Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-2014-2970
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5139. Reason: This candidate is a duplicate of CVE-2014-5139, and has also been used to refer to an unrelated topic that is currently outside the scope of CVE. This unrelated topic is a LibreSSL code change adding functionality for certain process-bifurcation use cases that might arise in future LibreSSL-based applications. There is no CVE ID associated with this LibreSSL code change. As of 20140730, CVE-2014-5139 is an undisclosed vulnerability in a different product, with ongoing vulnerability coordination that had previously used the CVE-2014-2970 ID N/A N/A 2014-07-31T01:00:00.000Z 2014-07-31T01:57:01.000Z
CVE-2013-5759
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5758. Reason: This candidate is not an independent vulnerability; it is resultant from CVE-2013-5758. Notes: All CVE users should reference CVE-2013-5758 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-08-03T18:00:00.000Z 2014-08-03T17:57:01.000Z
CVE-2014-5157
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5196. Reason: This candidate is a reservation duplicate of CVE-2014-5196. Notes: All CVE users should reference CVE-2014-5196 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-08-13T18:00:00.000Z 2014-08-13T18:57:01.000Z
CVE-2014-3799
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue within the scope of CVE. Notes: none N/A N/A 2014-08-18T10:00:00.000Z 2014-08-18T04:57:00.000Z
CVE-2014-5043
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none N/A N/A 2014-08-18T10:00:00.000Z 2014-08-18T04:57:00.000Z
CVE-2014-0352
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2216. Reason: This candidate is a reservation duplicate of CVE-2014-2216. Notes: All CVE users should reference CVE-2014-2216 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-10T18:00:00.000Z 2014-09-10T18:57:01.000Z
CVE-2014-2943
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2886, CVE-2014-2942. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-2886 and CVE-2014-2942 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-08-15T10:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5522
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6025. Reason: This candidate is a reservation duplicate of CVE-2014-6025. Notes: All CVE users should reference CVE-2014-6025 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-22T10:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5523
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5524. Reason: This candidate is a duplicate of CVE-2014-5524. Notes: All CVE users should reference CVE-2014-5524 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-22T10:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5575
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none N/A N/A 2014-09-22T10:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5619
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5665, CVE-2014-5982. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5665 and CVE-2014-5982 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-09T01:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5718
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5809, CVE-2014-5983. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5809 and CVE-2014-5983 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-09T10:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-5814
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5971, CVE-2014-5984. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5971 and CVE-2014-5984 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-09T01:00:00.000Z 2014-09-22T08:57:01.000Z
CVE-2014-3659
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7169. Reason: This candidate is a reservation duplicate of CVE-2014-7169 because the CNA for this ID did not follow multiple procedures that are intended to minimize duplicate CVE assignments. Notes: All CVE users should reference CVE-2014-7169 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-25T10:00:00.000Z 2014-09-25T05:57:00.000Z
CVE-2014-6809
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6846, CVE-2014-6847. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-6846 and CVE-2014-6847 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-30T17:00:00.000Z 2014-09-30T17:57:00.000Z
CVE-2014-7227
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187. Reason: This candidate is a duplicate of CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187. Notes: All CVE users should reference CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-10-03T18:00:00.000Z 2014-10-03T17:57:01.000Z
CVE-2013-2644
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-2645, CVE-2014-2644. Reason: this ID was intended for one issue, but was mapped to two issues. Notes: All CVE users should consult CVE-2013-2645 and CVE-2014-2644 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-10-05T01:00:00.000Z 2014-10-06T01:57:00.000Z
CVE-2014-3671
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187. Reason: This candidate is a duplicate of CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187. Notes: All CVE users should reference CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-10-13T18:00:00.000Z 2014-10-13T18:57:00.000Z
CVE-2014-6388
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3634. Reason: This candidate is a reservation duplicate of CVE-2014-3634. Notes: All CVE users should reference CVE-2014-3634 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-10-13T18:00:00.000Z 2014-10-13T18:57:00.000Z
CVE-2014-6915
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7046, CVE-2014-7047. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-7046 and CVE-2014-7047 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-10-13T18:00:00.000Z 2014-10-13T18:57:00.000Z
CVE-2014-5530
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5754, CVE-2014-5755, CVE-2014-8538. Reason: This candidate is a duplicate of CVE-2014-5754, CVE-2014-5755, and CVE-2014-8538. Further investigation showed that an applicable library product did not exist. Notes: All CVE users should reference CVE-2014-5754, CVE-2014-5755, and/or CVE-2014-8538 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-09-09T01:00:00.000Z 2014-10-29T18:57:00.000Z
CVE-2014-2937
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3220. Reason: This candidate is a reservation duplicate of CVE-2014-3220. Notes: All CVE users should reference CVE-2014-3220 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-11-06T00:00:00.000Z 2014-11-05T23:57:01.000Z
CVE-2014-8565
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-8518. Reason: This candidate is a duplicate of CVE-2014-8518. Notes: All CVE users should reference CVE-2014-8518 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-11-15T21:00:00.000Z 2014-11-15T20:57:01.000Z
CVE-2014-9246
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9385, CVE-2014-9386. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-9385 and CVE-2014-9386 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-12-15T17:27:00.000Z 2014-12-13T02:57:01.000Z
CVE-2014-2973
