Open Source Vulnerabilities
nodejs
CVE-2023-35945 affecting package nodejs for versions less than 16.20.2-2
nodejs
CVE-2023-35945 affecting package nodejs for versions less than 16.20.2-2
cmake
CVE-2023-35945 affecting package cmake for versions less than 3.21.4-8
cmake
CVE-2023-35945 affecting package cmake for versions less than 3.21.4-8
nghttp2
CVE-2023-35945 affecting package nghttp2 for versions less than 1.46.0-3
nghttp2
CVE-2023-35945 affecting package nghttp2 for versions less than 1.46.0-3
nodejs18
CVE-2023-35945 affecting package nodejs18 for versions less than 18.17.1-2
nodejs18
CVE-2023-35945 affecting package nodejs18 for versions less than 18.17.1-2
CSP nonce reuse vulnerability in Discourse
Envoy vulnerable to HTTP/2 memory leak in nghttp2 codec
Storing unencrypted LDAP passwords in feedbacksystem
cmark-gfm, cmark-gfm, cmark-gfm, python-cmarkgfm, python-cmarkgfm, python-cmarkgfm, r-cran-commonmark, r-cran-commonmark, r-cran-commonmark, ruby-commonmarker, ruby-commonmarker, ruby-commonmarker
cmark-gfm/ cmark-gfm/ cmark-gfm/ python-cmarkgfm/ python-cmarkgfm/ python-cmarkgfm/ r-cran-commonmark/ r-cran-commonmark/ r-cran-commonmark/ ruby-commonmarker/ ruby-commonmarker/ ruby-commonmarker
cmark-gfm, cmark-gfm, cmark-gfm, cmark-gfm
github.com/superfly/tokenizer
Tokenizer vulnerable to client brute-force of token secrets
github.com/superfly/tokenizer
Tokenizer vulnerable to client brute-force of token secrets
Quadratic complexity bugs may lead to a denial of service
mx-chain-go's relayed transactions always increment nonce
impresscms/impresscms
ImpressCMS Cross-site Scripting vulnerability
impresscms/impresscms
ImpressCMS Cross-site Scripting vulnerability
postgresql-9.5
postgresql-9.5 vulnerability
github.com/multiversx/mx-chain-go
mx-chain-go's relayed transactions always increment nonce
github.com/multiversx/mx-chain-go
mx-chain-go's relayed transactions always increment nonce
Umbraco.Cms.Infrastructure, Umbraco.Cms.Infrastructure, Umbraco.Cms.Infrastructure, Umbraco.Cms.Web.BackOffice, Umbraco.Cms.Web.BackOffice, Umbraco.Cms.Web.BackOffice
Umbraco allows possible Admin-level access to backoffice without Auth under rare conditions
Umbraco.Cms.Infrastructure/ Umbraco.Cms.Infrastructure/ Umbraco.Cms.Infrastructure/ Umbraco.Cms.Web.BackOffice/ Umbraco.Cms.Web.BackOffice/ Umbraco.Cms.Web.BackOffice
Umbraco allows possible Admin-level access to backoffice without Auth under rare conditions
vm2
vm2 Sandbox Escape vulnerability
vm2
vm2 Sandbox Escape vulnerability
python-Django, python-Django
Security update for python-Django
python-Django/ python-Django
Security update for python-Django
redis
CVE-2022-24834 affecting package redis for versions less than 6.2.13-2
redis
CVE-2022-24834 affecting package redis for versions less than 6.2.13-2
redis, redis, lua-cjson, lua-cjson, redis, lua-cjson, redis, lua-cjson, redis, lua-cjson, lua-cjson, lua-cmsgpack, lua-cjson, lua-cmsgpack
redis/ redis/ lua-cjson/ lua-cjson/ redis/ lua-cjson/ redis/ lua-cjson/ redis/ lua-cjson/ lua-cjson/ lua-cmsgpack/ lua-cjson/ lua-cmsgpack
idle-python3.6, libpython3.6, libpython3.6-dev, libpython3.6-minimal, libpython3.6-stdlib, libpython3.6-testsuite, python3.6, python3.6-dev, python3.6-doc, python3.6-examples, python3.6-minimal, python3.6-venv
Fix CVE(s): CVE-2021-28861
idle-python3.6/ libpython3.6/ libpython3.6-dev/ libpython3.6-minimal/ libpython3.6-stdlib/ libpython3.6-testsuite/ python3.6/ python3.6-dev/ python3.6-doc/ python3.6-examples/ python3.6-minimal/ python3.6-venv
Fix CVE(s): CVE-2021-28861
