Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 364 463

Количество 364 463

github логотип

GHSA-23q7-9vq5-jc43

почти 2 года назад

Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This issue affects Escargot: 4.0.0.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-23q7-59jj-2pj4

больше 4 лет назад

SEOmatic for CraftCMS allows Server-Side Template Injection

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-23q7-3w4q-p4fg

около 4 лет назад

The wikifaces package in PyPI v1.0 included a code execution backdoor inserted by a third party.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-23q6-wpc7-6vv9

около 2 лет назад

Cross-site scripting vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script on the web browser of the user who is logging in to the product.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-23q6-mcrh-4x5m

больше 4 лет назад

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-23q6-8qm4-482q

больше 4 лет назад

Digital Guardian Management Console 7.1.2.0015 has an XXE issue.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23q5-m4p6-fg53

больше 3 лет назад

In cs40l2x_cp_trigger_queue_show of cs40l2x.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-224000736References: N/A

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-23q5-hv3c-8qvj

почти 4 года назад

Improper input validation in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Kits before version TY0070 may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-23q5-53ph-6386

больше 4 лет назад

Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not properly iterate through the characters in a text run, which allows remote attackers to execute arbitrary code via a crafted document.

EPSS: Низкий
github логотип

GHSA-23q4-mv34-qff2

почти 4 года назад

A privilege escalation vulnerability was discovered in Avaya IP Office Admin Lite and USB Creator that may potentially allow a local user to escalate privileges. This issue affects Admin Lite and USB Creator 11.1 Feature Pack 2 Service Pack 1 and earlier versions.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-23q4-7p25-c68g

больше 4 лет назад

Use after free issue in kernel while accessing freed mdlog session info and its attributes after closing the session in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 730, SD 820, SD 820A, SD 835, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24

EPSS: Низкий
github логотип

GHSA-23q4-679m-qgxw

7 дней назад

In the Linux kernel, the following vulnerability has been resolved: net: tap: set skb->dev before parsing virtio net header in tap_get_user_xdp() The commit 4f61f133f354 ("net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null") fixed a crash in tap_get_user() by assigning skb->dev before calling tun_vnet_hdr_to_skb(). This is required because virtio_net_hdr_to_skb() may invoke dev_parse_header_protocol(), which dereferences skb->dev. Without the assignment, a NULL pointer dereference can occur. However, tap_get_user_xdp() still parses the virtio-net header before assigning skb->dev. When the vhost TX path passes an XDP buffer containing a GSO virtio-net header but the protocol is set to zero on purpose, tun_vnet_hdr_to_skb() can reach dev_parse_header_protocol() while skb->dev is still NULL, resulting in a crash. Fix this by looking up the tap device and assigning skb->dev before calling tun_vnet_hdr_to_skb(), matching the ordering already used in t...

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-23q3-qw5q-8658

почти 4 года назад

If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application’s context and permissions.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-23q2-8v7r-r2xr

11 дней назад

This issue was addressed through improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-23q2-5gf8-gjpp

больше 2 лет назад

Enabling Authentication does not close all logged in socket connections immediately

EPSS: Низкий
github логотип

GHSA-23q2-54qv-rq5x

2 месяца назад

Kirby: `pages.access` permission is not checked in the pages picker for parent pages

EPSS: Низкий
github логотип

GHSA-23px-mw2p-46qm

почти 3 года назад

Cosmos-SDK Cosmovisor component may be vulnerable to denial of service

EPSS: Низкий
github логотип

GHSA-23px-c43v-54wp

больше 4 лет назад

Pexip Infinity before 18 allows remote Denial of Service (XML parsing).

EPSS: Низкий
github логотип

GHSA-23px-9798-3x5c

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: ocfs2: remove unreasonable unlock in ocfs2_read_blocks Patch series "Misc fixes for ocfs2_read_blocks", v5. This series contains 2 fixes for ocfs2_read_blocks(). The first patch fix the issue reported by syzbot, which detects bad unlock balance in ocfs2_read_blocks(). The second patch fixes an issue reported by Heming Zhao when reviewing above fix. This patch (of 2): There was a lock release before exiting, so remove the unreasonable unlock.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-23pw-5m4p-mjgm

больше 2 лет назад

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not properly sanitise and escape a parameter before outputting it back in pages, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-23q7-9vq5-jc43

Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This issue affects Escargot: 4.0.0.

