Syntax: kev:true severity:critical epss:>0.95 vendor:cisco patch:false
Filters
Severity
Exploitation
Data Source
Data Quality
Vendor
CWE — Weakness Type
Clear all
Top 20 matches Showing top matches — use filters or a more specific query to narrow
Rejected reason: After analysis, the originally reported behaviour was determined not to constitute a security vulnerability. The findings were parser-strictness defects without an exploitable framing
Rejected reason: Considered by the maintainers a bug scenario experienced rather than a vulnerability.
Rejected reason: Further research determined the issue is not an open source vulnerability.
Rejected reason: After the publication of the PoC by the researcher and further analysis, we have determined that this issue does not constitute a valid vulnerability. The technique described is an ob
Rejected reason: Red Hat Product Security has come to the conclusion that this CVE is not needed. The problem described was inteded behavior and therefore not a bug.
Rejected reason: Further research determined the issue is not an independent vulnerability as it originates from Apache Felix.
Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.
Rejected reason: This CVE was marked as fixed, but due to other code landing - was not actually fixed. It was subsequently fixed in CVE-2025-5986.
Rejected reason: This CVE id was assigned to an issue which was later deemed not security relevant.
Rejected reason: This CVE id was assigned to an issue which was later deemed not security relevant.
Rejected reason: This CVE id was assigned to an issue which was later deemed not security relevant.
Rejected reason: After further discussion, the issue was determined to not meet the criteria for CVE assignment.
Rejected reason: Further research determined the issue is an external dependency vulnerability.
Rejected reason: This issue is not a vulnerability because no real attack scenario can happen.
Rejected reason: This CVE ID is Rejected because the issue was not a vulnerability. The data field reported is not attacker controlled.
Page 1+ Next →