53195 results (0.036 seconds)

CVSS: 7.5EPSS: %CPEs: 1EXPL: 0

03 Dec 2025 — Improper validation of source IP addresses in OpenVPN version 2.6.0 through 2.7_rc1 allows an attacker to open a session from a different IP address which did not initiate the connection resulting in a denial of service for the originating client • https://community.openvpn.net/Security%20Announcements/CVE-2025-13086 • CWE-940: Improper Verification of Source of a Communication Channel •

CVSS: 7.5EPSS: %CPEs: 3EXPL: 0

03 Dec 2025 — Prior to 1.8.1, 1.7.15.1, and 1.7.14.1, when an application passed an attacker controlled float poing number into the toFixed() function, it might lead to high CPU consumption and a potential Denial of Service. • https://github.com/mozilla/rhino/security/advisories/GHSA-3w8q-xq97-5j7x • CWE-400: Uncontrolled Resource Consumption •

CVSS: 7.8EPSS: %CPEs: 25EXPL: 0

03 Dec 2025 — A flaw was found in Undertow that can cause remote denial of service attacks. ... This flaw allows unauthorized users to cause a remote denial of service (DoS) attack. • https://access.redhat.com/security/cve/CVE-2024-3884 • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: %CPEs: 1EXPL: 0

03 Dec 2025 — A successful exploit of this vulnerability may lead to escalation of privileges, data tampering, denial of service, information disclosure. • https://nvd.nist.gov/vuln/detail/CVE-2025-33208 • CWE-427: Uncontrolled Search Path Element •

CVSS: 7.8EPSS: %CPEs: 1EXPL: 0

03 Dec 2025 — A successful exploit of this vulnerability may lead to denial of service. • https://nvd.nist.gov/vuln/detail/CVE-2025-33211 • CWE-1284: Improper Validation of Specified Quantity in Input •

CVSS: 7.8EPSS: %CPEs: 1EXPL: 0

03 Dec 2025 — A successful exploit of this vulnerability may lead to denial of service. • https://nvd.nist.gov/vuln/detail/CVE-2025-33201 • CWE-754: Improper Check for Unusual or Exceptional Conditions •

CVSS: 4.3EPSS: %CPEs: 10EXPL: 0

03 Dec 2025 — This could potentially lead to a client-side denial of service (DoS). • https://advisory.splunk.com/advisories/SVD-2025-1208 • CWE-20: Improper Input Validation •

CVSS: 5.5EPSS: %CPEs: 1EXPL: 0

03 Dec 2025 — Interactive service agent in OpenVPN version 2.5.0 through 2.7_rc2 on Windows allows a local authenticated user to connect to the service and trigger an error causing a local denial of service. • https://community.openvpn.net/Security%20Announcements/CVE-2025-13751 • CWE-770: Allocation of Resources Without Limits or Throttling CWE-775: Missing Release of File Descriptor or Handle after Effective Lifetime CWE-841: Improper Enforcement of Behavioral Workflow •

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 0

03 Dec 2025 — MEGACO dissector infinite loop in Wireshark 4.6.0 to 4.6.1 and 4.4.0 to 4.4.11 allows denial of service • https://gitlab.com/wireshark/wireshark/-/issues/20884 • CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

03 Dec 2025 — HTTP3 dissector crash in Wireshark 4.6.0 and 4.6.1 allows denial of service • https://gitlab.com/wireshark/wireshark/-/issues/20860 • CWE-1325: Improperly Controlled Sequential Memory Allocation •