Show filters
44 Total Results
Displaying 1-10 of 44
Sort by:
Attacker Value
Very High
CVE-2021-39144
Disclosure Date: August 23, 2021 (last updated February 23, 2025)
XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. XStream 1.4.18 uses no longer a blacklist by default, since it cannot be secured for general purpose.
4
Attacker Value
Unknown
CVE-2021-3537
Disclosure Date: May 14, 2021 (last updated February 22, 2025)
A vulnerability found in libxml2 in versions before 2.9.11 shows that it did not propagate errors while parsing XML mixed content, causing a NULL dereference. If an untrusted XML document was parsed in recovery mode and post-validated, the flaw could be used to crash the application. The highest threat from this vulnerability is to system availability.
1
Attacker Value
Unknown
CVE-2023-44487
Disclosure Date: October 10, 2023 (last updated June 28, 2024)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
1
Attacker Value
Unknown
CVE-2022-41032
Disclosure Date: October 11, 2022 (last updated December 20, 2023)
NuGet Client Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2022-38013
Disclosure Date: September 13, 2022 (last updated January 11, 2025)
.NET Core and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2022-30184
Disclosure Date: June 15, 2022 (last updated November 29, 2024)
.NET and Visual Studio Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2022-29145
Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2022-29117
Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2022-23267
Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2022-1011
Disclosure Date: March 18, 2022 (last updated October 07, 2023)
A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.
0