Vulnerabilities
Summary — last 7 days
New vulnerabilities2,635▼ 211 vs. last week
Critical / high1,376▲ 147 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)81▼ 449 vs. last week
6 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Medium (6.2) | 0.23% | — | Kanaka WAC | 11/8/2024 | 6/17/2026 | wac commit 385e1 was discovered to contain a heap overflow. | |
| Analyzed | Medium (5.5) | 0.23% | — | Kanaka WAC | 11/8/2024 | 6/17/2026 | wac commit 385e1 was discovered to contain a heap overflow via the load_module function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | |
| Analyzed | Medium (6.2) | 0.23% | — | Kanaka WAC | 11/8/2024 | 6/17/2026 | wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | |
| Analyzed | Medium (6.2) | 0.26% | — | Kanaka WAC | 11/8/2024 | 6/17/2026 | wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | |
| Modified | Medium (4.3) | 2.2% | — | Kanaka Novnc | 4/10/2015 | 6/17/2026 | noVNC before 0.5 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | |
| Modified | Medium (5.8) | 0.59% | — | Novell Kanaka | 4/7/2013 | 6/16/2026 | The installation functionality in the Novell Kanaka component before 2.8 for Novell Open Enterprise Server (OES) on Mac OS X does not verify the server's X.509 certificate during an SSL session, which allows man-in-the-middle attackers to spoof servers via an arbitrary certificate. |