CVE-2024-47554
- EPSS 0.21%
- Veröffentlicht 03.10.2024 12:15:02
- Zuletzt bearbeitet 10.07.2025 21:10:32
Uncontrolled Resource Consumption vulnerability in Apache Commons IO. The org.apache.commons.io.input.XmlStreamReader class may excessively consume CPU resources when processing maliciously crafted input. This issue affects Apache Commons IO: from...
CVE-2024-7254
- EPSS 0.08%
- Veröffentlicht 19.09.2024 01:15:10
- Zuletzt bearbeitet 26.09.2025 17:10:19
Any project that parses untrusted Protocol Buffers data containing an arbitrary number of nested groups / series of SGROUP tags can corrupted by exceeding the stack limit i.e. StackOverflow. Parsing nested groups as unknown fields with DiscardUnknown...
CVE-2024-21147
- EPSS 0.53%
- Veröffentlicht 16.07.2024 23:15:16
- Zuletzt bearbeitet 17.06.2025 19:57:24
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21140
- EPSS 0.42%
- Veröffentlicht 16.07.2024 23:15:15
- Zuletzt bearbeitet 18.06.2025 12:09:38
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21145
- EPSS 0.33%
- Veröffentlicht 16.07.2024 23:15:15
- Zuletzt bearbeitet 13.03.2025 14:15:20
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; O...
CVE-2024-21138
- EPSS 0.17%
- Veröffentlicht 16.07.2024 23:15:14
- Zuletzt bearbeitet 05.12.2024 22:05:55
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21131
- EPSS 0.33%
- Veröffentlicht 16.07.2024 23:15:13
- Zuletzt bearbeitet 05.12.2024 22:02:52
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-30171
- EPSS 0.06%
- Veröffentlicht 14.05.2024 15:21:52
- Zuletzt bearbeitet 21.11.2024 09:11:21
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
CVE-2024-21055
- EPSS 0.09%
- Veröffentlicht 16.04.2024 22:15:23
- Zuletzt bearbeitet 18.03.2025 16:15:20
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pr...
CVE-2024-25111
- EPSS 1.8%
- Veröffentlicht 06.03.2024 19:15:07
- Zuletzt bearbeitet 10.04.2025 17:44:48
Squid is a web proxy cache. Starting in version 3.5.27 and prior to version 6.8, Squid may be vulnerable to a Denial of Service attack against HTTP Chunked decoder due to an uncontrolled recursion bug. This problem allows a remote attacker to cause D...