Export limit exceeded: 23489 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 23489 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (23489 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-13289 1 Usercentrics 1 Cookiebot \+ Gtm 2025-09-02 5.4 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Cookiebot + GTM allows Cross-Site Scripting (XSS).This issue affects Cookiebot + GTM: from 0.0.0 before 1.0.18.
CVE-2025-54080 1 Exiv2 1 Exiv2 2025-09-02 5.5 Medium
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions 0.28.5 and earlier. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file. Note that this bug is only triggered when writing the metadata, which is a less frequently used Exiv2 operation than reading the metadata. The bug is fixed in version 0.28.6.
CVE-2025-55304 1 Exiv2 1 Exiv2 2025-09-02 5.5 Medium
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. A denial-of-service was found in Exiv2 version 0.28.5: a quadratic algorithm in the ICC profile parsing code in jpegBase::readMetadata() can cause Exiv2 to run for a long time. The denial-of-service is triggered when Exiv2 is used to read the metadata of a crafted jpg image file. The bug is fixed in version 0.28.6.
CVE-2024-51476 2 Ibm, Linux 3 Concert, Concert Software, Linux Kernel 2025-09-01 7.5 High
IBM Concert Software 1.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.
CVE-2025-0162 1 Ibm 1 Aspera Shares 2025-09-01 7.1 High
IBM Aspera Shares 1.9.9 through 1.10.0 PL7 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote authenticated attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
CVE-2025-0986 1 Ibm 2 Power9 System Firmware, Powervm Hypervisor 2025-09-01 4.5 Medium
IBM PowerVM Hypervisor FW1050.00 through FW1050.30 and FW1060.00 through FW1060.20 could allow a local user, under certain Linux processor combability mode configurations, to cause undetected data loss or errors when performing gzip compression using HW acceleration.
CVE-2024-51477 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-09-01 4.3 Medium
IBM InfoSphere Information Server 11.7 could allow an authenticated to obtain sensitive username information due to an observable response discrepancy.
CVE-2020-17147 1 Microsoft 1 Dynamics 365 2025-08-28 8.7 High
Dynamics CRM Webclient Cross-site Scripting Vulnerability
CVE-2020-17142 1 Microsoft 1 Exchange Server 2025-08-28 9.1 Critical
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2020-17141 1 Microsoft 1 Exchange Server 2025-08-28 8.4 High
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2020-17140 1 Microsoft 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more 2025-08-28 8.1 High
Windows SMB Information Disclosure Vulnerability
CVE-2020-17139 1 Microsoft 10 Windows 10, Windows 10 1809, Windows 10 1909 and 7 more 2025-08-28 7.8 High
Windows Overlay Filter Security Feature Bypass Vulnerability
CVE-2020-17138 1 Microsoft 3 Windows 10, Windows 10 1607, Windows Server 2016 2025-08-28 5.5 Medium
Windows Error Reporting Information Disclosure Vulnerability
CVE-2020-17137 1 Microsoft 6 Windows 10, Windows 10 1809, Windows 10 20h2 and 3 more 2025-08-28 7.8 High
DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2020-17134 1 Microsoft 10 Windows 10, Windows 10 1809, Windows 10 1909 and 7 more 2025-08-28 7.8 High
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2020-17133 1 Microsoft 2 Dynamics Nav, Dynamics Nav 2015 2025-08-28 6.5 Medium
Microsoft Dynamics Business Central/NAV Information Disclosure Vulnerability
CVE-2020-17131 1 Microsoft 4 Chakracore, Edge, Windows 10 and 1 more 2025-08-28 4.2 Medium
Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2020-17130 1 Microsoft 3 365 Apps, Excel, Excel 2016 2025-08-28 6.5 Medium
Microsoft Excel Security Feature Bypass Vulnerability
CVE-2020-17129 1 Microsoft 9 365 Apps, Excel, Excel 2013 and 6 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17128 1 Microsoft 10 365 Apps, Excel, Excel 2013 and 7 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability