Show filters
44 Total Results
Displaying 1-10 of 44
Sort by:
Attacker Value
Very High

CVE-2021-39144

Disclosure Date: August 23, 2021 (last updated February 23, 2025)
XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. XStream 1.4.18 uses no longer a blacklist by default, since it cannot be secured for general purpose.
Attacker Value
Unknown

CVE-2021-3537

Disclosure Date: May 14, 2021 (last updated February 22, 2025)
A vulnerability found in libxml2 in versions before 2.9.11 shows that it did not propagate errors while parsing XML mixed content, causing a NULL dereference. If an untrusted XML document was parsed in recovery mode and post-validated, the flaw could be used to crash the application. The highest threat from this vulnerability is to system availability.
Attacker Value
Unknown

CVE-2023-44487

Disclosure Date: October 10, 2023 (last updated June 28, 2024)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Attacker Value
Unknown

CVE-2022-41032

Disclosure Date: October 11, 2022 (last updated December 20, 2023)
NuGet Client Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2022-38013

Disclosure Date: September 13, 2022 (last updated January 11, 2025)
.NET Core and Visual Studio Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2022-30184

Disclosure Date: June 15, 2022 (last updated November 29, 2024)
.NET and Visual Studio Information Disclosure Vulnerability
0
Attacker Value
Unknown

CVE-2022-29145

Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown

CVE-2022-29117

Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown

CVE-2022-23267

Disclosure Date: May 10, 2022 (last updated November 29, 2024)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown

CVE-2022-1011

Disclosure Date: March 18, 2022 (last updated October 07, 2023)
A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.