Логотип exploitDog
source:"ubuntu"
Консоль
Логотип exploitDog

exploitDog

source:"ubuntu"

Количество 60 973

Количество 60 973

ubuntu логотип

CVE-2025-61725

7 дней назад

[net/mail: excessive CPU consumption in ParseAddress]

EPSS: Низкий
ubuntu логотип

CVE-2025-61724

7 дней назад

[net/textproto: excessive CPU consumption in Reader.ReadResponse]

EPSS: Низкий
ubuntu логотип

CVE-2025-61723

7 дней назад

[encoding/pem: quadratic complexity when parsing some invalid inputs]

EPSS: Низкий
ubuntu логотип

CVE-2025-6170

4 месяца назад

A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful code in rare configurations without modern protections.

CVSS3: 2.5
EPSS: Низкий
ubuntu логотип

CVE-2025-61672

9 дней назад

Synapse is an open source Matrix homeserver implementation. Lack of validation for device keys in Synapse before 1.138.3 and in Synapse 1.139.0 allow an attacker registered on the victim homeserver to degrade federation functionality, unpredictably breaking outbound federation to other homeservers. The issue is patched in Synapse 1.138.3, 1.138.4, 1.139.1, and 1.139.2. Note that even though 1.138.3 and 1.139.1 fix the vulnerability, they inadvertently introduced an unrelated regression. For this reason, the maintainers of Synapse recommend skipping these releases and upgrading straight to 1.138.4 and 1.139.2.

EPSS: Низкий
ubuntu логотип

CVE-2025-61657

10 дней назад

[Insert sticky header labels as text instead of HTML]

EPSS: Низкий
ubuntu логотип

CVE-2025-61656

10 дней назад

[Sanitize attributes unwrapped from data-ve-attributes]

EPSS: Низкий
ubuntu логотип

CVE-2025-61655

10 дней назад

[Properly escape and parse system messages]

EPSS: Низкий
ubuntu логотип

CVE-2025-61654

10 дней назад

[Exclude deleted entries when counting thanks]

EPSS: Низкий
ubuntu логотип

CVE-2025-61653

10 дней назад

[Add authorizeRead check for extracts endpoint]

EPSS: Низкий
ubuntu логотип

CVE-2025-61652

10 дней назад

[In API check user read permissions before showing PageInfo]

EPSS: Низкий
ubuntu логотип

CVE-2025-61646

10 дней назад

[Prevent leaking hidden usernames in Watchlist/RecentChanges]

EPSS: Низкий
ubuntu логотип

CVE-2025-61645

10 дней назад

[Fix i18n XSS in CodexTablePager]

EPSS: Низкий
ubuntu логотип

CVE-2025-61643

10 дней назад

[Don't send suppressed recent changes to RCFeeds]

EPSS: Низкий
ubuntu логотип

CVE-2025-61642

10 дней назад

[Escape submit button label for Codex-based HTMLForms]

EPSS: Низкий
ubuntu логотип

CVE-2025-61641

10 дней назад

[api: Disable maxsize in QueryAllPages in miser mode]

EPSS: Низкий
ubuntu логотип

CVE-2025-61640

10 дней назад

[Parse messages instead of inserting them as HTML]

EPSS: Низкий
ubuntu логотип

CVE-2025-61639

10 дней назад

[Use ManualLogEntry::getDeleted in ::getRecentChange]

EPSS: Низкий
ubuntu логотип

CVE-2025-61638

10 дней назад

[Sanitize data- attributes]

EPSS: Низкий
ubuntu логотип

CVE-2025-61637

10 дней назад

[Escape three system messages used by live preview]

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-61725

[net/mail: excessive CPU consumption in ParseAddress]

7 дней назад
ubuntu логотип
CVE-2025-61724

[net/textproto: excessive CPU consumption in Reader.ReadResponse]

7 дней назад
ubuntu логотип
CVE-2025-61723

[encoding/pem: quadratic complexity when parsing some invalid inputs]

7 дней назад
ubuntu логотип
CVE-2025-6170

A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful code in rare configurations without modern protections.

CVSS3: 2.5
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2025-61672

Synapse is an open source Matrix homeserver implementation. Lack of validation for device keys in Synapse before 1.138.3 and in Synapse 1.139.0 allow an attacker registered on the victim homeserver to degrade federation functionality, unpredictably breaking outbound federation to other homeservers. The issue is patched in Synapse 1.138.3, 1.138.4, 1.139.1, and 1.139.2. Note that even though 1.138.3 and 1.139.1 fix the vulnerability, they inadvertently introduced an unrelated regression. For this reason, the maintainers of Synapse recommend skipping these releases and upgrading straight to 1.138.4 and 1.139.2.

0%
Низкий
9 дней назад
ubuntu логотип
CVE-2025-61657

[Insert sticky header labels as text instead of HTML]

10 дней назад
ubuntu логотип
CVE-2025-61656

[Sanitize attributes unwrapped from data-ve-attributes]

10 дней назад
ubuntu логотип
CVE-2025-61655

[Properly escape and parse system messages]

10 дней назад
ubuntu логотип
CVE-2025-61654

[Exclude deleted entries when counting thanks]

10 дней назад
ubuntu логотип
CVE-2025-61653

[Add authorizeRead check for extracts endpoint]

10 дней назад
ubuntu логотип
CVE-2025-61652

[In API check user read permissions before showing PageInfo]

10 дней назад
ubuntu логотип
CVE-2025-61646

[Prevent leaking hidden usernames in Watchlist/RecentChanges]

10 дней назад
ubuntu логотип
CVE-2025-61645

[Fix i18n XSS in CodexTablePager]

10 дней назад
ubuntu логотип
CVE-2025-61643

[Don't send suppressed recent changes to RCFeeds]

10 дней назад
ubuntu логотип
CVE-2025-61642

[Escape submit button label for Codex-based HTMLForms]

10 дней назад
ubuntu логотип
CVE-2025-61641

[api: Disable maxsize in QueryAllPages in miser mode]

10 дней назад
ubuntu логотип
CVE-2025-61640

[Parse messages instead of inserting them as HTML]

10 дней назад
ubuntu логотип
CVE-2025-61639

[Use ManualLogEntry::getDeleted in ::getRecentChange]

10 дней назад
ubuntu логотип
CVE-2025-61638

[Sanitize data- attributes]

10 дней назад
ubuntu логотип
CVE-2025-61637

[Escape three system messages used by live preview]

10 дней назад

Уязвимостей на страницу