debian

10,127 tracked vulnerabilities.

CVE-2024-25126 MEDIUM
Rack 0.4-2.2.8.1 and 3.0.0-3.0.9.1 - Denial of Service via Content-Type Header Parsing
Feb 29, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-27285 MEDIUM
yard < 0.9.36 - Cross-Site Scripting in frames.erb Template
Feb 28, 2024
CVSS 5.4
EPSS 0.03
CVE-2024-25082 MEDIUM
FontForge <20230101 - Command Injection
Feb 26, 2024
CVSS 6.5
EPSS 0.02
CVE-2024-25081 MEDIUM
FontForge <20230101 - Command Injection
Feb 26, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-22201 HIGH
Eclipse Jetty 9.3.0-9.4.53, 10.0.8-10.0.19, 12.0.0-12.0.5 - Denial of Service via HTTP/2 SSL Connection Leak
Feb 26, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-26598 HIGH
Linux Kernel - Use-After-Free in KVM vgic-its LPI Translation Cache
Feb 23, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-1553 HIGH
Firefox < 123 and Firefox ESR < 115.8 - Memory Corruption
Feb 20, 2024
CVSS 8.1
EPSS 0.01
CVE-2024-1552 HIGH
Firefox < 123, Firefox ESR < 115.8, Thunderbird < 115.8 - Code Inje...
Feb 20, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1551 MEDIUM
Firefox <123, Firefox ESR <115.8, Thunderbird <115.8 - XSS
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1550 MEDIUM
Firefox < 123 and ESR < 115.8 - UI Spoofing via Fullscreen and Pointer Lock
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1549 MEDIUM
Firefox < 123 and ESR < 115.8 - Permission Dialog Spoofing via Large Custom Cursor
Feb 20, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1548 MEDIUM
Firefox <123, Firefox ESR <115.8, Thunderbird <115.8 - Info Disclosure
Feb 20, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-1547 MEDIUM
Firefox < 123 and ESR < 115.8 - Authentication Bypass by Spoofing via Alert Dialog
Feb 20, 2024
CVSS 6.5
EPSS 0.01
CVE-2024-1546 HIGH
Firefox < 123 and ESR < 115.8 - Out-of-bounds Read in Networking Channel Buffer Handling
Feb 20, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-26581 HIGH
Linux Kernel - Use-After-Free in nft_set_rbtree Lazy GC
Feb 20, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-24814 HIGH
mod_auth_openidc 2.0.0-2.4.15.1 - Denial of Service via mod_auth_openidc_session_chunks Cookie
Feb 13, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1151 MEDIUM
Linux Kernel - Stack-based Buffer Overflow in Open vSwitch
Feb 11, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-25714 CRITICAL
Rhonabwy < 1.1.13 - Timing Side-Channel Attack via HMAC Signature Verification
Feb 11, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-25189 CRITICAL
libjwt <1.15.3 - Auth Bypass
Feb 08, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-24858 MEDIUM
Linux kernel < 3.19.8 and >=v4.0-rc1 <v6.8-rc2 - Denial of Service via Bluetooth Interval Set Race Condition
Feb 05, 2024
CVSS 4.6
EPSS 0.00
CVE-2024-24857 MEDIUM
Linux kernel < 3.19.8 and >=v4.0-rc1 <v6.8-rc2 - Denial of Service via Bluetooth Connection Info Race Condition
Feb 05, 2024
CVSS 4.6
EPSS 0.00
CVE-2024-1086 HIGH KEV
Linux Kernel 3.15-5.15.149 - Use-After-Free in nf_tables Component
Jan 31, 2024
CVSS 7.8
EPSS 0.85
CVE-2024-0808 CRITICAL
Google Chrome <121.0.6167.85 - Heap Corruption
Jan 24, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-0755 HIGH
Firefox < 122, Firefox ESR < 115.7, Thunderbird < 115.7 - Memory Corruption and Remote Code Execution
Jan 23, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-0753 MEDIUM
Firefox < 122, Firefox ESR < 115.7, Thunderbird < 115.7 - Auth Bypass
Jan 23, 2024
CVSS 6.5
EPSS 0.00