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-5753. Reason: This candidate is a duplicate of CVE-2008-5753. Notes: All CVE users should reference CVE-2008-5753 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-12-15T17:27:00.000Z 2014-12-15T04:57:00.000Z
CVE-2009-5027
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-2062. Reason: This candidate is a reservation duplicate of CVE-2010-2062. Notes: All CVE users should reference CVE-2010-2062 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-12-26T20:00:00.000Z 2014-12-26T19:57:00.000Z
CVE-2013-6998
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6870. Reason: This candidate is a duplicate of CVE-2013-6870. Notes: All CVE users should reference CVE-2013-6870 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2014-12-27T18:00:00.000Z 2014-12-30T22:57:01.000Z
CVE-2013-6125
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none N/A N/A 2015-01-05T02:00:00.000Z 2015-01-05T01:57:00.000Z
CVE-2013-6126
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none N/A N/A 2015-01-05T02:00:00.000Z 2015-01-05T01:57:00.000Z
CVE-2014-9492
N/A
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9323. Reason: This candidate is a reservation duplicate of CVE-2014-9323. Notes: All CVE users should reference CVE-2014-9323 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage N/A N/A 2015-01-05T18:00:00.000Z 2015-01-05T16:57:01.000Z
ID CVSS Description Vendor Product Published Updated
ID Description Published Updated
fkie_cve-2005-4123 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.230 2023-11-07T01:58:04.773
fkie_cve-2005-4124 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.247 2023-11-07T01:58:04.993
fkie_cve-2005-4125 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.277 2023-11-07T01:58:05.200
fkie_cve-2005-4127 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… 2005-12-09T11:03:00.000 2023-11-07T01:58:05.417
fkie_cve-2005-4128 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… 2005-12-09T11:03:00.000 2023-11-07T01:58:05.450
fkie_cve-2005-4129 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… 2005-12-09T11:03:00.000 2023-11-07T01:58:05.477
fkie_cve-2005-4265 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4209. Reason: This candid… 2005-12-15T11:03:00.000 2023-11-07T01:58:06.717
fkie_cve-2005-4340 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4206. Reason: This candid… 2005-12-19T03:47:00.000 2023-11-07T01:58:07.273
fkie_cve-2005-4531 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3345. Reason: This candid… 2005-12-28T01:03:00.000 2023-11-07T01:58:09.077
fkie_cve-2005-4535 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.290 2023-11-07T01:58:09.133
fkie_cve-2005-4537 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.307 2023-11-07T01:58:09.360
fkie_cve-2005-4538 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.337 2023-11-07T01:58:09.833
fkie_cve-2005-4539 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.353 2023-11-07T01:58:10.127
fkie_cve-2005-4540 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.387 2023-11-07T01:58:10.333
fkie_cve-2005-4541 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.400 2023-11-07T01:58:10.547
fkie_cve-2005-4542 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.417 2023-11-07T01:58:10.760
fkie_cve-2005-4543 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.447 2023-11-07T01:58:10.963
fkie_cve-2005-4544 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.463 2023-11-07T01:58:11.177
fkie_cve-2005-4561 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was a… 2005-12-31T05:00:00.000 2023-11-07T01:58:11.543
fkie_cve-2005-4562 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was a… 2005-12-31T05:00:00.000 2023-11-07T01:58:11.577
fkie_cve-2005-4633 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4619. Reason: This candid… 2005-12-31T05:00:00.000 2023-11-07T01:58:12.293
fkie_cve-2005-4892 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… 2020-11-05T20:15:14.490 2023-11-07T01:58:15.173
fkie_cve-2005-4893 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… 2020-11-05T20:15:14.567 2023-11-07T01:58:15.387
fkie_cve-2005-4894 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… 2020-11-05T20:15:14.630 2023-11-07T01:58:15.597
fkie_cve-2006-0011 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … 2017-05-11T14:29:03.497 2023-11-07T01:58:16.070
fkie_cve-2006-0016 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… 2021-06-21T14:15:07.657 2023-11-07T01:58:16.327
fkie_cve-2006-0017 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… 2021-06-21T14:15:07.693 2023-11-07T01:58:16.563
fkie_cve-2006-0018 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3899. Reason: This candid… 2005-11-29T21:03:00.000 2023-11-07T01:58:16.770
fkie_cve-2006-0041 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was w… 2017-05-26T21:29:00.183 2023-11-07T01:58:17.217
fkie_cve-2006-0092 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-0992, CVE-2006-0158. Reas… 2006-01-05T11:03:00.000 2023-11-07T01:58:18.077
ID Severity Description Published Updated
ghsa-47qg-q58v-7vrp
UNEDITABLE_SCHEMAS and UNEDITABLE_TABLE_DESCRIPTION_MATCH_RULES not respected by frontend service backend 2020-12-02T18:28:10Z 2020-12-02T02:18:42Z
ghsa-5p28-63mc-cgr9
Cross-Site Scripting bypass in html-purify 2020-12-04T20:04:37Z 2020-12-04T20:02:42Z
ghsa-cvmr-6428-87w9
Cross-Site Scripting in Grav 2020-12-10T23:13:08Z 2020-12-10T23:12:52Z
ghsa-9q64-mpxx-87fg
Open Redirect in ecstatic 2020-04-01T16:35:08Z 2020-12-15T16:51:18Z
ghsa-jc84-3g44-wf2q
Denial of Service in ecstatic 2020-12-15T16:52:17Z 2020-12-15T16:52:06Z
ghsa-m57p-p67h-mq74
6.4 (3.1)
Command Injection Vulnerability in systeminformation 2020-12-16T19:25:00Z 2020-12-16T19:24:51Z
ghsa-ffxg-xm4w-3wg9
9.8 (3.1)
Command Injection in corenlp-js-interface 2020-12-18T18:23:04Z 2020-12-17T22:23:13Z
ghsa-45q2-34rf-mr94
5.3 (3.1)
Code Injection in mquery 2020-12-18T18:23:43Z 2020-12-17T22:54:00Z
ghsa-5fw9-fq32-wv5p
5.6 (3.1)
OS Command Injection in node-notifier 2020-12-21T16:04:07Z 2020-12-21T16:03:51Z
ghsa-5q58-x5h2-v5rx
Authenticated Privilege Escalation 2020-12-21T18:01:08Z 2020-12-21T17:43:25Z
ghsa-cq6h-w3mc-57f4
Information exposure via query strings in URL 2020-12-21T18:01:16Z 2020-12-21T17:46:14Z
ghsa-8pfh-mm2g-hmc3
Authenticated Server Side Request Forgery 2020-12-21T18:01:24Z 2020-12-21T17:46:22Z
ghsa-wmfg-55f9-j8hq
10.0 (3.1)
Server-Side Template Injection 2020-12-24T20:49:34Z 2020-12-24T20:48:30Z
ghsa-h96f-fc7c-9r55
Regex denial of service vulnerability in codesample plugin 2021-01-06T19:25:46Z 2021-01-06T19:25:24Z
ghsa-p4q6-qxjx-8jgp
7.7 (3.1)
Directory Traversal in spring-boot-actuator-logview 2021-01-05T17:29:40Z 2021-01-07T22:28:53Z
ghsa-rj38-87f3-93p6
Downloads Resources over HTTP in limbus-buildgen 2019-02-18T23:42:27Z 2021-01-07T22:31:53Z
ghsa-8j9v-h2vp-2hhv
6.1 (3.1)
XSS in HtmlSanitizer 2021-01-04T18:22:11Z 2021-01-07T22:32:04Z
ghsa-4w46-w44m-3jq3
7.7 (3.1)
Parse Server stores password in plain text 2020-12-28T16:33:17Z 2021-01-07T22:32:25Z
ghsa-r2qc-w64x-6j54
8.7 (3.1)
XSS in Vega 2020-12-30T23:09:21Z 2021-01-07T22:32:50Z
ghsa-r92x-f52r-x54g
7.5 (3.1)
regular expression denial of service (ReDoS) 2020-12-24T20:49:02Z 2021-01-07T22:33:12Z
ghsa-vqqx-jw6p-q3rf
6.1 (3.1)
Cross-Site Scripting in Fluid view helpers 2020-12-21T16:28:11Z 2021-01-07T22:34:28Z
ghsa-w5mp-8p8w-mhh8
9.8 (3.1)
Command injection in connection-tester 2020-12-17T21:00:53Z 2021-01-07T22:35:45Z
ghsa-85rr-4rh9-hhwh
7.5 (3.1)
Memory leak in Nanopb 2020-11-25T16:53:27Z 2021-01-07T22:39:39Z
ghsa-pfj3-56hm-jwq5
7.9 (3.1)
Template injection in cron-utils 2020-11-24T23:48:38Z 2021-01-07T22:39:49Z
ghsa-4v2w-h9jm-mqjg
8.1 (3.1)
Prototype Pollution in systeminformation 2020-11-27T16:07:15Z 2021-01-07T22:40:03Z
ghsa-r2j6-p67h-q639
8.1 (3.1)
Secret disclosure when containing characters that become URI encoded 2020-11-18T21:19:14Z 2021-01-07T22:41:34Z
ghsa-58w4-w77w-qv3w
8.7 (3.1)
Reflected XSS with parameters in PostComment 2020-11-16T21:23:29Z 2021-01-07T22:42:05Z
ghsa-j977-g5vj-j27g
9.6 (3.1)
Cross-Site Scripting in scratch-svg-renderer 2020-11-09T14:21:17Z 2021-01-07T22:49:01Z
ghsa-wpww-4jf4-4hx8
7.3 (3.1)
Edit feed settings and others, Cross Site Scripting(XSS) Vulnerability in Latest Release 4.4.0 2020-11-04T21:08:38Z 2021-01-07T22:49:25Z
ghsa-fw5q-j9p4-3vxg
7.7 (3.1)
Blog comment posting, Cross Site Scripting(XSS) Vulnerability in Latest Release 4.4.0 2020-10-30T19:10:20Z 2021-01-07T22:49:33Z
ID Severity Description Package Published Updated
pysec-2018-3
An issue was discovered in Django 2.1 before 2.1.2, in which unprivileged users can read … django 2018-10-02T18:29:00Z 2021-06-10T06:50:43.349902Z
pysec-2018-19
transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.… paramiko 2018-03-13T18:29:00Z 2021-06-10T06:50:48.065198Z
pysec-2018-22
OpenKMIP PyKMIP version All versions before 0.8.0 contains a CWE 399: Resource Management… pykmip 2018-12-20T17:29:00Z 2021-06-10T06:50:52.184344Z
pysec-2018-24
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Fai… pyopenssl 2018-10-08T15:29:00Z 2021-06-10T06:50:57.188381Z
pysec-2018-32
urllib3 before version 1.23 does not remove the Authorization HTTP header when following … urllib3 2018-12-11T17:29:00Z 2021-06-10T06:51:03.467032Z
pysec-2018-2
django.middleware.common.CommonMiddleware in Django 1.11.x before 1.11.15 and 2.0.x befor… django 2018-08-03T17:29:00Z 2021-06-10T06:51:09.426505Z
pysec-2018-20
privacyIDEA version 2.23.1 and earlier contains a Improper Input Validation vulnerability… privacyidea 2018-10-08T15:29:00Z 2021-06-10T06:51:13.416740Z
pysec-2018-30
SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allow remote attackers to byp… salt 2018-10-24T22:29:00Z 2021-06-10T06:51:17.561337Z
pysec-2018-17
Jupyter Notebook before 5.7.1 allows XSS via an untrusted notebook because nbconvert resp… notebook 2018-11-18T17:29:00Z 2021-06-10T06:51:21.489049Z
pysec-2019-143
The LDAP auth backend (airflow.contrib.auth.backends.ldap_auth) prior to Apache Airflow 1… apache-airflow 2019-01-23T17:29:00Z 2021-06-10T06:51:25.502672Z
pysec-2018-8
io/mongo/parser.py in Eve (aka pyeve) before 0.7.5 allows remote attackers to execute arb… eve 2018-03-14T12:29:00Z 2021-06-10T06:51:29.570871Z
pysec-2019-144
An issue was discovered in the arrayfire crate before 3.6.0 for Rust. Addition of the rep… arrayfire 2019-08-26T18:15:00Z 2021-06-10T06:51:33.535067Z
pysec-2018-27
qutebrowser before version 1.4.1 is vulnerable to a cross-site request forgery flaw that … qutebrowser 2018-07-12T12:29:00Z 2021-06-10T06:51:37.378319Z
pysec-2018-11
Luigi version prior to version 2.8.0; after commit 53b52e12745075a8acc016d33945d9d6a7a6aa… luigi 2018-12-20T15:29:00Z 2021-06-10T06:51:41.493009Z
pysec-2018-15
An issue was discovered in Mayan EDMS before 3.0.3. The Tags app has XSS because tag labe… mayan-edms 2018-09-03T19:29:00Z 2021-06-10T06:51:46.544830Z
pysec-2018-10
Kotti before 1.3.2 and 2.x before 2.0.0b2 has CSRF in the local roles implementation, as … kotti 2018-04-09T07:29:00Z 2021-06-10T06:51:50.431238Z
pysec-2019-141
ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure f… ansible 2019-01-03T15:29:00Z 2021-06-10T06:51:54.692225Z
pysec-2018-9
** DISPUTED ** OpenStack Keystone through 14.0.1 has a user enumeration vulnerability bec… keystone 2018-12-17T07:29:00Z 2021-06-10T06:51:56.696140Z
pysec-2018-26
qutebrowser version introduced in v0.11.0 (1179ee7a937fb31414d77d9970bac21095358449) cont… qutebrowser 2018-06-26T16:29:00Z 2021-06-10T06:51:59.879286Z
pysec-2018-21
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, re… pycryptodome 2018-08-20T00:29:00Z 2021-06-10T06:52:01.279206Z
pysec-2018-18
Jupyter Notebook before 5.7.2 allows XSS via a crafted directory name because notebook/st… notebook 2018-11-18T17:29:00Z 2021-06-10T06:52:01.452566Z
pysec-2019-142
In Apache Airflow before 1.10.2, a malicious admin user could edit the state of objects i… apache-airflow 2019-02-27T18:29:00Z 2021-06-10T06:52:05.219935Z
pysec-2018-6
An issue was discovered in Django 2.0 before 2.0.3, 1.11 before 1.11.11, and 1.8 before 1… django 2018-03-09T20:29:00Z 2021-06-10T06:52:11.564894Z
pysec-2021-96
This affects the package Flask-Unchained before 0.9.0. When using the the _validate_redir… flask-unchained 2021-06-11T00:15:00Z 2021-06-15T05:47:49.199835Z
pysec-2018-7
webhooks/base.py in Anymail (aka django-anymail) before 1.2.1 is prone to a timing attack… django-anymail 2018-02-03T21:29:00Z 2021-06-16T00:03:22.915097Z
pysec-2018-4
django.contrib.auth.forms.AuthenticationForm in Django 2.0 before 2.0.2, and 1.11.8 and 1… django 2018-02-05T03:29:00Z 2021-06-16T00:03:23.096188Z
pysec-2018-5
An issue was discovered in Django 2.0 before 2.0.3, 1.11 before 1.11.11, and 1.8 before 1… django 2018-03-09T20:29:00Z 2021-06-16T00:03:23.200365Z
pysec-2018-12
An issue was discovered in lxml before 4.2.5. lxml/html/clean.py in the lxml.html.clean m… lxml 2018-12-02T10:29:00Z 2021-06-16T00:03:23.627691Z
pysec-2018-13
An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode … markdown2 2018-01-18T21:29:00Z 2021-06-16T00:03:23.657711Z
pysec-2018-16
An issue was discovered in Mayan EDMS before 3.0.2. The Appearance app sets window.locati… mayan-edms-ng 2018-09-03T19:29:00Z 2021-06-16T00:03:23.682256Z
ID Description Type
ID Description Updated
gsd-2019-18848 The json-jwt gem before 1.11.0 for Ruby lacks an element count during the splitting of a … 2019-11-14T00:00:00.000Z
gsd-2019-18978 An issue was discovered in the rack-cors (aka Rack CORS Middleware) gem before 1.0.4 for … 2019-11-15T00:00:00.000Z
gsd-2019-16770 A poorly-behaved client could use keepalive requests to monopolize Puma's reactor and cre… 2019-12-05T00:00:00.000Z
gsd-2019-16779 There was a race condition around persistent connections, where a connection which is int… 2019-12-16T00:00:00.000Z
gsd-2019-16782 There's a possible information leak / session hijack vulnerability in Rack. Attackers ma… 2019-12-18T00:00:00.000Z
gsd-2020-5216 If user-supplied input was passed into append/override_content_security_policy_directives… 2020-01-23T00:00:00.000Z
gsd-2020-5217 If user-supplied input was passed into append/override_content_security_policy_directives… 2020-01-23T00:00:00.000Z
gsd-2020-7981 sql.rb in Geocoder allows Boolean-based SQL injection when within_bounding_box is used in… 2020-01-25T00:00:00.000Z
gsd-2020-5241 matestack-ui-core does not excape strings by default and does not cover this in the docs.… 2020-02-10T00:00:00.000Z
gsd-2020-7595 Nokogiri has backported the patch for CVE-2020-7595 into its vendored version of libxml2… 2020-02-12T00:00:00.000Z
gsd-2019-10780 BibTeX-ruby before 5.1.0 allows shell command injection due to unsanitized user input bei… 2020-02-14T00:00:00.000Z
gsd-2020-5247 If an application using Puma allows untrusted input in a response header, an attacker can… 2020-02-27T00:00:00.000Z
gsd-2020-5249 ### Impact If an application using Puma allows untrusted input in an early-hints header, … 2020-03-03T00:00:00.000Z
gsd-2020-5243 ### Impact Some regexes are vulnerable to regular expression denial of service (REDoS) du… 2020-03-10T00:00:00.000Z
gsd-2020-36190 RailsAdmin (aka rails_admin) before 1.4.3 and 2.x before 2.0.2 allows XSS via nested forms. 2020-03-14T00:00:00.000Z
gsd-2020-5257 In Administrate (rubygem) before version 0.13.0, when sorting by attributes on a dashboar… 2020-03-14T00:00:00.000Z
gsd-2020-10663 There is an unsafe object creation vulnerability in the json gem bundled with Ruby. This … 2020-03-19T00:00:00.000Z
gsd-2020-5267 There is a possible XSS vulnerability in ActionView's JavaScript literal escape helpers. … 2020-03-19T00:00:00.000Z
gsd-2015-4411 The Moped::BSON::ObjecId.legal? method in mongodb/bson-ruby before 3.0.4 as used in rubyg… 2020-04-29T00:00:00.000Z
gsd-2020-11020 On 20 April 2020 it was reported to me that the potential for authentication bypass exist… 2020-04-29T00:00:00.000Z
gsd-2020-11023 ## Impact Passing HTML containing `<option>` elements from untrusted sources - even afte… 2020-04-29T00:00:00.000Z
gsd-2020-10187 Information disclosure vulnerability. Allows an attacker to see all Doorkeeper::Applicati… 2020-05-02T00:00:00.000Z
gsd-2020-8151 activeresource contains a lack of encoding flaw in the element_path function of lib/activ… 2020-05-05T00:00:00.000Z
gsd-2020-8159 There is a vulnerability in the actionpack-page_caching gem that allows an attacker to wr… 2020-05-06T00:00:00.000Z
gsd-2020-11052 ### Impact Brute force vulnerability when using password authentication via Sorcery. The … 2020-05-07T00:00:00.000Z
gsd-2020-8161 There was a possible directory traversal vulnerability in the Rack::Directory app that is… 2020-05-12T00:00:00.000Z
gsd-2020-8163 There was a vulnerability in versions of Rails prior to 5.0.1 that would allow an attacke… 2020-05-15T00:00:00.000Z
gsd-2020-8162 There is a vulnerability in ActiveStorage's S3 adapter that allows the Content-Length of … 2020-05-18T00:00:00.000Z
gsd-2020-8164 There is a strong parameters bypass vector in ActionPack. Versions Affected: rails <= 6… 2020-05-18T00:00:00.000Z
gsd-2020-8165 There is potentially unexpected behaviour in the MemCacheStore and RedisCacheStore where,… 2020-05-18T00:00:00.000Z
ID Description Published Updated
mal-2022-413 Malicious code in @manomano-toolbox/catalog (npm) 2022-06-09T08:52:16Z 2022-06-09T08:52:17Z
mal-2022-417 Malicious code in @manomano-toolbox/pim-management (npm) 2022-06-09T08:52:09Z 2022-06-09T08:52:17Z
mal-2022-607 Malicious code in @spinak/iac-lib (npm) 2022-06-09T08:52:16Z 2022-06-09T08:52:17Z
mal-2022-415 Malicious code in @manomano-toolbox/components (npm) 2022-06-09T08:52:37Z 2022-06-09T08:52:37Z
mal-2022-414 Malicious code in @manomano-toolbox/commercial-operations (npm) 2022-06-09T08:52:42Z 2022-06-09T08:52:42Z
mal-2022-412 Malicious code in @manomano-toolbox/async-exports (npm) 2022-06-09T08:54:07Z 2022-06-09T08:54:08Z
mal-2022-2025 Malicious code in colorss-v11 (npm) 2022-06-10T04:03:29Z 2022-06-10T04:03:29Z
mal-2022-3009 Malicious code in ferris-design-tokens (npm) 2022-06-10T04:04:54Z 2022-06-10T04:04:54Z
mal-2022-6533 Malicious code in testte (npm) 2022-06-10T04:05:44Z 2022-06-10T04:05:45Z
mal-2022-6968 Malicious code in vpc-stack-with-issues (npm) 2022-06-10T04:05:44Z 2022-06-10T04:05:45Z
mal-2022-2004 Malicious code in colorred (npm) 2022-06-10T04:07:59Z 2022-06-10T04:08:00Z
mal-2022-2534 Malicious code in dist-sidr (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-5176 Malicious code in package-icon (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-5187 Malicious code in packages-icons (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-3758 Malicious code in icons-package (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-4127 Malicious code in kbrstore (npm) 2022-06-13T05:38:56Z 2022-06-13T05:38:56Z
mal-2022-5182 Malicious code in package-show (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-6344 Malicious code in subek (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-3755 Malicious code in iconion-package (npm) 2022-06-13T05:38:56Z 2022-06-13T05:39:03Z
mal-2022-5183 Malicious code in package-sidr (npm) 2022-06-13T05:38:56Z 2022-06-13T05:39:03Z
mal-2022-2260 Malicious code in cs-connection-hub (npm) 2022-06-13T05:46:00Z 2022-06-13T05:46:01Z
mal-2022-6980 Malicious code in vso-service-worker (npm) 2022-06-13T05:46:01Z 2022-06-13T05:46:01Z
mal-2022-6981 Malicious code in vso-service-worker-client (npm) 2022-06-13T05:46:01Z 2022-06-13T05:46:01Z
mal-2022-6982 Malicious code in vso-splash-screen-terminals (npm) 2022-06-13T05:46:01Z 2022-06-13T05:46:01Z
mal-2022-6983 Malicious code in vso-ts-agent (npm) 2022-06-13T05:46:00Z 2022-06-13T05:46:01Z
mal-2022-6984 Malicious code in vso-workbench (npm) 2022-06-13T05:46:01Z 2022-06-13T05:46:01Z
mal-2022-2334 Malicious code in dashboard-modules (npm) 2022-06-13T05:48:00Z 2022-06-13T05:48:00Z
mal-2022-3656 Malicious code in holvi-validation (npm) 2022-06-13T05:47:59Z 2022-06-13T05:48:00Z
mal-2022-5251 Malicious code in paytm-kafka-rest (npm) 2022-06-13T05:48:00Z 2022-06-13T05:48:00Z
mal-2022-5510 Malicious code in ptmproc (npm) 2022-06-13T05:48:00Z 2022-06-13T05:48:00Z
ID Description Published Updated
bit-gitlab-2020-26408 2024-03-06T11:21:18.348Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26409 2024-03-06T11:21:17.046Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26411 2024-03-06T11:21:15.756Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26412 2024-03-06T11:21:14.494Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26413 2024-03-06T11:21:13.259Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26414 2024-03-06T11:21:12.021Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26415 2024-03-06T11:21:10.769Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26416 2024-03-06T11:21:09.546Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-26417 2024-03-06T11:21:08.327Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-5197 2024-03-06T11:21:07.081Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-6832 2024-03-06T11:21:05.852Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-6833 2024-03-06T11:21:04.610Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-7966 2024-03-06T11:21:03.403Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-7967 2024-03-06T11:21:02.172Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-7968 2024-03-06T11:21:00.945Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-7972 2024-03-06T11:20:57.233Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-7973 2024-03-06T11:20:56.018Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-8113 2024-03-06T11:20:48.428Z 2025-04-03T14:40:37.652Z
bit-gitlab-2020-8795 2024-03-06T11:20:45.895Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22166 2024-03-06T11:20:44.620Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22167 2024-03-06T11:20:43.400Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22168 2024-03-06T11:20:42.158Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22169 2024-03-06T11:20:40.885Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22170 2024-03-06T11:20:39.636Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22171 2024-03-06T11:20:38.404Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22172 2024-03-06T11:20:37.155Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22176 2024-03-06T11:20:34.616Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22177 2024-03-06T11:20:33.346Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22178 2024-03-06T11:20:32.111Z 2025-04-03T14:40:37.652Z
bit-gitlab-2021-22179 2024-03-06T11:20:30.856Z 2025-04-03T14:40:37.652Z
ID Description Published Updated
drupal-contrib-2025-037 2025-04-16T16:25:35.000Z 2025-04-16T16:25:35.000Z
drupal-contrib-2025-038 2025-04-16T16:25:45.000Z 2025-04-16T16:25:45.000Z
drupal-contrib-2025-039 2025-04-16T16:25:56.000Z 2025-04-16T16:25:56.000Z
drupal-contrib-2025-040 2025-04-16T16:26:13.000Z 2025-04-16T16:26:13.000Z
drupal-contrib-2025-042 2025-04-23T16:58:51.000Z 2025-04-23T16:58:51.000Z
drupal-contrib-2025-043 2025-04-23T16:59:01.000Z 2025-04-23T16:59:01.000Z
drupal-contrib-2025-044 2025-04-23T16:59:11.000Z 2025-04-23T16:59:11.000Z
drupal-contrib-2025-045 2025-04-23T16:59:19.000Z 2025-04-23T16:59:19.000Z
drupal-contrib-2025-046 2025-04-23T16:59:33.000Z 2025-04-23T16:59:33.000Z
drupal-contrib-2025-033 2025-04-09T17:04:56.000Z 2025-04-29T07:18:22.000Z
drupal-contrib-2025-047 2025-05-07T17:06:16.000Z 2025-05-07T17:06:16.000Z
drupal-contrib-2025-052 2025-05-07T17:07:14.000Z 2025-05-07T17:16:21.000Z
drupal-contrib-2025-053 2025-05-07T17:07:22.000Z 2025-05-07T17:16:27.000Z
drupal-contrib-2025-054 2025-05-07T17:07:32.000Z 2025-05-07T17:16:32.000Z
drupal-contrib-2025-055 2025-05-07T17:07:46.000Z 2025-05-07T17:16:36.000Z
drupal-contrib-2025-056 2025-05-07T17:08:31.000Z 2025-05-07T17:16:40.000Z
drupal-contrib-2025-060 2025-05-14T18:05:04.000Z 2025-05-14T18:05:04.000Z
drupal-contrib-2025-061 2025-05-14T18:05:13.000Z 2025-05-14T18:05:13.000Z
drupal-contrib-2025-062 2025-05-14T18:05:22.000Z 2025-05-14T18:05:22.000Z
drupal-contrib-2025-063 2025-05-14T18:05:32.000Z 2025-05-14T18:05:32.000Z
drupal-contrib-2025-057 2025-05-14T18:04:31.000Z 2025-05-14T19:39:43.000Z
drupal-contrib-2025-064 2025-05-21T17:28:11.000Z 2025-05-21T17:28:11.000Z
drupal-contrib-2025-065 2025-05-21T17:28:31.000Z 2025-05-21T17:28:31.000Z
drupal-contrib-2025-066 2025-05-21T17:28:47.000Z 2025-05-21T17:28:47.000Z
drupal-contrib-2025-067 2025-05-21T17:28:55.000Z 2025-05-21T17:28:55.000Z
drupal-contrib-2025-068 2025-05-21T17:29:14.000Z 2025-05-21T17:29:14.000Z
drupal-contrib-2025-076 2025-05-28T17:46:09.000Z 2025-05-29T18:15:56.000Z
drupal-contrib-2025-075 2025-05-28T17:45:37.000Z 2025-05-29T18:16:19.000Z
drupal-contrib-2025-074 2025-05-28T17:44:33.000Z 2025-05-29T18:16:36.000Z
drupal-contrib-2025-073 2025-05-28T17:44:12.000Z 2025-05-29T18:16:49.000Z
ID Description Updated
ID Description Published Updated
jvndb-2008-000043 K's CGI Access Log Kaiseki (jcode.pl) vulnerable to cross-site scripting 2008-07-29T14:56+09:00 2008-07-29T14:56+09:00
jvndb-2008-000044 K's CGI Access Log Kaiseki (Jcode.pm) vulnerable to cross-site scripting 2008-07-29T14:56+09:00 2008-07-29T14:56+09:00
jvndb-2008-000045 Geeklog Forum Plugin vulnerable to cross-site scripting 2008-07-29T14:57+09:00 2008-07-29T14:57+09:00
jvndb-2008-001514 Cross-Site Scripting Vulnerability in Hitachi Collaboration - Online Community Management 2008-07-30T13:46+09:00 2008-07-30T13:46+09:00
jvndb-2008-000037 Multiple Panasonic Communications Co., Ltd. network cameras vulnerable to cross-site scripting 2008-08-04T14:34+09:00 2008-08-04T14:34+09:00
jvndb-2008-000050 Virus Security and Virus Security ZERO denial of service (DoS) vulnerability 2008-08-14T18:15+09:00 2008-08-14T18:15+09:00
jvndb-2008-000046 La!cooda WIZ and LacoodaST vulnerable to cross-site request forgery 2008-09-02T16:58+09:00 2008-09-02T16:58+09:00
jvndb-2008-000047 LacoodaST from SpaceTag, Inc. session fixation vulnerability 2008-09-02T17:01+09:00 2008-09-02T17:01+09:00
jvndb-2008-000048 La!cooda WIZ and LacoodaST vulnerable to cross-site scripting 2008-09-02T17:02+09:00 2008-09-02T17:02+09:00
jvndb-2008-000049 Vulnerability in La!cooda WIZ and LacoodaST allowing an arbitrary PHP script execution 2008-09-02T17:03+09:00 2008-09-02T17:03+09:00
jvndb-2008-000053 mysql-lists from AquaGardenSoft Co.,Ltd. vulnerable to cross-site scripting 2008-09-02T17:05+09:00 2008-09-02T17:05+09:00
jvndb-2008-000054 Blogn vulnerable to cross-site request forgery 2008-09-02T17:22+09:00 2008-09-02T17:22+09:00
jvndb-2008-000055 Blogn vulnerable to cross-site scripting 2008-09-02T17:22+09:00 2008-09-02T17:22+09:00
jvndb-2008-001575 Fujitsu Interstage Application Server Single Sign-On Buffer Overflow Vulnerability 2008-09-03T12:33+09:00 2008-09-03T12:33+09:00
jvndb-2008-001584 Hitachi JP1/File Transmission Server/FTP Transmission Failure Problem 2008-09-05T12:23+09:00 2008-09-05T12:23+09:00
jvndb-2008-001585 Hitachi JP1/File Transmission Server/FTP Unauthorized File Permission Change Vulnerability 2008-09-05T12:24+09:00 2008-09-05T12:24+09:00
jvndb-2008-000052 Webservice-DIC shop_v50 and shop_v52 vulnerable to cross-site scripting 2008-09-08T17:01+09:00 2008-09-08T17:01+09:00
jvndb-2008-001613 Fujitsu Interstage Application Server Access Control Update Problem 2008-09-09T16:21+09:00 2008-09-09T16:21+09:00
jvndb-2008-001614 JP1/NETM/DM SubManager and JP1/NETM/DM Client Process Termination Vulnerability 2008-09-09T16:21+09:00 2008-09-09T16:21+09:00
jvndb-2008-000056 Movable Type vulnerable to cross-site scripting 2008-09-10T11:28+09:00 2008-09-10T11:28+09:00
jvndb-2008-000057 Sound Master 2nd from High Norm vulnerable to cross-site scripting 2008-09-10T11:28+09:00 2008-09-10T11:28+09:00
jvndb-2008-000058 Multiple Tor World CGI scripts vulnerable to arbitrary script execution 2008-09-18T11:48+09:00 2008-09-18T11:48+09:00
jvndb-2008-000059 Kantan WEB Server directory traversal vulnerability 2008-09-22T12:26+09:00 2008-09-22T12:26+09:00
jvndb-2008-000060 Kantan WEB Server cross-site scripting vulnerability 2008-09-22T12:26+09:00 2008-09-22T12:26+09:00
jvndb-2008-001665 Data Transfer Control Process Cessation Issue in XFIT/S/JCA and XFIT/S/ZGN 2008-09-24T12:03+09:00 2008-09-24T12:03+09:00
jvndb-2008-000061 phpMyAdmin cross-site scripting vulnerability 2008-09-26T16:37+09:00 2008-09-26T16:37+09:00
jvndb-2008-000064 EC-CUBE cross-site scripting vulnerability 2008-10-01T16:31+09:00 2008-10-01T16:31+09:00
jvndb-2008-000065 EC-CUBE vulnerable to SQL injection 2008-10-01T16:31+09:00 2008-10-01T16:31+09:00
jvndb-2008-000062 EC-CUBE cross-site scripting vulnerability 2008-10-01T16:32+09:00 2008-10-01T16:32+09:00
jvndb-2008-000063 EC-CUBE cross-site scripting vulnerability 2008-10-01T16:32+09:00 2008-10-01T16:32+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2015-00274 PHPKIT WCMS 'include.php'跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00275 ProjectSend跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00276 Codiad short_name跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00277 Cisco WebEx Meetings Server信息泄露漏洞(CNVD-2015-00277) 2015-01-13 2015-01-14
cnvd-2015-00278 CHICKEN 'data-structures-tests.scm'远程缓冲区溢出漏洞 2015-01-13 2015-01-14
