Neueste Warnungen
| CVE-2023-36049 |
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5345 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-34059 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-46316 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2020-14343 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Kritisch |
| CVE-2020-1747 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Kritisch |
| CVE-2023-5717 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2022-27664 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5633 |
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-42366 |
A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-42364 |
A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-42365 |
A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-42363 |
A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-48105 |
An heap overflow vulnerability was discovered in Bytecode alliance wasm-micro-runtime v.1.2.3 allows a remote attacker to cause a denial of service via the wasm_loader_prepare_bytecode function in core/iwasm/interpreter/wasm_loader.c.
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-45857 |
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-47235 |
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed because the presence of EOR does not lead to a treat-as-withdraw outcome.
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-47234 |
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36038 |
ASP.NET Core Denial of Service Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36558 |
ASP.NET Core Security Feature Bypass Vulnerability
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36560 |
ASP.NET Security Feature Bypass Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36052 |
Azure CLI REST Command Information Disclosure Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36437 |
Azure DevOps Server Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-48161 |
Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-49083 |
cryptography vulnerable to NULL-dereference when loading PKCS7 certificates
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36392 |
DHCP Server Service Denial of Service Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-47108 |
DoS vulnerability in otelgrpc (uncontrolled resource consumption) due to unbound cardinality metrics
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5678 |
Excessive time spent in DH check / generation with large Q parameter value
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-48232 |
Floating point Exception in adjust_plines_for_skipcol() in vim
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-5981 |
Gnutls: timing side-channel in the rsa-psk authentication
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-45539 |
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-3164 |
Heap-buffer-overflow in extractimagesection()
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-45286 |
HTTP request body disclosure in github.com/go-resty/resty/v2
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-45284 |
Incorrect detection of reserved device names on Windows in path/filepath
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-45283 |
Insecure parsing of Windows paths with a \??\ prefix in path/filepath
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5090 |
Kernel: kvm: svm: improper check in svm_set_x2apic_msr_interception allows direct access to host x2apic msrs
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-6121 |
Kernel: nvme: info leak due to out-of-bounds read in nvmet_ctrl_find_get
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-39198 |
Kernel: qxl: race condition leading to use-after-free in qxl_mode_dumb_create()
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-5972 |
Kernel: the nfta_inner_num and nfta_expr_name netlink attributes accessed without checking its presence in nft_inner.c
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5178 |
Kernel: use after free in nvmet_tcp_free_crypto in nvme
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-5528 |
Kubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalation
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-6277 |
Libtiff: out-of-memory in tiffopen via a craft file
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36410 |
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36031 |
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36016 |
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36030 |
Microsoft Dynamics 365 Sales Spoofing Vulnerability
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36024 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36027 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36034 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Hoch |
| CVE-2023-36008 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Mittel |
| CVE-2023-36022 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Mittel |
Seite 1