CVE Tools

Project-harbor

18 CVEs tracked since 2022. Since Dec 2022, none of them reached CISA KEV.

Project-harbor CVEs per month

Dec 2022 to Sep 2023. Point at a month, or focus the strip and use the arrow keys.
Project-harbor CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-1240
2023-01null or fewer
2023-0250
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06null or fewer
2023-0740
2023-08null or fewer
2023-0950

Products

The products that kept showing up in Project-harbor's monthly top three, with their CVEs summed over those months.

  1. Harbor184 months

Latest CVEs

The 15 most recently published vulnerabilities affecting Project-harbor.

  1. CVE-2023-7104SQLite SQLite3 make alltest sqlite3session.c sessionReadRecord heap-based overflow5.5
  2. CVE-2023-5678Excessive time spent in DH check / generation with large Q parameter value5.3
  3. CVE-2023-38545This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy to allow that to resolve the address instead of ...9.8
  4. CVE-2023-45853MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename, comment, or extra field. NOTE: MiniZip is not a supporte...9.8
  5. CVE-2023-5156Glibc: dos due to memory leak in getaddrinfo.c7.5
  6. CVE-2023-4806Glibc: potential use-after-free in getaddrinfo()5.9
  7. CVE-2023-38039When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl headers API. However, curl did not have a limit in how many or how large hea...7.5
  8. CVE-2023-4813Glibc: potential use-after-free in gaih_inet()5.9
  9. CVE-2023-4807POLY1305 MAC implementation corrupts XMM registers on Windows7.8
  10. CVE-2023-40217An issue was discovered in Python before 3.8.18, 3.9.x before 3.9.18, 3.10.x before 3.10.13, and 3.11.x before 3.11.5. It primarily affects servers (such as HTTP servers) that use TLS client authen...5.3
  11. CVE-2023-3817Excessive time spent checking DH q parameter value5.3
  12. CVE-2023-3446Excessive time spent checking DH keys and parameters5.3
  13. CVE-2021-33294In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.5.5
  14. CVE-2023-2975AES-SIV implementation ignores empty associated data entries5.3
  15. CVE-2023-0767An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. This vulnerability affects Firefox < 1...8.8

The record

Peak rank
#133 in Sep 2023
Busiest month shown
Feb 2023, 5 CVEs
Months with a KEV entry
0 since Dec 2022
Monthly snapshots
4 since 2022
Project-harbor's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store