cnvd-2015-00279 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00279) 2015-01-12 2015-01-14
cnvd-2015-00280 TR-069自动配置服务器任意代码执行漏洞( CNVD-2015-00280) 2015-01-12 2015-01-14
cnvd-2015-00281 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00281) 2015-01-12 2015-01-14
cnvd-2015-00282 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00282) 2015-01-12 2015-01-14
cnvd-2015-00283 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00283) 2015-01-12 2015-01-14
cnvd-2015-00284 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00284) 2015-01-12 2015-01-14
cnvd-2015-00285 多个产品UEFI系统本地安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00286 Linux Kernel isofs信息泄露漏洞 2015-01-09 2015-01-14
cnvd-2015-00287 xbindkeys-config '/tmp/xbindkeysrc-tmp'本地临时文件创建漏洞 2015-01-09 2015-01-14
cnvd-2015-00288 Intel Chipsets本地竞争条件安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00289 ZTE MF19存在多个漏洞 2015-01-13 2015-01-14
cnvd-2015-00290 多个BlackBerry产品本地安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00291 p7zip符号链接目录遍历漏洞 2015-01-09 2015-01-14
cnvd-2015-00321 多个IBM产品存在远程拒绝服务漏洞 2015-01-14 2015-01-15
cnvd-2015-00322 多个IBM产品存在多个目录遍历漏洞 2015-01-14 2015-01-15
cnvd-2015-00323 多个IBM产品存在XML外部实体信息泄露漏洞 2015-01-14 2015-01-15
cnvd-2015-00324 odata4j XML外部实体注入漏洞 2015-01-14 2015-01-15
cnvd-2015-00325 HP Insight Control Server存在未明跨站脚本漏洞 2015-01-14 2015-01-15
cnvd-2015-00326 e107 'usersettings.php'跨站脚本漏洞 2015-01-14 2015-01-15
cnvd-2015-00327 Condor任意代码执行漏洞 2015-01-14 2015-01-15
cnvd-2015-00328 Ansible Tower验证绕过漏洞 2015-01-14 2015-01-15
cnvd-2015-00329 Ansible Tower 'is_superuser'参数远程权限提升漏洞 2015-01-14 2015-01-15
cnvd-2015-00330 Ansible Tower存在多个跨站脚本漏洞 2015-01-14 2015-01-15
cnvd-2015-00331 Kodi跨站请求伪造漏洞 2015-01-14 2015-01-15
cnvd-2015-00332 Adobe Flash Player and AIR远程代码执行漏洞(CNVD-2015-00332) 2015-01-14 2015-01-15
ID Description Published Updated
bdu:2015-00042 Уязвимость мультимедийного пакета Apple QuickTime, позволяющая удаленному злоумышленнику … 05.07.2016 28.11.2016
bdu:2015-00043 Уязвимость системы управления базами данных Oracle Database Server, позволяющая удаленном… 05.07.2016 28.11.2016
bdu:2015-00044 Уязвимость системы управления базами данных Oracle Database Server, позволяющая удаленном… 05.07.2016 28.11.2016
bdu:2015-00047 Уязвимость почтового сервера Dovecot, позволяющая удаленному злоумышленнику вызвать отказ… 05.07.2016 28.11.2016
bdu:2015-00048 Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая злоумышленнику вызвать отк… 05.07.2016 28.11.2016
bdu:2015-00051 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику вызвать о… 05.07.2016 28.11.2016
bdu:2015-00052 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику вызвать … 05.07.2016 28.11.2016
bdu:2015-00054 Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику вызвать отказ в об… 05.07.2016 28.11.2016
bdu:2015-00055 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику вызвать о… 05.07.2016 28.11.2016
bdu:2015-00056 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику вызвать о… 05.07.2016 28.11.2016
bdu:2015-00057 Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику выполнить произвольный код 05.07.2016 28.11.2016
bdu:2015-00059 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00060 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00062 Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… 05.07.2016 28.11.2016
bdu:2015-00063 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00064 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00066 Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… 05.07.2016 28.11.2016
bdu:2015-00067 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00068 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00069 Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику выполнить произвольный… 05.07.2016 28.11.2016
bdu:2015-00070 Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… 05.07.2016 28.11.2016
bdu:2015-00071 Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00072 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00074 Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… 05.07.2016 28.11.2016
bdu:2015-00076 Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… 05.07.2016 28.11.2016
bdu:2015-00077 Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… 05.07.2016 28.11.2016
bdu:2015-00078 Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… 05.07.2016 28.11.2016
bdu:2015-00079 Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… 05.07.2016 28.11.2016
bdu:2015-00080 Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… 05.07.2016 28.11.2016
bdu:2015-00081 Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… 05.07.2016 28.11.2016
ID Description Published Updated
certa-2002-avi-083 Vulnérabilités de la pile TCP/IP de FreeBSD 2002-04-19T00:00:00.000000 2002-04-19T00:00:00.000000
certa-2002-avi-039 Vulnérabilité de SNMP sur Compaq 2002-02-21T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-084 Vulnérabilités dans Lotus Domino 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-085 Vulnérabilité dans Oracle9i Database Server 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-086 Vulnérabilité dans Oracle E-Business 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2001-avi-084 Vulnérabilité dans les serveurs RPC sous Windows 2001-07-27T00:00:00.000000 2002-04-24T00:00:00.000000
certa-2002-avi-069 Vulnérabilités des agents SNMP sous IRIX 2002-04-04T00:00:00.000000 2002-04-25T00:00:00.000000
certa-2002-avi-087 Vulnérabilité de l'éditeur de méls de Microsoft Outlook 2002-04-26T00:00:00.000000 2002-04-26T00:00:00.000000
certa-2002-avi-088 Vulnérabilité de sudo 2002-04-26T00:00:00.000000 2002-04-26T00:00:00.000000
certa-2002-avi-089 Vulnérabilité du service nsd sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-090 Vulnérabilité de la commande cpr sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-091 Multiples vulnérabilités de cachefsd sous Solaris 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-092 Vulnérabilité du service pmcd sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-093 Vulnérabilité de /dev/ipfilter sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-094 Vulnérabilité sur RealSecure Network Sensor 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-095 Vulnérabilités d'admintool sous Solaris 2002-05-03T00:00:00.000000 2002-05-03T00:00:00.000000
certa-2002-avi-097 Vulnérabilité du contrôle ActiveX MSN Chat 2002-05-13T00:00:00.000000 2002-05-13T00:00:00.000000
certa-2002-avi-098 Vulnérabilité du contrôle ActiveX Macromedia Flash Player version 6 revision 23 2002-05-13T00:00:00.000000 2002-05-13T00:00:00.000000
certa-2002-avi-099 Vulnérabilité du logiciel de messagerie Eudora 5.1 et versions antérieures 2002-05-15T00:00:00.000000 2002-05-15T00:00:00.000000
certa-2002-avi-100 Vulnérabilité sur Netfilter (iptables) 2002-05-15T00:00:00.000000 2002-05-15T00:00:00.000000
certa-2002-avi-101 Multiples vulnérabilités dans Internet Explorer 2002-05-16T00:00:00.000000 2002-05-16T00:00:00.000000
certa-2002-avi-102 Vulnérabilité des commutateurs CSS 11000 de CISCO 2002-05-16T00:00:00.000000 2002-05-16T00:00:00.000000
certa-2002-avi-105 Vulnérabilités sur Webmin 2002-05-17T00:00:00.000000 2002-05-17T00:00:00.000000
certa-2002-avi-106 Vulnérabilité dans Snitz Forums 2000 2002-05-17T00:00:00.000000 2002-05-17T00:00:00.000000
