Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sdk vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-3437
Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which may allow escalation of privilege and/or denial of service. HP is releasing software updates to mitigate the potential vulnerabilities.
Hp Omen Gaming Hub
Hp Omen Gaming Hub Sdk
9.8
CVSSv3
CVE-2022-1799
Incorrect signature trust exists within Google Play services SDK play-services-basement. A debug version of Google Play services is trusted by the SDK for devices that are non-GMS. We recommend upgrading the SDK past the 2022-05-03 release.
Google Google Play Services Software Development Kit
9.8
CVSSv3
CVE-2020-28435
This affects all versions of package ffmpeg-sdk. The injection point is located in line 9 in index.js.
Ffmpeg-sdk Project Ffmpeg-sdk
9.8
CVSSv3
CVE-2022-28605
Hardcoded admin token in SoundBar apps in Linkplay SDK 1.00 allows remote malicious users to gain admin privilege access in linkplay antifactory
Linkplay Sound Bar 1.0
9.8
CVSSv3
CVE-2021-27421
NXP MCUXpresso SDK versions before 2.8.2 are vulnerable to integer overflow in SDK_Malloc function, which could allow to access memory locations outside the bounds of a specified array, leading to unexpected behavior such segmentation fault when assigning a particular block of me...
Nxp Mcuxpresso Software Development Kit
1 Github repository
9.8
CVSSv3
CVE-2022-29859
component/common/network/dhcp/dhcps.c in ambiot amb1_sdk (aka SDK for Ameba1) prior to 2022-03-11 mishandles data structures for DHCP packet data.
Amb1 Sdk Project Amb1 Sdk
9.8
CVSSv3
CVE-2021-30636
In MediaTek LinkIt SDK prior to 4.6.1, there is a possible memory corruption due to an integer overflow during mishandled memory allocation by pvPortCalloc and pvPortRealloc.
Mediatek Linkit Software Development Kit
9.8
CVSSv3
CVE-2021-40417
When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that were submitted with the job along with fields that were parsed for the submitted video by the R3D SDK to calculate the size of a heap buffer. ...
Blackmagicdesign Davinci Resolve 17.3.1.0005
9.8
CVSSv3
CVE-2021-40418
When parsing a file that is submitted to the DPDecoder service as a job, the R3D SDK will mistakenly skip over the assignment of a property containing an object referring to a UUID that was parsed from a frame within the video container. Upon destruction of the object that owns i...
Blackmagicdesign Davinci Resolve 17.3.1.0005
9.8
CVSSv3
CVE-2021-43225
Bot Framework SDK Remote Code Execution Vulnerability
Microsoft Bot Framework Software Development Kit -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2024-34413
CVE-2024-34089
CVE-2024-33408
local
SQL
CVE-2024-0402
CVE-2024-33910
CVE-2024-31848
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »