Open Source Vulnerabilities
webkit2gtk3
Important: webkit2gtk3 security update
python3
Important: python3 security update
c-ares
Important: c-ares security update
hunspell
Heap-buffer-overflow in AffixMgr::compound_check
ntopng
Heap-buffer-overflow in IEC104Stats::processPacket
fief-server
fief-server Server-Side Template Injection vulnerability
fief-server
fief-server Server-Side Template Injection vulnerability
jcvi
jcvi vulnerable to Configuration Injection due to unsanitized user input
jcvi
jcvi vulnerable to Configuration Injection due to unsanitized user input
Yarp.ReverseProxy, Yarp.ReverseProxy
YARP Denial of Service Vulnerability
Yarp.ReverseProxy/ Yarp.ReverseProxy
YARP Denial of Service Vulnerability
jcvi vulnerable to Configuration Injection due to unsanitized user input
jcvi vulnerable to Configuration Injection due to unsanitized user input
Nextcloud user scoped external storage can be used to gather credentials of other users
Nextcloud user scoped external storage can be used to gather credentials of other users
Nextcloud system addressbooks can be modified by malicious trusted server
Nextcloud system addressbooks can be modified by malicious trusted server
End-to-End encrypted file-drops can be made inaccessible
Nextcloud Server password reset endpoint is not brute force protected
Nextcloud Server password reset endpoint is not brute force protected
Nextcloud Server vulnerable to open redirect on "Unsupported browser" warning
Nextcloud Server vulnerable to open redirect on "Unsupported browser" warning
php-imap vulnerable to RCE through a directory traversal vulnerability
php-imap vulnerable to RCE through a directory traversal vulnerability
AWS CDK EKS overly permissive trust policies
Vega's validators able to submit duplicate transactions
Knowage-Server vulnerable to account validation bypass
Remote inventory task command injection when using ssh command mode
Remote inventory task command injection when using ssh command mode
kernel
CVE-2023-3212 affecting package kernel for versions less than 5.15.118.1-2
kernel
CVE-2023-3212 affecting package kernel for versions less than 5.15.118.1-2
linux-aws, linux-azure, linux-lts-xenial, linux, linux, linux-aws, linux-aws-hwe, linux-azure, linux-gcp, linux-hwe, linux-kvm, linux-oracle, linux-hwe-edge, linux-fips, linux-fips, linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4, linux-azure, linux-azure-4.15, linux-azure-5.3, linux-azure-5.4, linux-azure-edge, linux-gcp, linux-gcp-4.15, linux-gcp-5.3, linux-gcp-5.4, linux-gke-4.15, linux-gke-5.4, linux-gkeop-5.4, linux-hwe, linux-hwe-5.4, linux-hwe-edge, linux-ibm-5.4, linux-kvm, linux-oem, linux-oracle, linux-oracle-5.0, linux-oracle-5.3, linux-oracle-5.4, linux-raspi-5.4, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-bluefield, linux-gcp, linux-gcp-5.15, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-intel-iotg-5.15, linux-iot, linux-kvm, linux-lowlatency-hwe-5.15, linux-nvidia-tegra-5.15, linux-oracle, linux-oracle-5.15, linux-raspi, linux-riscv-5.15, linux-xilinx-zynqmp, linux-aws-5.11, linux-aws-5.13, linux-aws-5.8, linux-azure-5.11, linux-azure-5.13, linux-azure-5.8, linux-azure-fde, linux-gcp-5.11, linux-gcp-5.13, linux-gcp-5.8, linux-gke, linux-gke-5.15, linux-hwe-5.11, linux-hwe-5.13, linux-hwe-5.8, linux-intel-5.13, linux-oem-5.10, linux-oem-5.13, linux-oem-5.14, linux-oem-5.6, linux-oracle-5.11, linux-oracle-5.13, linux-oracle-5.8, linux-raspi2, linux-riscv, linux-riscv-5.11, linux-riscv-5.8, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux, linux-allwinner-5.19, linux-aws, linux-aws-5.19, linux-aws-6.2, linux-azure, linux-azure-5.19, linux-azure-6.2, linux-azure-fde, linux-azure-fde-5.19, linux-azure-fde-6.2, linux-gcp, linux-gcp-5.19, linux-gcp-6.2, linux-gke, linux-gkeop, linux-hwe-5.19, linux-hwe-6.2, linux-ibm, linux-intel-iotg, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.19, linux-lowlatency-hwe-6.2, linux-nvidia, linux-nvidia-6.2, linux-nvidia-tegra, linux-nvidia-tegra-igx, linux-oem-5.17, linux-oem-6.0, linux-oem-6.1, linux-oracle, linux-raspi, linux-realtime, linux-riscv, linux-riscv-5.19, linux-starfive-5.19, linux-xilinx-zynqmp, linux-bluefield, linux-fips, linux-intel-iot-realtime, linux-realtime, linux-raspi-realtime
