cwe-20
Safeguard articles tagged "cwe-20" — guides, analysis, and best practices for software supply chain and application security.
100 articles
CVE-2022-2856: Google Chromium Intents Insufficient Input Validation Vulnerability
CVE-2022-2856 affects Google Chromium Intents and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-18.
CVE-2022-32893: Apple iOS and macOS Out-of-Bounds Write Vulnerability
CVE-2022-32893 affects Apple iOS and macOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-18.
CVE-2022-32894: Apple iOS and macOS Out-of-Bounds Write Vulnerability
CVE-2022-32894 affects Apple iOS and macOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-18.
CVE-2021-31010: Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability
CVE-2021-31010 affects Apple iOS, macOS, watchOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-25.
CVE-2022-3075: Google Chromium Mojo Insufficient Data Validation Vulnerability
CVE-2022-3075 affects Google Chromium Mojo and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-08.
CVE-2022-32917: Apple iOS, iPadOS, and macOS Remote Code Execution Vulnerability
CVE-2022-32917 affects Apple iOS, iPadOS, and macOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-14.
CVE-2022-37969: Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
CVE-2022-37969 affects Microsoft Windows and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-14.
CVE-2010-2568: Microsoft Windows Remote Code Execution Vulnerability
CVE-2010-2568 affects Microsoft Windows and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-15.
CVE-2013-6282: Linux Kernel Improper Input Validation Vulnerability
CVE-2013-6282 affects Linux Kernel and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-09-15.
CVE-2022-42827: Apple iOS and iPadOS Out-of-Bounds Write Vulnerability
CVE-2022-42827 affects Apple iOS and iPadOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-10-25.
CVE-2017-11357: Telerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerability
CVE-2017-11357 affects Telerik User Interface (UI) for ASP.NET AJAX and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-01-26.
CVE-2023-22952: Multiple SugarCRM Products Remote Code Execution Vulnerability
CVE-2023-22952 affects SugarCRM Multiple Products and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-02-02.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.