Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 489

Количество 353 489

github логотип

GHSA-25rw-5w3f-v9vr

около 4 лет назад

Cross-site scripting vulnerability in WP Statistics version 12.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-25rv-hrr2-4wx8

около 1 года назад

An authenticated user can modify application state data.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-25rr-x6m2-gphx

3 дня назад

Schreibfaul1 ESP32-audioI2S 3.4.5 has a buffer overflow vulnerability in the MP3Decoder::decode() function of the MP3 decoder due to missing size validation on untrusted mainDataBegin and nSlots values.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-25rr-9xvj-63p7

около 4 лет назад

FastStone Image Viewer 6.2 has a User Mode Write AV at 0x005cb509, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or possibly unspecified other impact.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-25rq-9fcx-x8f3

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Magic Hills Pty Ltd Wonder Slider Lite allows Reflected XSS.This issue affects Wonder Slider Lite: from n/a through 13.9.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-25rp-rjmq-m7jc

4 месяца назад

The Survey plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-25rp-q786-r55q

около 4 лет назад

Reflected Cross-Site Scripting (XSS) exists in the Master File module in SLiMS 8 Akasia 8.3.1 via an admin/modules/master_file/rda_cmc.php?keywords= URI.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-25rp-h46x-2hjm

3 месяца назад

SiYuan: Electron Renderer RCE via decodeURIComponent-driven tooltip XSS in aria-label sink (incomplete fix for CVE-2026-34585)

EPSS: Низкий
github логотип

GHSA-25rp-52g6-gv8j

4 месяца назад

UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-25rm-p4h5-753p

больше 3 лет назад

Incorrect Access Control in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to perform any HTTP request to an unauthenticated page to force the server to generate a SESSION_ID, and using this SESSION_ID an attacker can then perform authenticated requests.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-25rm-72cp-x5mm

больше 2 лет назад

Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-25rm-3r9j-mwmf

больше 1 года назад

PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24263.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-25rj-4799-frmx

около 4 лет назад

PHP remote file inclusion vulnerability in index.php in MediaSlash Gallery allows remote attackers to execute arbitrary PHP code via a URL in the rub parameter (part of the $page_menu variable).

EPSS: Низкий
github логотип

GHSA-25rg-hr6w-2fxx

7 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in osuthorpe Easy Social allows Reflected XSS.This issue affects Easy Social: from n/a through 1.3.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-25rg-cf2m-jvph

около 4 лет назад

The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in the Linux kernel before 4.12 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-25rg-6fcp-95mq

около 4 лет назад

Race condition in the do_add_counters function in netfilter for Linux kernel 2.6.16 allows local users with CAP_NET_ADMIN capabilities to read kernel memory by triggering the race condition in a way that produces a size value that is inconsistent with allocated memory, which leads to a buffer over-read in IPT_ENTRY_ITERATE.

EPSS: Низкий
github логотип

GHSA-25rg-2wrr-633h

9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ipvs: Defer ip_vs_ftp unregister during netns cleanup On the netns cleanup path, __ip_vs_ftp_exit() may unregister ip_vs_ftp before connections with valid cp->app pointers are flushed, leading to a use-after-free. Fix this by introducing a global `exiting_module` flag, set to true in ip_vs_ftp_exit() before unregistering the pernet subsystem. In __ip_vs_ftp_exit(), skip ip_vs_ftp unregister if called during netns cleanup (when exiting_module is false) and defer it to __ip_vs_cleanup_batch(), which unregisters all apps after all connections are flushed. If called during module exit, unregister ip_vs_ftp immediately.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-25rf-wfp7-mv9x

5 месяцев назад

IBM Planning Analytics Advanced Certified Containers 3.1.0 through 3.1.4 could allow a local privileged user to obtain sensitive information from environment variables.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-25rf-gmp9-2p3w

почти 4 года назад

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_message.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-25rf-28xv-w8h2

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: drm/bridge: samsung-dsim: Fix memory leak in error path In samsung_dsim_host_attach(), drm_bridge_add() is called to add the bridge. However, if samsung_dsim_register_te_irq() or pdata->host_ops->attach() fails afterwards, the function returns without removing the bridge, causing a memory leak. Fix this by adding proper error handling with goto labels to ensure drm_bridge_remove() is called in all error paths. Also ensure that samsung_dsim_unregister_te_irq() is called if the attach operation fails after the TE IRQ has been registered. samsung_dsim_unregister_te_irq() function is moved without changes to be before samsung_dsim_host_attach() to avoid forward declaration.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-25rw-5w3f-v9vr

Cross-site scripting vulnerability in WP Statistics version 12.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-25rv-hrr2-4wx8

An authenticated user can modify application state data.

CVSS3: 7.5
0%
Низкий
около 1 года назад
github логотип
GHSA-25rr-x6m2-gphx

Schreibfaul1 ESP32-audioI2S 3.4.5 has a buffer overflow vulnerability in the MP3Decoder::decode() function of the MP3 decoder due to missing size validation on untrusted mainDataBegin and nSlots values.

