CVEs (5,353)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 16, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security se...Show more |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 16, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 16, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical) |
2Fedoraproject Redhat3Enterprise Linux FedoraLibvirtJun 17, 2026 May 15, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array withi...Show more |
3Fedoraproject LibrawRedhat3Enterprise Linux FedoraLibrawJun 17, 2026 May 15, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash. |
2Fedoraproject Videolan2Dav1d FedoraJun 17, 2026 May 10, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit. |
4Debian FedoraprojectLinux+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 May 9, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure....Show more |
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531. |
3Debian FedoraprojectFrrouting3Debian Linux FedoraFrroutingJun 17, 2026 May 9, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function. |
2Fedoraproject Frrouting2Fedora FrroutingJun 17, 2026 May 9, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function. |
3Debian FedoraprojectMaradns3Debian Linux FedoraMaradnsJun 17, 2026 May 9, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely exploitable integer underflow vulnerability in the DNS packet decompression function allows an attac...Show more |
2Djangoproject Fedoraproject2Django FedoraJun 17, 2026 May 7, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 In Django 3.2 before 3.2.19, 4.x before 4.1.9, and 4.2 before 4.2.1, it was possible to bypass validation when using one form field to upload multiple files. This multiple upload has never been supported by forms.FileFie...Show more |
2Fedoraproject Struktur2Fedora LibheifJun 17, 2026 May 5, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A Segmentation fault caused by a floating point exception exists in libheif 1.15.1 using crafted heif images via the heif::Fraction::round() function in box.cc, which causes a denial of service. |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in PictureInPicture in Google Chrome prior to 113.0.5672.63 allowed a remote attacker who had compromised the renderer process to obfuscate the security UI via a crafted HTML page. (Chromium...Show more |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in Prompts in Google Chrome on Android prior to 113.0.5672.63 allowed a remote attacker to bypass permissions restrictions via a crafted HTML page. (Chromium security severity: Low) |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to spoof the contents of the security UI via a crafted HTML page. (Chromium security severity: Low) |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in CORS in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in PictureInPicture in Google Chrome prior to 113.0.5672.63 allowed an attacker who convinced a user to install a malicious extension to perform an origin spoof in the security UI via a craft...Show more |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 113.0.5672.63 allowed a remote attacker to hide the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security seve...Show more |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 May 3, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to obfuscate main origin data via a crafted HTML page. (Chromium security severity: Medium) |