CVSS3: 9.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-23q7-59jj-2pj4

SEOmatic for CraftCMS allows Server-Side Template Injection

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-23q7-3w4q-p4fg

The wikifaces package in PyPI v1.0 included a code execution backdoor inserted by a third party.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-23q6-wpc7-6vv9

Cross-site scripting vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script on the web browser of the user who is logging in to the product.

CVSS3: 9
1%
Низкий
около 2 лет назад
github логотип
GHSA-23q6-mcrh-4x5m

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-23q6-8qm4-482q

Digital Guardian Management Console 7.1.2.0015 has an XXE issue.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-23q5-m4p6-fg53

In cs40l2x_cp_trigger_queue_show of cs40l2x.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-224000736References: N/A

CVSS3: 6.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-23q5-hv3c-8qvj

Improper input validation in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Kits before version TY0070 may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 6.7
0%
Низкий
почти 4 года назад
github логотип
GHSA-23q5-53ph-6386

Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not properly iterate through the characters in a text run, which allows remote attackers to execute arbitrary code via a crafted document.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-23q4-mv34-qff2

A privilege escalation vulnerability was discovered in Avaya IP Office Admin Lite and USB Creator that may potentially allow a local user to escalate privileges. This issue affects Admin Lite and USB Creator 11.1 Feature Pack 2 Service Pack 1 and earlier versions.

CVSS3: 7.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-23q4-7p25-c68g

Use after free issue in kernel while accessing freed mdlog session info and its attributes after closing the session in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 730, SD 820, SD 820A, SD 835, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24

1%
Низкий
больше 4 лет назад
github логотип
GHSA-23q4-679m-qgxw

In the Linux kernel, the following vulnerability has been resolved: net: tap: set skb->dev before parsing virtio net header in tap_get_user_xdp() The commit 4f61f133f354 ("net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null") fixed a crash in tap_get_user() by assigning skb->dev before calling tun_vnet_hdr_to_skb(). This is required because virtio_net_hdr_to_skb() may invoke dev_parse_header_protocol(), which dereferences skb->dev. Without the assignment, a NULL pointer dereference can occur. However, tap_get_user_xdp() still parses the virtio-net header before assigning skb->dev. When the vhost TX path passes an XDP buffer containing a GSO virtio-net header but the protocol is set to zero on purpose, tun_vnet_hdr_to_skb() can reach dev_parse_header_protocol() while skb->dev is still NULL, resulting in a crash. Fix this by looking up the tap device and assigning skb->dev before calling tun_vnet_hdr_to_skb(), matching the ordering already used in t...

CVSS3: 7.1
0%
Низкий
7 дней назад
github логотип
GHSA-23q3-qw5q-8658

If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application’s context and permissions.

CVSS3: 7.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-23q2-8v7r-r2xr

This issue was addressed through improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.

CVSS3: 4.3
0%
Низкий
11 дней назад
github логотип
GHSA-23q2-5gf8-gjpp

Enabling Authentication does not close all logged in socket connections immediately

больше 2 лет назад
github логотип
GHSA-23q2-54qv-rq5x

Kirby: `pages.access` permission is not checked in the pages picker for parent pages

0%
Низкий
2 месяца назад
github логотип
GHSA-23px-mw2p-46qm

Cosmos-SDK Cosmovisor component may be vulnerable to denial of service

почти 3 года назад
github логотип
GHSA-23px-c43v-54wp

Pexip Infinity before 18 allows remote Denial of Service (XML parsing).

1%
Низкий
больше 4 лет назад
github логотип
GHSA-23px-9798-3x5c

In the Linux kernel, the following vulnerability has been resolved: ocfs2: remove unreasonable unlock in ocfs2_read_blocks Patch series "Misc fixes for ocfs2_read_blocks", v5. This series contains 2 fixes for ocfs2_read_blocks(). The first patch fix the issue reported by syzbot, which detects bad unlock balance in ocfs2_read_blocks(). The second patch fixes an issue reported by Heming Zhao when reviewing above fix. This patch (of 2): There was a lock release before exiting, so remove the unreasonable unlock.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-23pw-5m4p-mjgm

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not properly sanitise and escape a parameter before outputting it back in pages, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVSS3: 6.1
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу