heavy locking content 0,7% —
CVE-2024-26584 CRIT 9.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: tls: handle backlogging of crypto requests Since we're setting the CRYPTO_TFM_REQ_MAY_BACKLOG flag on our requests to the crypto API, crypto_aead_{encrypt,decrypt} can return -EBUSY in 0,7% —
CVE-2024-20478 MED 6.5 cisco application_policy_infrastructure_controller A vulnerability in the software upgrade component of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Network Controller, formerly Cisco Cloud APIC, could allow an authenticated, remote attacker with Administrator-level privileges 0,7% —
CVE-2023-27730 HIGH 7.5 f5 njs Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_lvlhsh_find at src/njs_lvlhsh.c. 0,7% —
CVE-2023-27728 HIGH 7.5 f5 njs Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_dump_is_recursive at src/njs_vmcode.c. 0,7% —
CVE-2023-21718 HIGH 7.8 microsoft sql_server Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability 0,7% —
CVE-2022-26415 HIGH 7.7 f5 big-ip_access_policy_manager On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all versions of 12.1.x, when running in Appliance mode, an authenticated user assigned the Administrator 0,7% —
CVE-2022-24466 MED 4.1 microsoft windows_10 Windows Hyper-V Security Feature Bypass Vulnerability 0,7% —
CVE-2022-21962 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2022-21961 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2022-21960 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2022-21959 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2022-21958 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2022-21892 MED 6.8 microsoft windows_10 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability 0,7% —
CVE-2021-47354 HIGH 7.1 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/sched: Avoid data corruptions Wait for all dependencies of a job to complete before killing it to avoid data corruptions. 0,7% —
CVE-2021-34712 MED 5.4 cisco catalyst_sd-wan_manager A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct cypher query language injection attacks on an affected system. This vulnerability is due to insufficient input valid 0,7% —
CVE-2021-1642 HIGH 7.8 microsoft windows_10 Windows AppX Deployment Extensions Elevation of Privilege Vulnerability 0,7% —
CVE-2020-9498 MED 6.7 apache guacamole Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious or compromised RDP server, a series ofspecially-crafted PDUs could result in memory corruption, possib 0,7% —
CVE-2017-0302 MED 5.3 f5 big-ip_access_policy_manager In F5 BIG-IP APM 12.0.0 through 12.1.2 and 13.0.0, an authenticated user with an established access session to the BIG-IP APM system may be able to cause a traffic disruption if the length of the requested URL is less than 16 characters. 0,7% —
CVE-2026-47606 MED 6.5 nvidia triton_inference_server NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an absolute path traversal. A successful exploit might lead to code execution and information disclosure. 0,7% —