Open Source Vulnerabilities
scancodeio
ScanCode.io command injection in docker image fetch process
scancodeio
ScanCode.io command injection in docker image fetch process
prestashop/prestashop
PrestaShop file deletion via CustomerMessage
prestashop/prestashop
PrestaShop file deletion via CustomerMessage
prestashop/prestashop
PrestaShop file deletion via attachment API
prestashop/prestashop
PrestaShop file deletion via attachment API
prestashop/prestashop
PrestaShop file access through path traversal
prestashop/prestashop
PrestaShop file access through path traversal
prestashop/prestashop, prestashop/prestashop, prestashop/prestashop
PrestaShop XSS injection through Validate::isCleanHTML method
prestashop/prestashop/ prestashop/prestashop/ prestashop/prestashop
PrestaShop XSS injection through Validate::isCleanHTML method
prestashop/prestashop, prestashop/prestashop, prestashop/prestashop
PrestaShop SQL manager vulnerability
prestashop/prestashop/ prestashop/prestashop/ prestashop/prestashop
PrestaShop SQL manager vulnerability
prestashop/prestashop
PrestaShop path traversal
prestashop/prestashop
PrestaShop boolean SQL injection
vyper
Vyper has incorrectly allocated named re-entrancy locks
vyper
Vyper has incorrectly allocated named re-entrancy locks
pcre2
Heap-buffer-overflow in get_grouplength
github.com/libp2p/go-libp2p, github.com/libp2p/go-libp2p, github.com/libp2p/go-libp2p
libp2p nodes vulnerable to attack using large RSA keys
github.com/libp2p/go-libp2p/ github.com/libp2p/go-libp2p/ github.com/libp2p/go-libp2p
libp2p nodes vulnerable to attack using large RSA keys
lol-html
lol-html panics on certain HTML inputs
Microsoft.NET.Build.Containers
.NET Remote Code Execution Vulnerability
Microsoft.NET.Build.Containers
.NET Remote Code Execution Vulnerability
grpc
CVE-2023-33953 affecting package grpc 1.42.0-11
grpc
CVE-2023-33953 affecting package grpc for versions less than 1.62.0-2
grpc
CVE-2023-33953 affecting package grpc for versions less than 1.62.0-2
python-tensorboard
CVE-2023-33953 affecting package python-tensorboard for versions less than 2.11.0-2
python-tensorboard
CVE-2023-33953 affecting package python-tensorboard for versions less than 2.11.0-2
grpc, grpc, grpc, grpc, grpc, grpc, grpc
Microsoft.AspNetCore.App.Runtime.win-arm64, Microsoft.AspNetCore.App.Runtime.win-arm, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.NetCore.App.Runtime.win-arm, Microsoft.NetCore.App.Runtime.win-arm64, Microsoft.NetCore.App.Runtime.win-x64, Microsoft.NetCore.App.Runtime.win-x86
.NET Denial of Service Vulnerability
Microsoft.AspNetCore.App.Runtime.win-arm64/ Microsoft.AspNetCore.App.Runtime.win-arm/ Microsoft.AspNetCore.App.Runtime.win-x64/ Microsoft.AspNetCore.App.Runtime.win-x86/ Microsoft.NetCore.App.Runtime.win-arm/ Microsoft.NetCore.App.Runtime.win-arm64/ Microsoft.NetCore.App.Runtime.win-x64/ Microsoft.NetCore.App.Runtime.win-x86
.NET Denial of Service Vulnerability
Microsoft.AspNetCore.App.Runtime.win-arm64, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv, Microsoft.AspNetCore.App.Runtime.win-arm64, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv, Microsoft.AspNetCore.Server.Kestrel.Transport.Sockets
.NET Denial of Service Vulnerability
Microsoft.AspNetCore.App.Runtime.win-arm64/ Microsoft.AspNetCore.App.Runtime.win-x64/ Microsoft.AspNetCore.App.Runtime.win-x86/ Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv/ Microsoft.AspNetCore.App.Runtime.win-arm64/ Microsoft.AspNetCore.App.Runtime.win-x64/ Microsoft.AspNetCore.App.Runtime.win-x86/ Microsoft.AspNetCore.Server.Kestrel.Transport.Libuv/ Microsoft.AspNetCore.Server.Kestrel.Transport.Sockets
.NET Denial of Service Vulnerability
@nguniversal/common
Angular critical CSS inlining Cross-site Scripting Vulnerability Advisory
@nguniversal/common
Angular critical CSS inlining Cross-site Scripting Vulnerability Advisory
pipewire, pipewire, pipewire
Security update for pipewire
pipewire, pipewire, pipewire
Security update for pipewire
rubygem-actionpack-4_2, rubygem-actionpack-4_2
Security update for rubygem-actionpack-4_2
rubygem-actionpack-4_2/ rubygem-actionpack-4_2
Security update for rubygem-actionpack-4_2
ctdb, ctdb-tests, libsmbclient, libsmbclient-devel, libwbclient, libwbclient-devel, python3-samba, python3-samba-devel, python3-samba-test, samba, samba-client, samba-client-libs, samba-common, samba-common-libs, samba-common-tools, samba-devel, samba-krb5-printing, samba-libs, samba-pidl, samba-test, samba-test-libs, samba-vfs-glusterfs, samba-winbind, samba-winbind-clients, samba-winbind-krb5-locator, samba-winbind-modules, samba-winexe
