CVE-2025-21502
- EPSS 0.2%
- Veröffentlicht 21.01.2025 21:15:15
- Zuletzt bearbeitet 18.06.2025 19:07:57
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u431-perf, 11.0.25, 17.0.13, 21.0.5, 23.0.1; Ora...
CVE-2025-21490
- EPSS 0.41%
- Veröffentlicht 21.01.2025 21:15:13
- Zuletzt bearbeitet 03.11.2025 21:18:55
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with net...
CVE-2024-50349
- EPSS 1.14%
- Veröffentlicht 14.01.2025 19:15:32
- Zuletzt bearbeitet 18.12.2025 16:42:54
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When Git asks for credentials via a terminal prompt (i.e. without using any credent...
CVE-2024-52006
- EPSS 1.29%
- Veröffentlicht 14.01.2025 19:15:32
- Zuletzt bearbeitet 18.12.2025 16:10:34
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. Git defines a line-based protocol that is used to exchange information between Git ...
CVE-2024-56374
- EPSS 0.08%
- Veröffentlicht 14.01.2025 19:15:32
- Zuletzt bearbeitet 03.10.2025 13:16:13
An issue was discovered in Django 5.1 before 5.1.5, 5.0 before 5.0.11, and 4.2 before 4.2.18. Lack of upper-bound limit enforcement in strings passed when performing IPv6 validation could lead to a potential denial-of-service attack. The undocumented...
CVE-2023-27539
- EPSS 0.36%
- Veröffentlicht 09.01.2025 01:15:07
- Zuletzt bearbeitet 10.10.2025 16:31:34
There is a denial of service vulnerability in the header parsing component of Rack.
CVE-2024-12426
- EPSS 0.48%
- Veröffentlicht 07.01.2025 13:15:07
- Zuletzt bearbeitet 08.12.2025 18:35:10
Exposure of Environmental Variables and arbitrary INI file values to an Unauthorized Actor vulnerability in The Document Foundation LibreOffice. URLs could be constructed which expanded environmental variables or INI file values, so potentially s...
CVE-2024-12425
- EPSS 0.38%
- Veröffentlicht 07.01.2025 12:15:24
- Zuletzt bearbeitet 08.12.2025 18:38:59
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Document Foundation LibreOffice allows Absolute Path Traversal. An attacker can write to arbitrary locations, albeit suffixed with ".ttf", by supp...
CVE-2024-46981
- EPSS 77.56%
- Veröffentlicht 06.01.2025 22:15:09
- Zuletzt bearbeitet 05.09.2025 14:20:13
Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, a...
CVE-2024-56705
- EPSS 0%
- Veröffentlicht 28.12.2024 10:15:19
- Zuletzt bearbeitet 15.12.2025 20:53:18
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Add check for rgby_data memory allocation failure In ia_css_3a_statistics_allocate(), there is no check on the allocation result of the rgby_data memory. If rgby_da...