Количество 26 091
Количество 26 091
CVE-2023-24540
Improper handling of JavaScript whitespace in html/template
CVE-2023-24539
Improper sanitization of CSS values in html/template
CVE-2023-24538
Backticks not treated as string delimiters in html/template
CVE-2023-24537
Infinite loop in parsing in go/scanner
CVE-2023-24536
Excessive resource consumption in net/http, net/textproto and mime/multipart
CVE-2023-24534
Excessive memory allocation in net/http and net/textproto
CVE-2023-24532
Incorrect calculation on P256 curves in crypto/internal/nistec
CVE-2023-24531
Output of "go env" does not sanitize values in cmd/go
CVE-2023-24329
CVE-2023-2430
A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat.
CVE-2023-2426
CVE-2023-24056
In pkgconf through 1.9.3 variable duplication can cause unbounded string expansion due to incorrect checks in libpkgconf/tuple.c:pkgconf_tuple_parse. For example a .pc file containing a few hundred bytes can expand to one billion bytes.
CVE-2023-24023
Mitre: CVE-2023-24023 Bluetooth Vulnerability
CVE-2023-23946
GitHub: CVE-2023-23946 mingit Remote Code Execution Vulnerability
CVE-2023-23936
CVE-2023-23934
CVE-2023-23931
Cipher.update_into can corrupt memory in pyca cryptography
CVE-2023-23920
CVE-2023-23919
CVE-2023-23918
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-24540 Improper handling of JavaScript whitespace in html/template | CVSS3: 9.8 | 2% Низкий | 11 месяцев назад | |
CVE-2023-24539 Improper sanitization of CSS values in html/template | CVSS3: 7.3 | 1% Низкий | 11 месяцев назад | |
CVE-2023-24538 Backticks not treated as string delimiters in html/template | CVSS3: 9.8 | 2% Низкий | 12 месяцев назад | |
CVE-2023-24537 Infinite loop in parsing in go/scanner | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
CVE-2023-24536 Excessive resource consumption in net/http, net/textproto and mime/multipart | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
CVE-2023-24534 Excessive memory allocation in net/http and net/textproto | CVSS3: 7.5 | 2% Низкий | 6 месяцев назад | |
CVE-2023-24532 Incorrect calculation on P256 curves in crypto/internal/nistec | CVSS3: 5.3 | 1% Низкий | 6 месяцев назад | |
CVE-2023-24531 Output of "go env" does not sanitize values in cmd/go | CVSS3: 9.8 | 1% Низкий | 12 месяцев назад | |
CVSS3: 7.5 | 20% Средний | больше 3 лет назад | ||
CVE-2023-2430 A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat. | CVSS3: 5.5 | 0% Низкий | около 3 лет назад | |
CVSS3: 5.5 | 0% Низкий | больше 3 лет назад | ||
CVE-2023-24056 In pkgconf through 1.9.3 variable duplication can cause unbounded string expansion due to incorrect checks in libpkgconf/tuple.c:pkgconf_tuple_parse. For example a .pc file containing a few hundred bytes can expand to one billion bytes. | CVSS3: 5.5 | 1% Низкий | больше 3 лет назад | |
CVE-2023-24023 Mitre: CVE-2023-24023 Bluetooth Vulnerability | 1% Низкий | почти 3 года назад | ||
CVE-2023-23946 GitHub: CVE-2023-23946 mingit Remote Code Execution Vulnerability | 1% Низкий | больше 3 лет назад | ||
CVSS3: 5.4 | 1% Низкий | больше 3 лет назад | ||
CVSS3: 3.5 | 1% Низкий | больше 3 лет назад | ||
CVE-2023-23931 Cipher.update_into can corrupt memory in pyca cryptography | CVSS3: 6.5 | 1% Низкий | около 2 лет назад | |
CVSS3: 4.2 | 0% Низкий | больше 3 лет назад | ||
CVSS3: 7.5 | 2% Низкий | больше 3 лет назад | ||
CVSS3: 7.5 | 2% Низкий | больше 3 лет назад |
Уязвимостей на страницу