CVSS3: 7.5
0%
Низкий
3 дня назад
github логотип
GHSA-25rr-9xvj-63p7

FastStone Image Viewer 6.2 has a User Mode Write AV at 0x005cb509, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or possibly unspecified other impact.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-25rq-9fcx-x8f3

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Magic Hills Pty Ltd Wonder Slider Lite allows Reflected XSS.This issue affects Wonder Slider Lite: from n/a through 13.9.

CVSS3: 7.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-25rp-rjmq-m7jc

The Survey plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

CVSS3: 4.4
0%
Низкий
4 месяца назад
github логотип
GHSA-25rp-q786-r55q

Reflected Cross-Site Scripting (XSS) exists in the Master File module in SLiMS 8 Akasia 8.3.1 via an admin/modules/master_file/rda_cmc.php?keywords= URI.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-25rp-h46x-2hjm

SiYuan: Electron Renderer RCE via decodeURIComponent-driven tooltip XSS in aria-label sink (incomplete fix for CVE-2026-34585)

1%
Низкий
3 месяца назад
github логотип
GHSA-25rp-52g6-gv8j

UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

CVSS3: 4.7
0%
Низкий
4 месяца назад
github логотип
GHSA-25rm-p4h5-753p

Incorrect Access Control in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to perform any HTTP request to an unauthenticated page to force the server to generate a SESSION_ID, and using this SESSION_ID an attacker can then perform authenticated requests.

CVSS3: 5.4
1%
Низкий
больше 3 лет назад
github логотип
GHSA-25rm-72cp-x5mm

Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.

CVSS3: 8.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-25rm-3r9j-mwmf

PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24263.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-25rj-4799-frmx

PHP remote file inclusion vulnerability in index.php in MediaSlash Gallery allows remote attackers to execute arbitrary PHP code via a URL in the rub parameter (part of the $page_menu variable).

3%
Низкий
около 4 лет назад
github логотип
GHSA-25rg-hr6w-2fxx

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in osuthorpe Easy Social allows Reflected XSS.This issue affects Easy Social: from n/a through 1.3.

CVSS3: 7.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-25rg-cf2m-jvph

The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in the Linux kernel before 4.12 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table.

CVSS3: 7.1
0%
Низкий
около 4 лет назад
github логотип
GHSA-25rg-6fcp-95mq

Race condition in the do_add_counters function in netfilter for Linux kernel 2.6.16 allows local users with CAP_NET_ADMIN capabilities to read kernel memory by triggering the race condition in a way that produces a size value that is inconsistent with allocated memory, which leads to a buffer over-read in IPT_ENTRY_ITERATE.

0%
Низкий
около 4 лет назад
github логотип
GHSA-25rg-2wrr-633h

In the Linux kernel, the following vulnerability has been resolved: ipvs: Defer ip_vs_ftp unregister during netns cleanup On the netns cleanup path, __ip_vs_ftp_exit() may unregister ip_vs_ftp before connections with valid cp->app pointers are flushed, leading to a use-after-free. Fix this by introducing a global `exiting_module` flag, set to true in ip_vs_ftp_exit() before unregistering the pernet subsystem. In __ip_vs_ftp_exit(), skip ip_vs_ftp unregister if called during netns cleanup (when exiting_module is false) and defer it to __ip_vs_cleanup_batch(), which unregisters all apps after all connections are flushed. If called during module exit, unregister ip_vs_ftp immediately.

CVSS3: 7.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-25rf-wfp7-mv9x

IBM Planning Analytics Advanced Certified Containers 3.1.0 through 3.1.4 could allow a local privileged user to obtain sensitive information from environment variables.

CVSS3: 4.4
0%
Низкий
5 месяцев назад
github логотип
GHSA-25rf-gmp9-2p3w

Simple Cold Storage Management System v1.0 is vulnerable to SQL injection via /csms/classes/Master.php?f=delete_message.

CVSS3: 7.2
1%
Низкий
почти 4 года назад
github логотип
GHSA-25rf-28xv-w8h2

In the Linux kernel, the following vulnerability has been resolved: drm/bridge: samsung-dsim: Fix memory leak in error path In samsung_dsim_host_attach(), drm_bridge_add() is called to add the bridge. However, if samsung_dsim_register_te_irq() or pdata->host_ops->attach() fails afterwards, the function returns without removing the bridge, causing a memory leak. Fix this by adding proper error handling with goto labels to ensure drm_bridge_remove() is called in all error paths. Also ensure that samsung_dsim_unregister_te_irq() is called if the attach operation fails after the TE IRQ has been registered. samsung_dsim_unregister_te_irq() function is moved without changes to be before samsung_dsim_host_attach() to avoid forward declaration.

CVSS3: 5.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу