DE EN FR
hlukh.ch Stand: 2026-02-25T15:01:21.749Z · week: 2023-W46

Sicherheitswarnungen

Kuratiert aus öffentlich verfügbaren Advisories. Fokus: Sichtbarkeit, Einordnung und schneller Export – ohne Clickbait.

Neueste Warnungen
CVE-2023-36049
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2023-36049
MSRC 2026‑02‑21 Hoch
CVE-2023-5345
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-5345
MSRC 2026‑02‑21 Hoch
CVE-2023-34059
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-34059
MSRC 2026‑02‑21 Hoch
CVE-2023-46316
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-46316
MSRC 2026‑02‑21 Mittel
CVE-2020-14343
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2020-14343
MSRC 2026‑02‑21 Kritisch
CVE-2020-1747
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2020-1747
MSRC 2026‑02‑21 Kritisch
CVE-2023-5717
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-5717
MSRC 2026‑02‑21 Hoch
CVE-2022-27664
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-27664
MSRC 2026‑02‑21 Hoch
CVE-2023-5633
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-5633
MSRC 2026‑02‑21 Hoch
CVE-2023-42366
A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.
2026‑02‑21 · CVE-2023-42366
MSRC 2026‑02‑21 Mittel
CVE-2023-42364
A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.
2026‑02‑21 · CVE-2023-42364
MSRC 2026‑02‑21 Mittel
CVE-2023-42365
A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.
2026‑02‑21 · CVE-2023-42365
MSRC 2026‑02‑21 Mittel
CVE-2023-42363
A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.
2026‑02‑21 · CVE-2023-42363
MSRC 2026‑02‑21 Mittel
CVE-2023-48105
An heap overflow vulnerability was discovered in Bytecode alliance wasm-micro-runtime v.1.2.3 allows a remote attacker to cause a denial of service via the wasm_loader_prepare_bytecode function in core/iwasm/interpreter/wasm_loader.c.
2026‑02‑21 · CVE-2023-48105
MSRC 2026‑02‑21 Hoch
CVE-2023-45857
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.
2026‑02‑21 · CVE-2023-45857
MSRC 2026‑02‑21 Mittel
CVE-2023-47235
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed because the presence of EOR does not lead to a treat-as-withdraw outcome.
2026‑02‑21 · CVE-2023-47235
MSRC 2026‑02‑21 Hoch
CVE-2023-47234
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).
2026‑02‑21 · CVE-2023-47234
MSRC 2026‑02‑21 Hoch
CVE-2023-36038
ASP.NET Core Denial of Service Vulnerability
2026‑02‑21 · CVE-2023-36038
MSRC 2026‑02‑21 Hoch
CVE-2023-36558
ASP.NET Core Security Feature Bypass Vulnerability
2026‑02‑21 · CVE-2023-36558
MSRC 2026‑02‑21 Mittel
CVE-2023-36560
ASP.NET Security Feature Bypass Vulnerability
2026‑02‑21 · CVE-2023-36560
MSRC 2026‑02‑21 Hoch
CVE-2023-36052
Azure CLI REST Command Information Disclosure Vulnerability
2026‑02‑21 · CVE-2023-36052
MSRC 2026‑02‑21 Hoch
CVE-2023-36437
Azure DevOps Server Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2023-36437
MSRC 2026‑02‑21 Hoch
CVE-2023-48161
Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c
2026‑02‑21 · CVE-2023-48161
MSRC 2026‑02‑21 Hoch
CVE-2023-49083
cryptography vulnerable to NULL-dereference when loading PKCS7 certificates
2026‑02‑21 · CVE-2023-49083
MSRC 2026‑02‑21 Mittel
CVE-2023-36392
DHCP Server Service Denial of Service Vulnerability
