Open Source Vulnerabilities
LibGit2_jll
An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0
LibGit2_jll
An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0
LibGit2_jll
An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0
LibGit2_jll
An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0
LibGit2_jll
libgit2 is a cross-platform, linkable library implementation of Git
LibGit2_jll
libgit2 is a cross-platform, linkable library implementation of Git
LibGit2_jll
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a...
LibGit2_jll
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a...
LibGit2_jll
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a...
LibGit2_jll
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a...
freetype, freetype-demos, freetype-devel
Update of freetype
freetype/ freetype-demos/ freetype-devel
Update of freetype
iwl100-firmware, iwl1000-firmware, iwl105-firmware, iwl135-firmware, iwl2000-firmware, iwl2030-firmware, iwl3160-firmware, iwl3945-firmware, iwl4965-firmware, iwl5000-firmware, iwl5150-firmware, iwl6000-firmware, iwl6000g2a-firmware, iwl6000g2b-firmware, iwl6050-firmware, iwl7260-firmware, iwlax2xx-firmware, linux-firmware, linux-nano-firmware
Update of linux-firmware
iwl100-firmware/ iwl1000-firmware/ iwl105-firmware/ iwl135-firmware/ iwl2000-firmware/ iwl2030-firmware/ iwl3160-firmware/ iwl3945-firmware/ iwl4965-firmware/ iwl5000-firmware/ iwl5150-firmware/ iwl6000-firmware/ iwl6000g2a-firmware/ iwl6000g2b-firmware/ iwl6050-firmware/ iwl7260-firmware/ iwlax2xx-firmware/ linux-firmware/ linux-nano-firmware
Update of linux-firmware
uv
uv has differential in tar extraction with PAX headers
processwire/processwire
ProcessWire CMS vulnerable to resource-exhaustion Denial of Service
processwire/processwire
ProcessWire CMS vulnerable to resource-exhaustion Denial of Service
com.liferay:com.liferay.portal.cluster.multiple
Liferay Portal fails to verify messages from the cluster network is trusted
com.liferay:com.liferay.portal.cluster.multiple
Liferay Portal fails to verify messages from the cluster network is trusted
github.com/cosmos/evm, github.com/cosmos/evm
Cosmos EVM Vulnerability
github.com/cosmos/evm/ github.com/cosmos/evm
Cosmos EVM Vulnerability
shopware/platform, shopware/platform, shopware/core, shopware/core
Shopware Customer Orders can be canceled, even if refunds are disabled
shopware/platform/ shopware/platform/ shopware/core/ shopware/core
Shopware Customer Orders can be canceled, even if refunds are disabled
shopware/platform, shopware/platform, shopware/core, shopware/core
Shopware exposes sensitive user information via CSV export mapping
shopware/platform/ shopware/platform/ shopware/core/ shopware/core
Shopware exposes sensitive user information via CSV export mapping
shopware/platform, shopware/platform, shopware/core, shopware/core
Shopware vulnerable to Server-Side Request Forgery (SSRF) – order invoice
shopware/platform/ shopware/platform/ shopware/core/ shopware/core
Shopware vulnerable to Server-Side Request Forgery (SSRF) – order invoice
shopware/platform, shopware/platform, shopware/core, shopware/core
Shopware vulnerable to path traversal via Plugin upload
shopware/platform/ shopware/platform/ shopware/core/ shopware/core
Shopware vulnerable to path traversal via Plugin upload
shopware/platform, shopware/platform, shopware/core, shopware/core
Shopware vulnerable to MediaVisibilityRestrictionSubscriber bypass when reading media entities by aggregating fields individually
shopware/platform/ shopware/platform/ shopware/core/ shopware/core
Shopware vulnerable to MediaVisibilityRestrictionSubscriber bypass when reading media entities by aggregating fields individually
IntelOpenMP_jll
Uncontrolled search path element in the Intel(R) oneAPI Toolkit OpenMP before version 2022.1 may...
IntelOpenMP_jll
Uncontrolled search path element in the Intel(R) oneAPI Toolkit OpenMP before version 2022.1 may...
JpegTurbo_jll
The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit...
JpegTurbo_jll
The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit...
JpegTurbo_jll
Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component
JpegTurbo_jll
Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component
JpegTurbo_jll
The tjLoadImage function in libjpeg-turbo 2.0.1 has an integer overflow with a resultant heap-based...
JpegTurbo_jll
The tjLoadImage function in libjpeg-turbo 2.0.1 has an integer overflow with a resultant heap-based...
JpegTurbo_jll
libjpeg-turbo 2.0.1 has a heap-based buffer over-read in the `put_pixel_rows` function in wrbmp.c,...
JpegTurbo_jll
libjpeg-turbo 2.0.1 has a heap-based buffer over-read in the `put_pixel_rows` function in wrbmp.c,...
Hwloc_jll
An issue was discovered in open-mpi hwloc 2.1.0 allows attackers to cause a denial of service or...
Hwloc_jll
An issue was discovered in open-mpi hwloc 2.1.0 allows attackers to cause a denial of service or...
HarfBuzz_ICU_jll, HarfBuzz_jll
hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via...
HarfBuzz_ICU_jll/ HarfBuzz_jll
hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via...
Gettext_jll
An issue was discovered in GNU gettext 0.19.8
rust-astral-tokio-tar, rust-astral-tokio-tar
rust-astral-tokio-tar, rust-astral-tokio-tar
Mastodon quotes control can be bypassed
WeGIA Vulnerable to Reflected Cross-Site Scripting via Endpoint 'pessoa/editar_info_pessoal.php' Parameter 'action'
WeGIA Vulnerable to Reflected Cross-Site Scripting via Endpoint 'pessoa/editar_info_pessoal.php' Parameter 'action'
WeGIA Vulnerable to Reflected Cross-Site Scripting via Endpoint 'pessoa/editar_info_pessoal.php' Parameter 'sql'
WeGIA Vulnerable to Reflected Cross-Site Scripting via Endpoint 'pessoa/editar_info_pessoal.php' Parameter 'sql'
Koa Vulnerable to Open Redirect via Trailing Double-Slash (//) in back Redirect Logic
Koa Vulnerable to Open Redirect via Trailing Double-Slash (//) in back Redirect Logic
geographiclib, geographiclib, geographiclib
geographiclib, geographiclib, geographiclib, geographiclib, geographiclib, geographiclib, geographiclib
geographiclib/ geographiclib/ geographiclib/ geographiclib/ geographiclib/ geographiclib/ geographiclib
astral-tokio-tar Vulnerable to PAX Header Desynchronization
astral-tokio-tar, tokio-tar
astral-tokio-tar Vulnerable to PAX Header Desynchronization
astral-tokio-tar/ tokio-tar
astral-tokio-tar Vulnerable to PAX Header Desynchronization
mbedtls, mbedtls, mbedtls, mbedtls, mbedtls
