Where
AND
-Infinity
0

IBM Cognos AnalyticsSslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

Eclipse JettyJetty DOS vulnerability on DosFilter

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

NetApp Ontap Tools Vmware VsphereApache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader

Risk 47
Severity
7.5
First published (updated )

maven/com.google.protobuf:protobuf-javaStack overflow in Protocol Buffers Java Lite

Risk 35
Severity
8.7
EPSS
0.04%
First published (updated )

maven/org.springframework:spring-webSpring Framework URL Parsing with Host Validation (2nd report)

Risk 62
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Eclipse JettyJetty connection leaking on idle timeout when TCP congested

Risk 46
Severity
7.5
First published (updated )

maven/io.undertow:undertow-coreUndertow: out-of-memory error after several closed connections with wildfly-http-client protocol

Risk 46
Severity
7.5
First published (updated )

fasterxml jackson-databindThe com.fasterxml.jackson.core:jackson-databind library before version 2.9.10.4 is vulnerable to an …

Risk 79
Severity
8.1
First published (updated )

ubuntu/libgoogle-gson-javaDeserialization of Untrusted Data

Risk 70
Severity
7.7
First published (updated )

VMware Spring FrameworkInput Validation

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Insurance Policy AdministrationApache Commons Compress 1.6 to 1.20 denial of service vulnerability

Risk 45
Severity
7.5
First published (updated )

Oracle Banking Digital ExperienceApache Commons Compress 1.6 to 1.20 denial of service vulnerability

Risk 45
Severity
7.5
First published (updated )

Oracle Banking ApisApache Commons Compress 1.0 to 1.20 denial of service vulnerability

Risk 45
Severity
7.5
First published (updated )

Oracle Banking ApisApache Commons Compress 1.1 to 1.20 denial of service vulnerability

Risk 45
Severity
7.5
First published (updated )

redhat/eap7-undertowA flaw was found in Undertow where a potential security issue in flow control handling by browser ov…

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Primavera GatewayCommand Injection

Risk 71
Severity
7.2
First published (updated )

maven/com.fasterxml.jackson.core:jackson-databindSSRF

Risk 63
Severity
8.3
First published (updated )

Oracle Banking Liquidity ManagementCode Injection

Risk 77
Severity
8.1
First published (updated )

Oracle Utilities Frameworkjackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a lar…

Risk 46
Severity
7.5
First published (updated )

Oracle Banking Digital ExperienceFasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction between serialization gadg…

Risk 79
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Banking Digital ExperienceA flaw was found in jackson-databind 2.x in versions prior to 2.9.10.5. FasterXML jackson-databind 2…

Risk 77
Severity
8.1
First published (updated )

Oracle Banking Digital ExperienceFasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction between serialization gadg…

Risk 79
Severity
8.1
First published (updated )

Oracle Banking Digital ExperienceFasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction between serialization gadg…

Risk 79
Severity
8.1
First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadg…

Risk 79
Severity
8.1
First published (updated )

Oracle Primavera UnifierFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadg…

Risk 77
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat jboss-remotingA flaw was found in Undertow as shipped in Jboss EAP before version 7.2.4. A memory leak in HttpOpen…

Risk 45
Severity
7.5
First published (updated )

redhat/eap7-apache-cxfA vulnerability was found in the Undertow HTTP server listening on HTTPS. An attacker can target the…

Risk 45
Severity
7.5
First published (updated )

Canonical Ubuntu LinuxBuffer Overflow

Risk 71
Severity
7.8
First published (updated )

redhat JBoss Enterprise Application PlatformAn information leak issue was found in undertow where web apps may have their directory structures p…

Risk 45
Severity
7.5
First published (updated )

redhat/eap7-glassfish-jsfA vulnerability was found in Infinispan before version 10.0.0 Final. The invokeAccessibly method fro…

Risk 81
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203