certa-2002-avi-103 Vulnérabilité Cisco Cache Engine et Content Engine 2002-05-16T00:00:00.000000 2002-05-21T00:00:00.000000
certa-2002-avi-034 Multiples vulnérabilités du paquetage ucd-snmp 2002-02-18T00:00:00.000000 2002-05-23T00:00:00.000000
certa-2002-avi-107 Vulnérabilité Cisco IOS aux dénis de service de type ICMP Redirect 2002-05-23T00:00:00.000000 2002-05-23T00:00:00.000000
certa-2002-avi-110 Vulnérabilité dans Windows Debugger 2002-05-24T00:00:00.000000 2002-05-24T00:00:00.000000
certa-2002-avi-111 Vulnérabilité dans CISCO IDS Device Manager 3.1.1 2002-05-27T00:00:00.000000 2002-05-27T00:00:00.000000
certa-2002-avi-112 Vulnérabilité dans fetchmail 2002-05-29T00:00:00.000000 2002-05-29T00:00:00.000000
ID Description Published Updated
certfr-2022-ale-005 [MàJ] Vulnérabilité dans Microsoft Windows 2022-05-31T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-002 Vulnérabilité dans VMware Spring Cloud Gateway 2022-03-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-006 [MàJ] Vulnérabilité dans Atlassian Confluence 2022-06-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-011 Vulnérabilité dans les produits Fortinet 2022-10-14T00:00:00.000000 2022-10-14T00:00:00.000000
certfr-2022-ale-012 [MàJ] Vulnérabilité dans FortiOS SSL-VPN 2022-12-13T00:00:00.000000 2022-12-20T00:00:00.000000
certfr-2022-ale-007 Multiples vulnérabilités dans Microsoft Windows 2022-09-16T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-008 [MaJ] Multiples vulnérabilités dans Microsoft Exchange 2022-09-30T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-009 [MaJ] Vulnérabilité dans Zimbra Collaboration 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-010 Multiples vulnérabilités dans GLPI 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-013 [MàJ] Vulnérabilité dans Citrix ADC et Gateway 2022-12-13T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-001 Vulnérabilité dans Fortinet FortiOS 2023-03-14T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-015 [MàJ] Campagne d'exploitation d'une vulnérabilité affectant VMware ESXi 2023-02-03T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-003 [MàJ] Compromission de l'application 3CX Desktop App 2023-03-31T00:00:00.000000 2023-04-12T00:00:00.000000
certfr-2023-ale-002 [MàJ] Vulnérabilité dans Microsoft Outlook 2023-03-15T00:00:00.000000 2023-05-11T00:00:00.000000
certfr-2022-ale-014 Multiples vulnérabilités dans AMI MegaRAC 2022-12-16T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-004 Vulnérabilité dans les produits Fortinet 2023-06-13T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-005 Synthèse sur l'exploitation d'une vulnérabilité dans MOVEit Transfer 2023-07-05T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-009 [MàJ] Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile 2023-07-26T00:00:00.000000 2023-09-15T00:00:00.000000
certfr-2023-ale-006 Vulnérabilité dans les produits Microsoft 2023-12-12T00:00:00.000000 2023-07-12T00:00:00.000000
certfr-2023-ale-007 [MàJ] Vulnérabilité dans Zimbra Collaboration Suite 2023-07-17T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-008 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-07-19T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-010 Multiples vulnérabilités dans Exim 2023-10-02T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-011 [MàJ] Multiples vulnérabilités dans Cisco IOS XE 2023-10-17T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-012 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-10-23T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-013 Vulnérabilité dans Apache Struts 2 2023-12-13T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-ale-002 [MàJ] Multiples Vulnérabilités dans GitLab 2024-01-12T00:00:00.000000 2024-02-22T00:00:00.000000
certfr-2024-ale-001 [MàJ] Multiples vulnérabilités dans Ivanti Connect Secure et Policy Secure Gateways 2024-01-11T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-003 [MàJ] Incident affectant les solutions AnyDesk 2024-02-05T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-005 [MàJ] Vulnérabilité dans Microsoft Outlook 2024-02-15T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-004 [MàJ] Vulnérabilité dans Fortinet FortiOS 2024-02-09T00:00:00.000000 2024-07-01T00:00:00.000000
ID Description Published Updated
osv-2021-1085 Stack-buffer-overflow in strcat 2021-08-02T00:00:16.885038Z 2022-04-13T03:04:32.568035Z
osv-2021-1135 Heap-use-after-free in prvTidyInsertedToken 2021-08-16T00:01:09.422775Z 2022-04-13T03:04:32.573278Z
osv-2020-1427 Use-of-uninitialized-value in TextEndsWithNewline 2020-07-28T00:00:17.183105Z 2022-04-13T03:04:32.578765Z
osv-2020-1440 Use-of-uninitialized-value in PPrintText 2020-07-28T00:00:19.153741Z 2022-04-13T03:04:32.584249Z
osv-2021-1078 Heap-buffer-overflow in prvTidygrowStack 2021-07-31T00:00:35.042139Z 2022-04-13T03:04:32.589780Z
osv-2021-977 Dynamic-stack-buffer-overflow in std::__1::pair<unsigned int, unsigned int>::pair<unsigned int, unsigned int, fal 2021-07-13T00:01:21.215619Z 2022-04-13T03:04:32.606614Z
osv-2020-1565 Heap-buffer-overflow in allocate_field 2020-08-02T00:00:39.707050Z 2022-04-13T03:04:32.612067Z
osv-2020-1567 Heap-buffer-overflow in allocate_field 2020-08-02T00:01:18.300186Z 2022-04-13T03:04:32.617326Z
osv-2020-1564 Use-of-uninitialized-value in pb_encode_varint 2020-08-02T00:00:28.082567Z 2022-04-13T03:04:32.622428Z
osv-2020-1176 Use-of-uninitialized-value in put4bitbwtile 2020-07-22T21:49:53.886180Z 2022-04-13T03:04:32.628091Z
osv-2020-254 Heap-buffer-overflow in pixReadFromTiffStream 2020-06-26T00:00:11.669926Z 2022-04-13T03:04:32.633763Z
osv-2020-8 Heap-buffer-overflow in findNextBorderPixel 2020-06-24T01:51:09.673990Z 2022-04-13T03:04:32.639074Z
osv-2020-1253 Heap-buffer-overflow in pixReadFromTiffStream 2020-07-22T21:50:00.586423Z 2022-04-13T03:04:32.644327Z
osv-2020-288 Heap-use-after-free in pixReadMemBmp 2020-06-30T00:00:46.704258Z 2022-04-13T03:04:32.649721Z
osv-2020-141 Heap-use-after-free in pixcmapDestroy 2020-06-24T01:51:15.964708Z 2022-04-13T03:04:32.654972Z
osv-2022-91 Heap-buffer-overflow in pixCountArbInRect 2022-01-26T00:01:54.834091Z 2022-04-13T03:04:32.660483Z
osv-2021-223 Heap-buffer-overflow in fdilate_1_56 2021-01-23T00:01:02.010626Z 2022-04-13T03:04:32.666219Z
osv-2020-131 Heap-buffer-overflow in pixGetRGBComponentCmap 2020-06-24T01:51:15.520013Z 2022-04-13T03:04:32.671359Z
osv-2020-1 Use-of-uninitialized-value in numaCrossingsByThreshold 2020-06-24T01:51:08.502422Z 2022-04-13T03:04:32.676718Z
osv-2020-134 Heap-buffer-overflow in pixFewColorsOctcubeQuantMixed 2020-06-24T01:51:15.653519Z 2022-04-13T03:04:32.681886Z
osv-2022-69 Stack-buffer-overflow in pixCountPixels 2022-01-21T00:01:32.742217Z 2022-04-13T03:04:32.687605Z
osv-2020-1167 Heap-buffer-overflow in tiffReadCallback 2020-07-22T21:49:52.626033Z 2022-04-13T03:04:32.693612Z
osv-2020-903 Heap-buffer-overflow in rasteropGeneralLow 2020-07-21T00:00:19.151415Z 2022-04-13T03:04:32.699227Z
osv-2020-76 Heap-use-after-free in pixAverageRasterScans 2020-06-24T01:51:13.003871Z 2022-04-13T03:04:32.704451Z
osv-2020-2128 Heap-use-after-free in pixChangeRefcount 2020-11-05T00:00:06.120314Z 2022-04-13T03:04:32.709755Z
osv-2020-2018 Heap-use-after-free in fpixChangeRefcount 2020-10-12T00:00:40.582555Z 2022-04-13T03:04:32.714945Z
