Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2023-04-22 CVE-2023-25510 NULL Pointer Dereference vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA Toolkit SDK for Linux and Windows contains a NULL pointer dereference in cuobjdump, where a local user running the tool against a malformed binary may cause a limited denial of service.
local
low complexity
nvidia CWE-476
3.3
2023-04-22 CVE-2023-25511 Divide By Zero vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA Toolkit for Linux and Windows contains a vulnerability in cuobjdump, where a division-by-zero error may enable a user to cause a crash, which may lead to a limited denial of service.
local
low complexity
nvidia CWE-369
3.3
2023-04-21 CVE-2023-30618 Unspecified vulnerability in Kitchen-Terraform Project Kitchen-Terraform 7.0.0
Kitchen-Terraform provides a set of Test Kitchen plugins which enable the use of Test Kitchen to converge a Terraform configuration and verify the resulting infrastructure systems with InSpec controls.
local
low complexity
kitchen-terraform-project
3.3
2023-04-18 CVE-2023-28440 Unspecified vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse
2.7
2023-04-18 CVE-2023-21999 Unspecified vulnerability in Oracle VM Virtualbox
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core).
local
high complexity
oracle
3.6
2023-04-14 CVE-2023-29383 Injection vulnerability in Shadow Project Shadow 4.13
In Shadow 4.13, it is possible to inject control characters into fields provided to the SUID program chfn (change finger).
local
low complexity
shadow-project CWE-74
3.3
2023-04-14 CVE-2023-29194 Unspecified vulnerability in Linuxfoundation Vitess
Vitess is a database clustering system for horizontal scaling of MySQL.
network
low complexity
linuxfoundation
2.7
2023-04-12 CVE-2023-27703 Unspecified vulnerability in Mypikpak Pikpak 1.29.2
The Android version of pikpak v1.29.2 was discovered to contain an information leak via the debug interface.
local
low complexity
mypikpak
3.3
2023-04-11 CVE-2020-9009 Missing Authorization vulnerability in Shipstation 1.0
The ShipStation.com plugin 1.1 and earlier for CS-Cart allows remote attackers to insert arbitrary information into the database (via action=shipnotify) because access to this endpoint is completely unchecked.
network
high complexity
shipstation CWE-862
3.7
2023-04-11 CVE-2022-46396 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in ARM products
An issue was discovered in the Arm Mali Kernel Driver.
local
low complexity
arm CWE-119
3.3