Vulnerabilities > Improper Validation of Array Index

DATE CVE VULNERABILITY TITLE RISK
2021-01-05 CVE-2020-36067 Improper Validation of Array Index vulnerability in Gjson Project Gjson
GJSON <=v1.6.5 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a crafted GET call.
network
low complexity
gjson-project CWE-129
7.5
2021-01-02 CVE-2020-28852 Improper Validation of Array Index vulnerability in Golang Text
In x/text in Go before v0.3.5, a "slice bounds out of range" panic occurs in language.ParseAcceptLanguage while processing a BCP 47 tag.
network
low complexity
golang CWE-129
7.5
2021-01-02 CVE-2020-28851 Improper Validation of Array Index vulnerability in Golang GO 1.15.4
In x/text in Go 1.15.4, an "index out of range" panic occurs in language.ParseAcceptLanguage while parsing the -u- extension.
network
low complexity
golang CWE-129
7.5
2020-12-28 CVE-2020-29245 Improper Validation of Array Index vulnerability in TAG Project TAG 20200828
dhowden tag before 2020-11-19 allows "panic: runtime error: slice bounds out of range" via readAtomData.
network
low complexity
tag-project CWE-129
6.5
2020-12-28 CVE-2020-29244 Improper Validation of Array Index vulnerability in TAG Project TAG 20200828
dhowden tag before 2020-11-19 allows "panic: runtime error: slice bounds out of range" via readTextWithDescrFrame.
network
low complexity
tag-project CWE-129
6.5
2020-12-28 CVE-2020-29243 Improper Validation of Array Index vulnerability in TAG Project TAG 20200828
dhowden tag before 2020-11-19 allows "panic: runtime error: index out of range" via readAPICFrame.
network
low complexity
tag-project CWE-129
6.5
2020-12-28 CVE-2020-29242 Improper Validation of Array Index vulnerability in TAG Project TAG 20200828
dhowden tag before 2020-11-19 allows "panic: runtime error: index out of range" via readPICFrame.
network
low complexity
tag-project CWE-129
6.5
2020-12-26 CVE-2020-20412 Improper Validation of Array Index vulnerability in multiple products
lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a crafted OGG file.
network
low complexity
xiph-org stepmania CWE-129
6.5
2020-11-16 CVE-2020-27485 Improper Validation of Array Index vulnerability in Garmin Forerunner 235 Firmware
Garmin Forerunner 235 before 8.20 is affected by: Array index error.
network
low complexity
garmin CWE-129
critical
9.9
2020-11-16 CVE-2020-27483 Improper Validation of Array Index vulnerability in Garmin Forerunner 235 Firmware
Garmin Forerunner 235 before 8.20 is affected by: Array index error.
network
low complexity
garmin CWE-129
critical
9.9