CVE Database

121173+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-37443
7.8 HIGH

Multiple out-of-bounds read vulnerabilities exist in the VCD var definition section functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-37442
7.8 HIGH

Multiple out-of-bounds read vulnerabilities exist in the VCD var definition section functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-37420
7.8 HIGH

Multiple out-of-bounds write vulnerabilities exist in the VCD parse_valuechange portdump functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-37419
7.8 HIGH

Multiple out-of-bounds write vulnerabilities exist in the VCD parse_valuechange portdump functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-37418
7.8 HIGH

Multiple out-of-bounds write vulnerabilities exist in the VCD parse_valuechange portdump functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-37417
7.8 HIGH

Multiple out-of-bounds write vulnerabilities exist in the VCD parse_valuechange portdump functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-37416
7.8 HIGH

Multiple out-of-bounds write vulnerabilities exist in the VCD parse_valuechange portdump functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-37282
7.8 HIGH

An out-of-bounds write vulnerability exists in the VZT LZMA_Read dmem extraction functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-36916
7.8 HIGH

Multiple integer overflow vulnerabilities exist in the FST fstReaderIterBlocks2 chain_table allocation functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-36915
7.8 HIGH

Multiple integer overflow vulnerabilities exist in the FST fstReaderIterBlocks2 chain_table allocation functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-36864
7.8 HIGH

An integer overflow vulnerability exists in the fstReaderIterBlocks2 temp_signal_value_buf allocation functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-36861
7.8 HIGH

An out-of-bounds write vulnerability exists in the VZT LZMA_read_varint functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A …

Jan 8, 2024
CVE-2023-36747
7.0 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 fstWritex len functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to memory corruption. …

Jan 8, 2024
CVE-2023-36746
7.0 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 fstWritex len functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to memory corruption. …

Jan 8, 2024
CVE-2023-35997
7.8 HIGH

Multiple improper array index validation vulnerabilities exist in the fstReaderIterBlocks2 tdelta functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35996
7.8 HIGH

Multiple improper array index validation vulnerabilities exist in the fstReaderIterBlocks2 tdelta functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35995
7.8 HIGH

Multiple improper array index validation vulnerabilities exist in the fstReaderIterBlocks2 tdelta functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35994
7.8 HIGH

Multiple improper array index validation vulnerabilities exist in the fstReaderIterBlocks2 tdelta functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35992
7.0 HIGH

An integer overflow vulnerability exists in the FST fstReaderIterBlocks2 vesc allocation functionality of GTKWave 3.3.115, when compiled as a 32-bit binary. A specially crafted .fst …

Jan 8, 2024
CVE-2023-35989
7.8 HIGH

An integer overflow vulnerability exists in the LXT2 zlib block allocation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35970
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 chain_table parsing functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35969
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 chain_table parsing functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35964
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35963
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35962
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35961
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35960
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35959
7.8 HIGH

Multiple OS command injection vulnerabilities exist in the decompression functionality of GTKWave 3.3.115. A specially crafted wave file can lead to arbitrary command execution. A …

Jan 8, 2024
CVE-2023-35958
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GTKWave 3.3.115. A specially-crafted .fst file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-35957
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GTKWave 3.3.115. A specially-crafted .fst file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-35956
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GTKWave 3.3.115. A specially-crafted .fst file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-35955
7.8 HIGH

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GTKWave 3.3.115. A specially-crafted .fst file can lead to arbitrary code execution. …

Jan 8, 2024
CVE-2023-35704
7.8 HIGH

Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35703
7.8 HIGH

Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35702
7.8 HIGH

Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-35128
7.0 HIGH

An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to memory corruption. A …

Jan 8, 2024
CVE-2023-35057
7.8 HIGH

An integer overflow vulnerability exists in the LXT2 lxt2_rd_trace value elements allocation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to memory …

Jan 8, 2024
CVE-2023-35004
7.8 HIGH

An integer overflow vulnerability exists in the VZT longest_len value allocation functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code …

Jan 8, 2024
CVE-2023-34436
7.8 HIGH

An out-of-bounds write vulnerability exists in the LXT2 num_time_table_entries functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A …

Jan 8, 2024
CVE-2023-34087
7.8 HIGH

An improper array index validation vulnerability exists in the EVCD var len parsing functionality of GTKWave 3.3.115. A specially crafted .evcd file can lead to …

Jan 8, 2024
CVE-2023-32650
7.0 HIGH

An integer overflow vulnerability exists in the FST_BL_GEOM parsing maxhandle functionality of GTKWave 3.3.115, when compiled as a 32-bit binary. A specially crafted .fst file …

Jan 8, 2024
CVE-2024-21647
5.9 MEDIUM

Puma is a web server for Ruby/Rack applications built for parallelism. Prior to version 6.4.2, puma exhibited incorrect behavior when parsing chunked transfer encoding bodies …

Jan 8, 2024
CVE-2024-21645
5.3 MEDIUM

pyLoad is the free and open-source Download Manager written in pure Python. A log injection vulnerability was identified in `pyload` allowing any unauthenticated actor to …

Jan 8, 2024
CVE-2024-21644
7.5 HIGH

pyLoad is the free and open-source Download Manager written in pure Python. Any unauthenticated user can browse to a specific URL to expose the Flask …

Jan 8, 2024
CVE-2023-7224
7.8 HIGH

OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries using the DYLD_INSERT_LIBRARIES environment variable

Jan 8, 2024
CVE-2023-51701
5.3 MEDIUM

fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. A reverse proxy server built with `@fastify/reply-from` could misinterpret the incoming …

Jan 8, 2024
CVE-2024-0322
9.1 CRITICAL

Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.

Jan 8, 2024
CVE-2024-0321
9.8 CRITICAL

Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.

Jan 8, 2024
CVE-2023-6552
6.1 MEDIUM

Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability.

Jan 8, 2024
CVE-2023-6921
9.8 CRITICAL

Blind SQL Injection vulnerability in PrestaShow Google Integrator (PrestaShop addon) allows for data extraction and modification. This attack is possible via command insertion in one …

Jan 8, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.