CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

netapp

steelstore

6 known vulnerabilities · sorted by CVSS score

CVE-2019-5481
CRITICAL9.8

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.

haxx / curl+22
Network
Published Sep 16, 2019
CVE-2019-14815
HIGH7.8

A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.

linux / linux_kernel+39
Local
Published Nov 25, 2019
CVE-2018-0735
MEDIUM5.9

The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.1.1a (Affected 1.1.1).

oracle / secure_global_desktop+45
Network
Published Oct 29, 2018
CVE-2018-0734
MEDIUM5.9

The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.1a (Affected 1.1.1). Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.0.2q (Affected 1.0.2-1.0.2p).

openssl / openssl+42
Network
Published Oct 30, 2018
CVE-2019-7317
MEDIUM5.3

png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.

libpng / libpng+55
Network
Published Feb 4, 2019
CVE-2018-15919
MEDIUM5.3

Remotely observable behaviour in auth-gss2.c in OpenSSH through 7.8 could be used by remote attackers to detect existence of users on a target system when GSS2 is in use. NOTE: the discoverer states 'We understand that the OpenSSH developers do not want to treat such a username enumeration (or "oracle") as a vulnerability.'

openbsd / openssh+5
Network
Published Aug 28, 2018