Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v53g-r949-jh4f

Опубликовано: 13 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

The vulnerability occurs in the parsing of CSP files. The issues result from the lack of proper validation of user-supplied data, which could allow reading past the end of allocated data structures, resulting in execution of arbitrary code.

The vulnerability occurs in the parsing of CSP files. The issues result from the lack of proper validation of user-supplied data, which could allow reading past the end of allocated data structures, resulting in execution of arbitrary code.

EPSS

Процентиль: 18%
0.00058
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.8
nvd
около 1 года назад

The vulnerability occurs in the parsing of CSP files. The issues result from the lack of proper validation of user-supplied data, which could allow reading past the end of allocated data structures, resulting in execution of arbitrary code.

EPSS

Процентиль: 18%
0.00058
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-125