��к св "брест"
This hub aggregates every CVE we track for ��к св "брест", a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Operating Systemson-prem
14
CVEs tracked
1
Critical
10
High
0
In CISA KEV
Severity distribution
HIGH10MEDIUM3CRITICAL1
Monthly trend
0
0
0
0
0
2
2
0
1
0
0
0
1
4
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting ��к св "брест".
- CVE-2025-61919Rack is vulnerable to a memory-exhaustion DoS through unbounded URL-encoded body parsing7.5
- CVE-2025-61772Rack's multipart parser buffers unbounded per-part headers, enabling DoS (memory exhaustion)7.5
- CVE-2025-61771Rack's multipart parser buffers large non‑file fields entirely in memory, enabling DoS (memory exhaustion)7.5
- CVE-2025-61770Rack's unbounded multipart preamble buffering enables DoS (memory exhaustion)7.5
- CVE-2025-59830Rack QueryParser has an unsafe default allowing params_limit bypass via semicolon-separated parameters7.5
- CVE-2025-46727Unbounded-Parameter DoS in Rack::QueryParser7.5
- CVE-2025-27610Local File Inclusion in Rack::Static7.5
- CVE-2025-27111Escape Sequence Injection vulnerability in Rack lead to Possible Log Injection7.5
- BDU:2025-01827Уязвимость программного комплекса Брест, связанная с непринятием мер по нейтрализации специальных элементов в cookie, используемых в команде операционной системы, позволяющая нарушителю выполнить произвольные код8.8
- BDU:2025-01826Уязвимость программного комплекса Брест, связанная с отсутствием валидации входных данных атрибутов пользователя. позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)8.1
- CVE-2024-26141Possible DoS Vulnerability with Range Header in Rack5.8
- CVE-2024-25126Rack ReDos in content type parsing (2nd degree polynomial)5.3
- CVE-2024-26146Possible Denial of Service Vulnerability in Rack Header Parsing5.3
- CVE-2022-37425The FILES directive inside a VM template allows execution of uploaded files when the template is instantiated, resulting in a Remote Code Execution (RCE) attack.9.9
Product normalization is registry-driven with AI assist and human review. How it works