All CVEs (26)
CVE-2025-1974
CRITICALA security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network can achieve arbitrary code execution in the context of the ingr...
CVE-2024-33768
CRITICALlunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source_over.
CVE-2025-4083
CRITICALA process isolation vulnerability in Thunderbird stemmed from improper handling of javascript: URIs, which could allow content to execute in the top-level document's process instead of the intended fr...
CVE-2024-20285
HIGHA vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python sandbox and gain unauthorized access to the underlyi...
CVE-2023-1305
HIGHAn authenticated attacker can leverage an exposed “box” object to read and write arbitrary files from disk, provided those files can be parsed as yaml or JSON. This issue was resolved in the Managed a...
CVE-2024-47520
HIGHA user with advanced report application access rights can perform actions for which they are not authorized
CVE-2024-0136
HIGHNVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to untrusted code obtaining read and write access to host devices. This vulne...
CVE-2024-0135
HIGHNVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to modification of a host binary. A successful exploit of this vulnerability ...
CVE-2025-24986
MEDIUMImproper isolation or compartmentalization in Azure PromptFlow allows an unauthorized attacker to execute code over a network.
CVE-2024-57723
MEDIUMlunasvg v3.0.0 was discovered to contain a segmentation violation via the component composition_source_over.
CVE-2024-57721
MEDIUMlunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_path_add_path.
CVE-2024-57720
MEDIUMlunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_blend.
CVE-2024-55456
MEDIUMlunasvg v3.0.1 was discovered to contain a segmentation violation via the component gray_find_cell
CVE-2024-30388
HIGHAn Improper Isolation or Compartmentalization vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on QFX5000 Series and EX Series allows an unauthenticated, adjacent attac...
CVE-2024-35425
MEDIUMvmir e8117 was discovered to contain a segmentation violation via the function_prepare_parse function at /src/vmir_function.c.
CVE-2024-0137
MEDIUMNVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to untrusted code running in the host’s network namespace. This vulnerability...
CVE-2023-29580
MEDIUMyasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.
CVE-2025-26393
MEDIUMSolarWinds Service Desk is affected by a broken access control vulnerability. The issue allows authenticated users to escalate privileges, leading to unauthorized data manipulation.
CVE-2023-1636
MEDIUMA vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, US...
CVE-2025-21590
MEDIUMAn Improper Isolation or Compartmentalization vulnerability in the kernel of Juniper Networks Junos OS allows a local attacker with high privileges to compromise the integrity of the device. A local a...
CVE-2024-49373
MEDIUMNo Fuss Computing Centurion ERP is open source enterprise resource planning (ERP) software. Prior to version 1.2.1, an authenticated user can view projects within organizations they are not apart of. ...
An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7.4.2 and below, version 7.2.8 and below, 7.0 all versions and FortiVoiceUCDesktop 3.0 all versions desk...
Centurion ERP (Enterprise Rescource Planning) is a simple application developed to provide open source IT management with a large emphasis on the IT Service Management (ITSM) modules. A user who is au...
CVE-2025-3086
MEDIUMImproper isolation of users in M-Files Server version before 25.3.14549 allows anonymous user to affect other anonymous users views and possibly cause a denial of service