Open Source Vulnerabilities
node-undici, node-undici, node-undici
vim, vim, vim, vim, vim, vim, vim
vim
CVE-2022-2819 affecting package vim for versions less than 9.0.0325-1
vim
CVE-2022-2819 affecting package vim for versions less than 9.0.0325-1
Session Fixation in namelessmc/nameless
Missing Critical Step in Authentication in namelessmc/nameless
Authentication Bypass by Primary Weakness in octoprint/octoprint
Authentication Bypass by Primary Weakness in octoprint/octoprint
Improper Removal of Sensitive Information Before Storage or Transfer in cockpit-hq/cockpit
Improper Removal of Sensitive Information Before Storage or Transfer in cockpit-hq/cockpit
open-iscsi
Security update for open-iscsi
dotnet6.0
Moderate: .NET 6.0 security, bug fix, and enhancement update
dotnet6.0
Moderate: .NET 6.0 security, bug fix, and enhancement update
dotnet3.1
Moderate: .NET Core 3.1 security, bug fix, and enhancement update
dotnet3.1
Moderate: .NET Core 3.1 security, bug fix, and enhancement update
pillow
Segv on unknown address in jpeg_read_scanlines
libredwg
Heap-buffer-overflow in dynapi_set_helper
aspnetcore-runtime-3.1, aspnetcore-targeting-pack-3.1, dotnet-apphost-pack-3.1, dotnet-hostfxr-3.1, dotnet-runtime-3.1, dotnet-sdk-3.1, dotnet-sdk-3.1-source-built-artifacts, dotnet-targeting-pack-3.1, dotnet-templates-3.1
Moderate: .NET Core 3.1 security, bug fix, and enhancement update
aspnetcore-runtime-3.1/ aspnetcore-targeting-pack-3.1/ dotnet-apphost-pack-3.1/ dotnet-hostfxr-3.1/ dotnet-runtime-3.1/ dotnet-sdk-3.1/ dotnet-sdk-3.1-source-built-artifacts/ dotnet-targeting-pack-3.1/ dotnet-templates-3.1
Moderate: .NET Core 3.1 security, bug fix, and enhancement update
aspnetcore-runtime-6.0, aspnetcore-targeting-pack-6.0, dotnet, dotnet-apphost-pack-6.0, dotnet-host, dotnet-hostfxr-6.0, dotnet-runtime-6.0, dotnet-sdk-6.0, dotnet-sdk-6.0-source-built-artifacts, dotnet-targeting-pack-6.0, dotnet-templates-6.0, netstandard-targeting-pack-2.1
Moderate: .NET 6.0 security, bug fix, and enhancement update
aspnetcore-runtime-6.0/ aspnetcore-targeting-pack-6.0/ dotnet/ dotnet-apphost-pack-6.0/ dotnet-host/ dotnet-hostfxr-6.0/ dotnet-runtime-6.0/ dotnet-sdk-6.0/ dotnet-sdk-6.0-source-built-artifacts/ dotnet-targeting-pack-6.0/ dotnet-templates-6.0/ netstandard-targeting-pack-2.1
Moderate: .NET 6.0 security, bug fix, and enhancement update
schroot, schroot, schroot, schroot
postgresql-9.3, postgresql-9.5, postgresql-10, postgresql-12, postgresql-14
postgresql-9.3/ postgresql-9.5/ postgresql-10/ postgresql-12/ postgresql-14
@openzeppelin/contracts, @openzeppelin/contracts-upgradeable
OpenZeppelin Contracts's Cross chain utilities for Arbitrum L2 see EOA calls as cross chain calls
@openzeppelin/contracts/ @openzeppelin/contracts-upgradeable
OpenZeppelin Contracts's Cross chain utilities for Arbitrum L2 see EOA calls as cross chain calls
Partial Path Traversal in com.github.jlangch:venice
@openzeppelin/contracts, openzeppelin-solidity, @openzeppelin/contracts-upgradeable, openzeppelin-eth
OpenZeppelin Contracts ERC165Checker unbounded gas consumption
@openzeppelin/contracts/ openzeppelin-solidity/ @openzeppelin/contracts-upgradeable/ openzeppelin-eth
OpenZeppelin Contracts ERC165Checker unbounded gas consumption
Authenticated remote code execution due to insecure deserialization (GHSL-2022-063)
Authenticated remote code execution due to insecure deserialization (GHSL-2022-063)
ECDSA signature malleability in OpenZeppelin Contracts
ndpi
Heap-buffer-overflow in ndpi_search_florensia
ghostscript
Heap-buffer-overflow in pdfi_read_cff_dict
ndpi
Heap-buffer-overflow in dissect_softether_host_fqdn
libucl
UNKNOWN READ in kh_resize_ucl_hash_node
Delimiter injection vulnerability in @actions/core exportVariable
Delimiter injection vulnerability in @actions/core exportVariable
openjdk-latest, openjdk-latest, openjdk-latest
openjdk-latest security update
openjdk-latest/ openjdk-latest/ openjdk-latest
openjdk-latest security update
