cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-2789,https://securityvulnerability.io/vulnerability/CVE-2023-2789,GNU cflow parser.c parse_variable_declaration denial of service,"In GNU cflow version 1.7, a vulnerability has been identified in the `func_body/parse_variable_declaration` function within the `parser.c` file. This vulnerability can be exploited to induce a denial of service, affecting the availability of the application. The issue has been publicly disclosed, and the vendor was notified prior to this disclosure but did not provide a response. Users are advised to pay attention to potential exposure to this vulnerability.",GNU,cflow,7.5,HIGH,0.0018500000005587935,false,false,false,false,,false,false,2023-05-18T13:15:00.000Z,0 CVE-2020-23856,https://securityvulnerability.io/vulnerability/CVE-2020-23856,,"Use-after-Free vulnerability in cflow 1.6 in the void call(char *name, int line) function at src/parser.c, which could cause a denial of service via the pointer variable caller->callee.",Gnu,Cflow,5.5,MEDIUM,0.0006600000197067857,false,false,false,false,,false,false,2021-05-18T14:41:03.000Z,0 CVE-2019-16165,https://securityvulnerability.io/vulnerability/CVE-2019-16165,,GNU cflow through 1.6 has a use-after-free in the reference function in parser.c.,Gnu,Cflow,6.5,MEDIUM,0.0009699999936856329,false,false,false,false,,false,false,2019-09-09T15:37:49.000Z,0 CVE-2019-16166,https://securityvulnerability.io/vulnerability/CVE-2019-16166,,GNU cflow through 1.6 has a heap-based buffer over-read in the nexttoken function in parser.c.,Gnu,Cflow,6.5,MEDIUM,0.0009699999936856329,false,false,false,false,,false,false,2019-09-09T15:37:41.000Z,0