Skip to main content

CWE archive

CWE-835 CVEs

Programmatic archive

878 CVEs tagged with CWE-83510 Critical, 372 High, 474 Medium, 22 Low, 0 Unrated.

CVE-2023-42815

Published Nov 13, 2023

Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerability was…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-42814

Published Nov 13, 2023

Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerable compon…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-46737

Published Nov 7, 2023

Cosign is a sigstore signing tool for OCI containers. Cosign is susceptible to a denial of service by an attacker controlled registry. An attacker who controls a remote registry c…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-5825

Published Nov 6, 2023

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20083

Published Nov 1, 2023

A vulnerability in ICMPv6 inspection when configured with the Snort 2 detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote att…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1718

Published Nov 1, 2023

Improper file stream access in /desktop_app/file.ajax.php?action=uploadfile in Bitrix24 22.0.300 allows unauthenticated remote attackers to cause denial-of-service via a crafted "…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-46250

Published Oct 31, 2023

pypdf is a free and open-source pure-python PDF library. An attacker who uses a vulnerability present in versions 3.7.0 through 3.16.4 can craft a PDF which leads to an infinite l…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-22325

Published Oct 12, 2023

A denial of service vulnerability exists in the DCRegister DDNS_RPC_MAX_RECV_SIZE functionality of SoftEther VPN 4.41-9782-beta, 5.01.9674 and 5.02. A specially crafted network pa…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-45363

Published Oct 9, 2023

An issue was discovered in ApiPageSet.php in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. It allows attackers to cause a denial of serv…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26151

Published Oct 3, 2023

Versions of the package asyncua before 0.9.96 are vulnerable to Denial of Service (DoS) such that an attacker can send a malformed packet and as a result, the server will enter in…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-43645

Published Sep 27, 2023

OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. OpenFGA is vulnerable to a denial of service attack when certain Check calls ar…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-43761

Published Sep 22, 2023

Certain WithSecure products allow Denial of Service (infinite loop). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Securit…

CVSS 7.5 · High

CVE-2023-42525

Published Sep 18, 2023

Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, With…

CVSS 7.5 · High

CVE-2023-42524

Published Sep 18, 2023

Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, With…

CVSS 7.5 · High

CVE-2023-4511

Published Aug 24, 2023

BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-40090

Published Aug 22, 2023

An issue was discovered in function TIFFReadDirectory libtiff before 4.4.0 allows attackers to cause a denial of service via crafted TIFF file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-30188

Published Aug 14, 2023

Memory Exhaustion vulnerability in ONLYOFFICE Document Server 4.0.3 through 7.3.2 allows remote attackers to cause a denial of service via crafted JavaScript file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-36023

Published Aug 11, 2023

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::cvtGlyph function.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-35141

Published Aug 11, 2023

An issue was discovered in OFPQueueGetConfigReply in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a denial of service (DoS) (infinite loop).

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 326-350 of 878 CVEsPage 14 of 36