2026‑02‑21 · CVE-2023-36392
MSRC 2026‑02‑21 Hoch
CVE-2023-47108
DoS vulnerability in otelgrpc (uncontrolled resource consumption) due to unbound cardinality metrics
2026‑02‑21 · CVE-2023-47108
MSRC 2026‑02‑21 Hoch
CVE-2023-5678
Excessive time spent in DH check / generation with large Q parameter value
2026‑02‑21 · CVE-2023-5678
MSRC 2026‑02‑21 Mittel
CVE-2023-48232
Floating point Exception in adjust_plines_for_skipcol() in vim
2026‑02‑21 · CVE-2023-48232
MSRC 2026‑02‑21 Mittel
CVE-2023-5981
Gnutls: timing side-channel in the rsa-psk authentication
2026‑02‑21 · CVE-2023-5981
MSRC 2026‑02‑21 Mittel
CVE-2023-45539
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
2026‑02‑21 · CVE-2023-45539
MSRC 2026‑02‑21 Hoch
CVE-2023-3164
Heap-buffer-overflow in extractimagesection()
2026‑02‑21 · CVE-2023-3164
MSRC 2026‑02‑21 Mittel
CVE-2023-45286
HTTP request body disclosure in github.com/go-resty/resty/v2
2026‑02‑21 · CVE-2023-45286
MSRC 2026‑02‑21 Mittel
CVE-2023-45284
Incorrect detection of reserved device names on Windows in path/filepath
2026‑02‑21 · CVE-2023-45284
MSRC 2026‑02‑21 Mittel
CVE-2023-45283
Insecure parsing of Windows paths with a \??\ prefix in path/filepath
2026‑02‑21 · CVE-2023-45283
MSRC 2026‑02‑21 Hoch
CVE-2023-5090
Kernel: kvm: svm: improper check in svm_set_x2apic_msr_interception allows direct access to host x2apic msrs
2026‑02‑21 · CVE-2023-5090
MSRC 2026‑02‑21 Mittel
CVE-2023-6121
Kernel: nvme: info leak due to out-of-bounds read in nvmet_ctrl_find_get
2026‑02‑21 · CVE-2023-6121
MSRC 2026‑02‑21 Mittel
CVE-2023-39198
Kernel: qxl: race condition leading to use-after-free in qxl_mode_dumb_create()
2026‑02‑21 · CVE-2023-39198
MSRC 2026‑02‑21 Mittel
CVE-2023-5972
Kernel: the nfta_inner_num and nfta_expr_name netlink attributes accessed without checking its presence in nft_inner.c
2026‑02‑21 · CVE-2023-5972
MSRC 2026‑02‑21 Hoch
CVE-2023-5178
Kernel: use after free in nvmet_tcp_free_crypto in nvme
2026‑02‑21 · CVE-2023-5178
MSRC 2026‑02‑21 Hoch
CVE-2023-5528
Kubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalation
2026‑02‑21 · CVE-2023-5528
MSRC 2026‑02‑21 Hoch
CVE-2023-6277
Libtiff: out-of-memory in tiffopen via a craft file
2026‑02‑21 · CVE-2023-6277
MSRC 2026‑02‑21 Mittel
CVE-2023-36410
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
2026‑02‑21 · CVE-2023-36410
MSRC 2026‑02‑21 Hoch
CVE-2023-36031
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
2026‑02‑21 · CVE-2023-36031
MSRC 2026‑02‑21 Hoch
CVE-2023-36016
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
2026‑02‑21 · CVE-2023-36016
MSRC 2026‑02‑21 Mittel
CVE-2023-36030
Microsoft Dynamics 365 Sales Spoofing Vulnerability
2026‑02‑21 · CVE-2023-36030
MSRC 2026‑02‑21 Mittel
CVE-2023-36024
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2023-36024
MSRC 2026‑02‑21 Hoch
CVE-2023-36027
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2023-36027
MSRC 2026‑02‑21 Hoch
CVE-2023-36034
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2023-36034
MSRC 2026‑02‑21 Hoch
CVE-2023-36008
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2023-36008
MSRC 2026‑02‑21 Mittel
CVE-2023-36022
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2023-36022
MSRC 2026‑02‑21 Mittel
Seite 1