osv-2020-2024 Heap-buffer-overflow in pixFindHorizontalRuns 2020-10-13T00:00:08.718271Z 2022-04-13T03:04:32.720146Z
osv-2021-236 Heap-use-after-free in DatasetAdd 2021-01-25T00:00:22.782153Z 2022-04-13T03:04:32.725819Z
osv-2020-19 Heap-use-after-free in htp_connp_is_line_terminator 2020-06-24T01:51:10.440277Z 2022-04-13T03:04:32.731752Z
osv-2020-1346 UNKNOWN WRITE in StatsIncr 2020-07-22T21:50:08.261306Z 2022-04-13T03:04:32.737543Z
ID Description Published Updated
rustsec-2021-0009 panic safety issue in `impl TransformContent<S, D> for [S; (2|3|4)]` 2021-01-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0010 panic safety: double drop may happen within `util::{mutate, mutate2}` 2021-01-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0011 EventList's From<EventList> conversions can double drop on panic. 2021-01-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0012 Reading uninitialized memory can cause UB (`Deserializer::read_vec`) 2021-01-02T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0013 Soundness issues in `raw-cpuid` 2021-01-20T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0014 Record::read : Custom `Read` on uninitialized buffer may cause UB 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0015 `Sectors::get` accesses unclaimed/uninitialized memory 2021-01-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0016 `IoReader::read()`: user-provided `Read` on uninitialized buffer may cause UB 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0017 `Read` on uninitialized buffer may cause UB (`impl Walue for Vec<u8>`) 2021-01-30T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0018 insert_slice_clone can double drop if Clone panics. 2021-02-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0019 Multiple soundness issues 2021-02-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0021 `nb-connect` invalidly assumes the memory layout of std::net::SocketAddr 2021-02-14T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0022 Use-after-free in `subscript_next` and `subscript_prev` wrappers 2021-02-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0023 Incorrect check on buffer length when seeding RNGs 2021-02-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0026 XSS in `comrak` 2021-02-21T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0027 Loading a bgzip block can write out of bounds if size overflows. 2021-01-07T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0028 Multiple memory safety issues in insert_row 2021-02-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0029 Tape::take_bytes exposes uninitialized memory to a user-provided Read 2021-02-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0030 move_elements can double-free objects on panic 2021-02-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0031 split_at allows obtaining multiple mutable references to the same data 2021-01-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0032 Deserializing an array can drop uninitialized memory on panic 2021-03-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0033 push_cloned can drop uninitialized memory or double free on panic 2021-02-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0035 `quinn` invalidly assumes the memory layout of std::net::SocketAddr 2021-03-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0036 Intern<T>: Data race allowed on T 2021-03-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0037 Fix a use-after-free bug in diesels Sqlite backend 2021-03-05T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0038 Multiple memory safety issues 2021-03-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0039 panic in user-provided `Endian` impl triggers double drop of T 2021-01-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0040 panic safety: double drop or uninitialized drop of T upon panic 2021-01-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0041 Denial of service through parsing payloads with too big exponent 2021-03-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0042 insert_many can drop elements twice on panic 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2022:0891 Moderate: httpd:2.4 security update 2022-03-15T09:10:44Z 2022-03-17T20:51:19Z
alsa-2022:1049 Important: httpd:2.4 security update 2022-03-24T10:44:04Z 2022-03-25T14:16:40Z
alsa-2022:1065 Important: openssl security update 2022-03-28T07:46:07Z 2022-03-28T07:46:07Z
alsa-2022:1287 Important: firefox security update 2022-04-08T13:40:04Z 2022-04-11T14:42:15Z
alsa-2022:1301 Important: thunderbird security update 2022-04-11T13:29:58Z 2022-04-13T07:37:22Z
alsa-2022:1442 Important: java-11-openjdk security update 2022-04-20T12:24:01Z 2022-04-21T13:17:15Z
alsa-2022:1537 Important: gzip security update 2022-04-26T09:54:04Z 2022-04-26T09:54:04Z
alsa-2022:1491 Important: java-1.8.0-openjdk security update 2022-04-25T15:17:09Z 2022-04-26T12:47:29Z
alsa-2022:1552 Moderate: vim security update 2022-04-26T13:49:40Z 2022-04-27T15:05:20Z
alsa-2020:5500 Important: mariadb:10.3 security, bug fix, and enhancement update 2020-12-15T16:03:43Z 2022-04-28T12:47:02Z
alsa-2022:1556 Moderate: mariadb:10.3 security and bug fix update 2022-04-26T13:50:43Z 2022-04-28T12:47:03Z
alsa-2022:1557 Moderate: mariadb:10.5 security, bug fix, and enhancement update 2022-04-26T13:50:46Z 2022-04-28T12:56:03Z
alsa-2022:1565 Moderate: container-tools:3.0 security and bug fix update 2022-04-26T13:51:39Z 2022-04-28T13:06:09Z
alsa-2022:1566 Moderate: container-tools:2.0 security update 2022-04-26T13:51:50Z 2022-04-28T13:16:04Z
alsa-2020:4670 Moderate: idm:DL1 and idm:client security, bug fix, and enhancement update 2020-11-03T12:25:36Z 2022-04-29T15:25:47Z
alsa-2022:1642 Important: zlib security update 2022-04-28T14:07:14Z 2022-04-29T17:40:13Z
alsa-2022:1643 Important: xmlrpc-c security update 2022-04-28T14:07:17Z 2022-04-29T17:40:13Z
alsa-2022:1705 Important: firefox security update 2022-05-04T11:04:22Z 2022-05-05T12:27:24Z
alsa-2022:1730 Important: thunderbird security update 2022-05-05T13:32:08Z 2022-05-07T14:41:41Z
alsa-2022:1759 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update 2022-05-10T07:59:57Z 2022-05-10T07:59:56Z
alsa-2022:1763 Moderate: python39:3.9 and python39-devel:3.9 security update 2022-05-10T08:00:02Z 2022-05-10T08:00:01Z
alsa-2022:1764 Moderate: python38:3.8 and python38-devel:3.8 security update 2022-05-10T06:23:23Z 2022-05-10T08:00:02Z
alsa-2022:1766 Moderate: libreoffice security, bug fix, and enhancement update 2022-05-10T08:00:06Z 2022-05-10T08:00:05Z
alsa-2022:1777 Moderate: webkit2gtk3 security, bug fix, and enhancement update 2022-05-10T06:24:27Z 2022-05-10T08:00:31Z
alsa-2022:1781 Low: grafana security, bug fix, and enhancement update 2022-05-10T06:25:23Z 2022-05-10T08:00:35Z
alsa-2022:1792 Moderate: flatpak security and bug fix update 2022-05-10T08:01:39Z 2022-05-10T08:01:39Z
alsa-2022:1793 Moderate: container-tools:3.0 security and bug fix update 2022-05-10T08:01:41Z 2022-05-10T08:01:40Z
alsa-2022:1796 Moderate: qt5-qtbase security update 2022-05-10T08:01:44Z 2022-05-10T08:01:44Z
alsa-2022:1810 Moderate: libtiff security update 2022-05-10T08:02:19Z 2022-05-10T08:02:18Z
alsa-2022:1814 Low: gnome-shell security and bug fix update 2022-05-10T06:28:54Z 2022-05-10T08:02:28Z