57.574 CVE tracked
783 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
57.574 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted ascending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2023-36909 | MED 6.5 | microsoft windows_10 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | 2.1% | — |
| CVE-2023-36908 | MED 6.5 | microsoft windows_10 Windows Hyper-V Information Disclosure Vulnerability | 1.0% | — |
| CVE-2023-36894 | MED 6.5 | microsoft sharepoint_server Microsoft SharePoint Server Information Disclosure Vulnerability | 2.1% | — |
| CVE-2023-36893 | MED 6.5 | microsoft 365_apps Microsoft Outlook Spoofing Vulnerability | 2.2% | — |
| CVE-2023-36890 | MED 6.5 | microsoft sharepoint_server Microsoft SharePoint Server Information Disclosure Vulnerability | 1.9% | — |
| CVE-2023-36871 | MED 6.5 | microsoft windows_10_1507 Azure Active Directory Security Feature Bypass Vulnerability | 1.2% | — |
| CVE-2023-36868 | MED 6.5 | microsoft azure_service_fabric Azure Service Fabric on Windows Information Disclosure Vulnerability | 0.7% | — |
| CVE-2023-36850 | MED 6.5 | juniper junos An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Connectivity Fault Management(CFM) module of Juniper Networks Junos OS on MX Series(except MPC10, MPC11 and LC9600) allows an adjacent attacker on the local broadcast | 0.3% | — |
| CVE-2023-36849 | MED 6.5 | juniper junos An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). When a malf | 0.3% | — |
| CVE-2023-36848 | MED 6.5 | juniper junos An Improper Handling of Undefined Values vulnerability in the periodic packet management daemon (PPMD) of Juniper Networks Junos OS on MX Series(except MPC10, MPC11 and LC9600) allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). Wh | 0.3% | — |
| CVE-2023-36842 | MED 6.5 | juniper junos An Improper Check for Unusual or Exceptional Conditions vulnerability in Juniper DHCP Daemon (jdhcpd) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker to cause the jdhcpd to consume all the CPU cycles resulting in a Denial of Service | 0.3% | — |
| CVE-2023-36839 | MED 6.5 | juniper junos An Improper Validation of Specified Quantity in Input vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker who sends specific LLDP packets to cause a Denial | 0.3% | — |
| CVE-2023-36834 | MED 6.5 | juniper junos An Incomplete Internal State Distinction vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX 4600 and SRX 5000 Series allows an adjacent attacker to cause a Denial of Service (DoS). If an SRX is configured in L2 transparent | 0.3% | — |
| CVE-2023-36833 | MED 6.5 | juniper junos_os_evolved A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36MR, and PTX10004, PTX10008, PTX10016 with LC1201/1202 allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). The | 0.3% | — |
| CVE-2023-36799 | MED 6.5 | microsoft .net .NET Core and Visual Studio Denial of Service Vulnerability | 4.9% | — |
| CVE-2023-36761 | MED 6.5 | microsoft 365_apps Microsoft Word Information Disclosure Vulnerability | 20.1% | |
| CVE-2023-36717 | MED 6.5 | microsoft windows_10_1507 Windows Virtual Trusted Platform Module Denial of Service Vulnerability | 0.7% | — |
| CVE-2023-36707 | MED 6.5 | microsoft windows_server_2012 Windows Deployment Services Denial of Service Vulnerability | 2.6% | — |
| CVE-2023-36706 | MED 6.5 | microsoft windows_server_2008 Windows Deployment Services Information Disclosure Vulnerability | 1.8% | — |
| CVE-2023-36641 | MED 6.5 | fortinet fortios A numeric truncation error in Fortinet FortiProxy version 7.2.0 through 7.2.4, FortiProxy version 7.0.0 through 7.0.10, FortiProxy 2.0 all versions, FortiProxy 1.2 all versions, FortiProxy 1.1, all versions, FortiProxy 1.0 all versions, FortiOS version 7.4.0, | 1.3% | — |
| CVE-2023-36566 | MED 6.5 | microsoft common_data_model_sdk Microsoft Common Data Model SDK Denial of Service Vulnerability | 2.8% | — |
| CVE-2023-36564 | MED 6.5 | microsoft windows_10_1507 Windows Search Security Feature Bypass Vulnerability | 1.3% | — |
| CVE-2023-36563 | MED 6.5 | microsoft windows_10_1507 Microsoft WordPad Information Disclosure Vulnerability | 20.7% | |
| CVE-2023-36543 | MED 6.5 | apache airflow Apache Airflow, versions before 2.6.3, has a vulnerability where an authenticated user can use crafted input to make the current request hang. It is recommended to upgrade to a version that is not affected | 1.6% | — |
| CVE-2023-36433 | MED 6.5 | microsoft dynamics_365 Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | 1.9% | — |