CVE-2019-3822
- EPSS 26.44%
- Published 06.02.2019 20:29:00
- Last modified 21.11.2024 04:42:36
libcurl versions from 7.36.0 to before 7.64.0 are vulnerable to a stack-based buffer overflow. The function creating an outgoing NTLM type-3 header (`lib/vauth/ntlm.c:Curl_auth_create_ntlm_type3_message()`), generates the request HTTP header contents...
CVE-2019-7317
- EPSS 0.99%
- Published 04.02.2019 08:29:00
- Last modified 21.11.2024 04:48:00
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
CVE-2019-2503
- EPSS 0.14%
- Published 16.01.2019 19:30:34
- Last modified 21.11.2024 04:41:00
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Connection Handling). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Difficult to exploit vulnerability allows low p...
CVE-2019-2510
- EPSS 0.12%
- Published 16.01.2019 19:30:34
- Last modified 21.11.2024 04:41:01
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...
CVE-2019-2435
- EPSS 2.29%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:52
Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/Python). Supported versions that are affected are 8.0.13 and prior and 2.1.8 and prior. Easily exploitable vulnerability allows unauthenticated attacker with net...
CVE-2019-2455
- EPSS 0.17%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:54
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged attac...
CVE-2018-1000873
- EPSS 2.55%
- Published 20.12.2018 17:29:00
- Last modified 21.11.2024 03:40:32
Fasterxml Jackson version Before 2.9.8 contains a CWE-20: Improper Input Validation vulnerability in Jackson-Modules-Java8 that can result in Causes a denial-of-service (DoS). This attack appear to be exploitable via The victim deserializes malicious...
CVE-2018-3282
- EPSS 0.12%
- Published 17.10.2018 01:31:29
- Last modified 21.11.2024 04:05:36
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Storage Engines). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability ...
CVE-2018-3284
- EPSS 0.19%
- Published 17.10.2018 01:31:29
- Last modified 21.11.2024 04:05:36
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access...
CVE-2018-3277
- EPSS 0.15%
- Published 17.10.2018 01:31:28
- Last modified 21.11.2024 04:05:35
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...