A critical vulnerability in WordPress core allows unauthenticated remote code execution through a REST API batch-route confusion and SQL injection issue. Affects…
Okta's Red Team has disclosed a denial-of-service vulnerability in OpenSSL, dubbed HollowByte, that allows an attacker to freeze server memory using 11-byte…
A low-severity vulnerability in OpenSSL's TLS 1.3 certificate compression feature allows a peer-supplied length to grow a heap buffer before validation, potentially…
A moderate-severity vulnerability in OpenSSL's QUIC implementation allows unbounded memory growth via the PATH_CHALLENGE handler, leading to denial of service through memory…
CVE-2026-34183denial of servicememory exhaustionOpenSSL
CVE-2022-22947 is a remote code execution vulnerability in Spring Cloud Gateway that occurs when the Actuator endpoint is enabled and exposed unsecured.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical remote code execution vulnerability in Microsoft SharePoint Server, tracked as…