Open Source Vulnerabilities
systemd-bootstrap
CVE-2023-7008 affecting package systemd-bootstrap for versions less than 250.3-18
systemd-bootstrap
CVE-2023-7008 affecting package systemd-bootstrap for versions less than 250.3-18
systemd
CVE-2023-7008 affecting package systemd for versions less than 250.3-22
systemd
CVE-2023-7008 affecting package systemd for versions less than 250.3-22
systemd-bootstrap
CVE-2023-7008 affecting package systemd-bootstrap for versions less than 250.3-13
systemd-bootstrap
CVE-2023-7008 affecting package systemd-bootstrap for versions less than 250.3-13
systemd, systemd, systemd, systemd, systemd
,
Systemd-resolved: unsigned name response in signed zone is not refused when dnssec=yes
/
Systemd-resolved: unsigned name response in signed zone is not refused when dnssec=yes
c-blosc2
Heap-buffer-overflow in inflate
osslsigncode
osslsigncode - security update
Sandbox Accounts for Events vulnerable to privilege escalation to read running events data
Sandbox Accounts for Events vulnerable to privilege escalation to read running events data
Potential URI resolution path traversal in the AWS SDK for PHP
Potential URI resolution path traversal in the AWS SDK for PHP
SSRF in symbolicator via invalid protocol
sandbox-accounts-for-events security misconfiguration leads to budget exceed
sandbox-accounts-for-events security misconfiguration leads to budget exceed
Make the `/file` secure against file traversal attacks
Expression Injection Vulnerability in Hertzbeat
MindsDB has arbitrary file write in file.py
Stored XSS in Overview and Output fields
Grackle has StackOverflowError in GraphQL query processing
Resque vulnerable to reflected XSS in Queue Endpoint
Resque vulnerable to reflected XSS in resque-web failed and queues lists
Resque vulnerable to reflected XSS in resque-web failed and queues lists
nautobot, nautobot
Nautobot missing object-level permissions enforcement when running Job Buttons
nautobot/ nautobot
Nautobot missing object-level permissions enforcement when running Job Buttons
Snowflake.Data
Snowflake Connector .NET does not properly check the Certificate Revocation List (CRL)
Snowflake.Data
Snowflake Connector .NET does not properly check the Certificate Revocation List (CRL)
Improper Neutralization of Alternate XSS Syntax in iris-web
org.wso2.carbon.registry:carbon-registry
WSO2 Registry Stored Cross Site Scripting (XSS) vulnerability
org.wso2.carbon.registry:carbon-registry
WSO2 Registry Stored Cross Site Scripting (XSS) vulnerability