linux-aws/ linux-azure/ linux-lts-xenial/ linux/ linux/ linux-aws/ linux-aws-hwe/ linux-azure/ linux-gcp/ linux-hwe/ linux-kvm/ linux-oracle/ linux-hwe-edge/ linux-fips/ linux-fips/ linux/ linux-aws/ linux-aws-5.0/ linux-aws-5.3/ linux-aws-5.4/ linux-azure/ linux-azure-4.15/ linux-azure-5.3/ linux-azure-5.4/ linux-azure-edge/ linux-gcp/ linux-gcp-4.15/ linux-gcp-5.3/ linux-gcp-5.4/ linux-gke-4.15/ linux-gke-5.4/ linux-gkeop-5.4/ linux-hwe/ linux-hwe-5.4/ linux-hwe-edge/ linux-ibm-5.4/ linux-kvm/ linux-oem/ linux-oracle/ linux-oracle-5.0/ linux-oracle-5.3/ linux-oracle-5.4/ linux-raspi-5.4/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux/ linux-aws/ linux-aws-5.15/ linux-azure/ linux-azure-5.15/ linux-bluefield/ linux-gcp/ linux-gcp-5.15/ linux-gkeop/ linux-gkeop-5.15/ linux-hwe-5.15/ linux-ibm/ linux-ibm-5.15/ linux-intel-iotg-5.15/ linux-iot/ linux-kvm/ linux-lowlatency-hwe-5.15/ linux-nvidia-tegra-5.15/ linux-oracle/ linux-oracle-5.15/ linux-raspi/ linux-riscv-5.15/ linux-xilinx-zynqmp/ linux-aws-5.11/ linux-aws-5.13/ linux-aws-5.8/ linux-azure-5.11/ linux-azure-5.13/ linux-azure-5.8/ linux-azure-fde/ linux-gcp-5.11/ linux-gcp-5.13/ linux-gcp-5.8/ linux-gke/ linux-gke-5.15/ linux-hwe-5.11/ linux-hwe-5.13/ linux-hwe-5.8/ linux-intel-5.13/ linux-oem-5.10/ linux-oem-5.13/ linux-oem-5.14/ linux-oem-5.6/ linux-oracle-5.11/ linux-oracle-5.13/ linux-oracle-5.8/ linux-raspi2/ linux-riscv/ linux-riscv-5.11/ linux-riscv-5.8/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux/ linux-allwinner-5.19/ linux-aws/ linux-aws-5.19/ linux-aws-6.2/ linux-azure/ linux-azure-5.19/ linux-azure-6.2/ linux-azure-fde/ linux-azure-fde-5.19/ linux-azure-fde-6.2/ linux-gcp/ linux-gcp-5.19/ linux-gcp-6.2/ linux-gke/ linux-gkeop/ linux-hwe-5.19/ linux-hwe-6.2/ linux-ibm/ linux-intel-iotg/ linux-kvm/ linux-lowlatency/ linux-lowlatency-hwe-5.19/ linux-lowlatency-hwe-6.2/ linux-nvidia/ linux-nvidia-6.2/ linux-nvidia-tegra/ linux-nvidia-tegra-igx/ linux-oem-5.17/ linux-oem-6.0/ linux-oem-6.1/ linux-oracle/ linux-raspi/ linux-realtime/ linux-riscv/ linux-riscv-5.19/ linux-starfive-5.19/ linux-xilinx-zynqmp/ linux-bluefield/ linux-fips/ linux-intel-iot-realtime/ linux-realtime/ linux-raspi-realtime
cloud-init, cloud-init, cloud-init, cloud-init, cloud-init, cloud-init, cloud-init
Security update for cloud-init
cloud-init/ cloud-init/ cloud-init/ cloud-init/ cloud-init/ cloud-init/ cloud-init
Security update for cloud-init
Shescape potential environment variable exposure on Windows with CMD
Shescape potential environment variable exposure on Windows with CMD
Tauri vulnerable to Regression on Filesystem Scope Checks for Dotfiles
Tauri vulnerable to Regression on Filesystem Scope Checks for Dotfiles
When setting EntityOptions.apiPrefilter to a function, the filter is not applied to API requests for a resource by Id
When setting EntityOptions.apiPrefilter to a function, the filter is not applied to API requests for a resource by Id
XPlatform Wiki vulnerable to cross-site scripting via xcontinue parameter in preview actions template
XPlatform Wiki vulnerable to cross-site scripting via xcontinue parameter in preview actions template
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in DeleteApplication page
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in DeleteApplication page
XWiki Platform vulnerable to reflected cross-site scripting via back and xcontinue parameters in resubmit template
XWiki Platform vulnerable to reflected cross-site scripting via back and xcontinue parameters in resubmit template
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in deletespace template
XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in deletespace template