samba: Fix of 2 CVEs
ctdb/ ctdb-tests/ libsmbclient/ libsmbclient-devel/ libwbclient/ libwbclient-devel/ python3-samba/ python3-samba-devel/ python3-samba-test/ samba/ samba-client/ samba-client-libs/ samba-common/ samba-common-libs/ samba-common-tools/ samba-devel/ samba-krb5-printing/ samba-libs/ samba-pidl/ samba-test/ samba-test-libs/ samba-vfs-glusterfs/ samba-winbind/ samba-winbind-clients/ samba-winbind-krb5-locator/ samba-winbind-modules/ samba-winexe
samba: Fix of 2 CVEs
openssh, openssh-askpass, openssh-clients, openssh-ldap, openssh-server, pam_ssh_agent_auth
openssh: Fix of CVE-2023-38408
openssh/ openssh-askpass/ openssh-clients/ openssh-ldap/ openssh-server/ pam_ssh_agent_auth
openssh: Fix of CVE-2023-38408
openssh, openssh-askpass, openssh-clients, openssh-ldap, openssh-server, pam_ssh_agent_auth
openssh: Fix of CVE-2023-38408
openssh/ openssh-askpass/ openssh-clients/ openssh-ldap/ openssh-server/ pam_ssh_agent_auth
openssh: Fix of CVE-2023-38408
openssh-client, openssh-server, openssh-sftp-server, ssh, ssh-askpass-gnome
Fix CVE(s): CVE-2023-38408
openssh-client/ openssh-server/ openssh-sftp-server/ ssh/ ssh-askpass-gnome
Fix CVE(s): CVE-2023-38408
ctdb, libnss-winbind, libpam-winbind, libparse-pidl-perl, libsmbclient, libsmbclient-dev, libwbclient-dev, libwbclient0, python-samba, registry-tools, samba, samba-common, samba-common-bin, samba-dev, samba-dsdb-modules, samba-libs, samba-testsuite, samba-vfs-modules, smbclient, winbind
Fix CVE(s): CVE-2023-34966
ctdb/ libnss-winbind/ libpam-winbind/ libparse-pidl-perl/ libsmbclient/ libsmbclient-dev/ libwbclient-dev/ libwbclient0/ python-samba/ registry-tools/ samba/ samba-common/ samba-common-bin/ samba-dev/ samba-dsdb-modules/ samba-libs/ samba-testsuite/ samba-vfs-modules/ smbclient/ winbind
Fix CVE(s): CVE-2023-34966
openssh-client, openssh-server, openssh-sftp-server, ssh, ssh-askpass-gnome
Fix CVE(s): CVE-2023-38408
openssh-client/ openssh-server/ openssh-sftp-server/ ssh/ ssh-askpass-gnome
Fix CVE(s): CVE-2023-38408
openssh-client, openssh-client-ssh1, openssh-server, openssh-sftp-server, ssh, ssh-askpass-gnome, ssh-krb5
Fix CVE(s): CVE-2023-38408
openssh-client/ openssh-client-ssh1/ openssh-server/ openssh-sftp-server/ ssh/ ssh-askpass-gnome/ ssh-krb5
Fix CVE(s): CVE-2023-38408
openssh-client, openssh-client-ssh1, openssh-server, openssh-sftp-server, ssh, ssh-askpass-gnome, ssh-krb5
Fix CVE(s): CVE-2023-38408
openssh-client/ openssh-client-ssh1/ openssh-server/ openssh-sftp-server/ ssh/ ssh-askpass-gnome/ ssh-krb5
Fix CVE(s): CVE-2023-38408
ctdb, libnss-winbind, libpam-winbind, libparse-pidl-perl, libsmbclient, libsmbclient-dev, libwbclient-dev, libwbclient0, python-samba, registry-tools, samba, samba-common, samba-common-bin, samba-dev, samba-dsdb-modules, samba-libs, samba-testsuite, samba-vfs-modules, smbclient, winbind
Fix CVE(s): CVE-2023-34966
ctdb/ libnss-winbind/ libpam-winbind/ libparse-pidl-perl/ libsmbclient/ libsmbclient-dev/ libwbclient-dev/ libwbclient0/ python-samba/ registry-tools/ samba/ samba-common/ samba-common-bin/ samba-dev/ samba-dsdb-modules/ samba-libs/ samba-testsuite/ samba-vfs-modules/ smbclient/ winbind
Fix CVE(s): CVE-2023-34966
bind9, bind9-doc, bind9-host, bind9utils, dnsutils, host, libbind-dev, libbind-export-dev, libbind9-140, libdns-export162, libdns162, libirs-export141, libirs141, libisc-export160, libisc160, libisccc-export140, libisccc140, libisccfg-export140, libisccfg140, liblwres141, lwresd
Fix CVE(s): CVE-2023-2828
bind9/ bind9-doc/ bind9-host/ bind9utils/ dnsutils/ host/ libbind-dev/ libbind-export-dev/ libbind9-140/ libdns-export162/ libdns162/ libirs-export141/ libirs141/ libisc-export160/ libisc160/ libisccc-export140/ libisccc140/ libisccfg-export140/ libisccfg140/ liblwres141/ lwresd
Fix CVE(s): CVE-2023-2828
magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/project-community-edition
Magento Open Source allows Incorrect Authorization
magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/project-community-edition
Magento Open Source allows Incorrect Authorization
magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/community-edition, magento/project-community-edition
Magento Open Source allows Improper Neutralization of Special Elements Used
magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/community-edition/ magento/project-community-edition
Magento Open Source allows Improper Neutralization of Special Elements Used
