CVE-2025-27423
- EPSS 0.46%
- Published 03.03.2025 17:15:15
- Last modified 18.08.2025 18:20:37
Vim is an open source, command line text editor. Vim is distributed with the tar.vim plugin, that allows easy editing and viewing of (compressed or uncompressed) tar files. Starting with 9.1.0858, the tar.vim plugin uses the ":read" ex command line t...
CVE-2025-26603
- EPSS 0.04%
- Published 18.02.2025 19:15:29
- Last modified 18.08.2025 18:23:32
Vim is a greatly improved version of the good old UNIX editor Vi. Vim allows to redirect screen messages using the `:redir` ex command to register, variables and files. It also allows to show the contents of registers using the `:registers` or `:disp...
CVE-2022-37434
- EPSS 92.68%
- Published 05.08.2022 07:15:07
- Last modified 30.05.2025 20:15:30
zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib s...
CVE-2022-36946
- EPSS 4.54%
- Published 27.07.2022 20:15:08
- Last modified 05.05.2025 16:15:18
nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encou...
CVE-2022-21549
- EPSS 0.15%
- Published 19.07.2022 22:15:12
- Last modified 21.11.2024 06:44:56
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 17.0.3.1; Oracle GraalVM Enterprise Edition: 21.3.2 and 22.1.0. Easily e...
CVE-2022-21541
- EPSS 0.27%
- Published 19.07.2022 22:15:11
- Last modified 21.11.2024 06:44:55
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edi...
CVE-2022-21540
- EPSS 0.38%
- Published 19.07.2022 22:15:11
- Last modified 21.11.2024 06:44:55
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edi...
CVE-2022-34169
- EPSS 8.78%
- Published 19.07.2022 18:15:11
- Last modified 21.11.2024 07:08:59
The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode. Use...
- EPSS 1.22%
- Published 07.07.2022 21:15:10
- Last modified 21.11.2024 07:00:13
In Eclipse Jetty versions 9.4.0 thru 9.4.46, and 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, the parsing of the authority segment of an http scheme URI, the Jetty HttpURI class improperly detects an invalid input as a hostname. This can lead...
CVE-2022-2048
- EPSS 1.33%
- Published 07.07.2022 21:15:10
- Last modified 21.11.2024 07:00:13
In Eclipse Jetty HTTP/2 server implementation, when encountering an invalid HTTP/2 request, the error handling has a bug that can wind up not properly cleaning up the active connections and associated resources. This can lead to a Denial of Service s...