Skip to main content

CWE archive

CWE-755 CVEs

Programmatic archive

583 CVEs tagged with CWE-75528 Critical, 266 High, 265 Medium, 24 Low, 0 Unrated.

CVE-2021-33486

Published Aug 3, 2021

All versions of the CODESYS V3 Runtime Toolkit for VxWorks from version V3.5.8.0 and before version V3.5.17.10 have Improper Handling of Exceptional Conditions.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-19473

Published Jul 21, 2021

An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an uncaught floating point exception.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1102

Published Jul 21, 2021

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can lead to floating point exceptions, which may lead to denial of service. This a…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36128

Published Jul 2, 2021

An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. Autoblocks for CentralAuth-issued suppression blocks are not properly implemented.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-27042

Published Jun 25, 2021

A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerability exists because the application fails to handle a crafted…

CVSS 7.8 · High

CVE-2021-0478

Published Jun 21, 2021

In updateDrawable of StatusBarIconView.java, there is a possible permission bypass due to an uncaught exception. This could lead to local escalation of privilege by running foregr…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21439

Published Jun 14, 2021

DoS attack can be performed when an email contains specially designed URL in the body. It can lead to the high CPU usage and cause low quality of service, or in extreme case bring…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29619

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Passing invalid arguments (e.g., discovered via fuzzing) to `tf.raw_ops.SparseCountSparseOutput` results in…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29618

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Passing a complex argument to `tf.transpose` at the same time as passing `conjugate=True` argument results i…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29617

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a denial of service via `CHECK`-fail in `tf.strings.substr` with invalid arguments. Th…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2019-25043

Published May 6, 2021

ModSecurity 3.x before 3.0.4 mishandles key-value pair parsing, as demonstrated by a "string index out of range" error and worker-process crash for a "Cookie: =abc" header.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 351-375 of 583 CVEsPage 15 of 24