Open Source Vulnerabilities
xs
Heap-buffer-overflow in fxGetNextEntity
microweber/microweber
Microweber Stored Cross-site Scripting before v1.2.20
microweber/microweber
Microweber Stored Cross-site Scripting before v1.2.20
github.com/caddyserver/caddy
Withdrawn Advisory: Out-of-bounds Read can lead to client side denial of service
github.com/caddyserver/caddy
Withdrawn Advisory: Out-of-bounds Read can lead to client side denial of service
microweber/microweber
Microweber before 1.2.21 vulnerable to reflected XSS
microweber/microweber
Microweber before 1.2.21 vulnerable to reflected XSS
cras
Heap-use-after-free in cras_iodev_list_disable_dev
prestashop/prestashop
Duplicate Advisory GHSA-hrgx-p36p-89q4
prestashop/prestashop
Duplicate Advisory GHSA-hrgx-p36p-89q4
convert-svg-core
convert-svg-core vulnerable to remote code injection
convert-svg-core
convert-svg-core vulnerable to remote code injection
io.dataease:dataease-plugin-common
Dataease before 1.11.2 allows arbitrary code execution via crafter plugin
io.dataease:dataease-plugin-common
Dataease before 1.11.2 allows arbitrary code execution via crafter plugin
io.dataease:dataease-plugin-common
Dataease before 1.11.2 access control issue allows attackers to arbitrarily uninstall plugin
io.dataease:dataease-plugin-common
Dataease before 1.11.2 access control issue allows attackers to arbitrarily uninstall plugin
io.dataease:dataease-plugin-common
SQL Injection found in Dataease
io.dataease:dataease-plugin-common
SQL Injection found in Dataease
io.dataease:dataease-plugin-common
Dataease v1.11.1 SQL Injection via parameter dataSourceId
io.dataease:dataease-plugin-common
Dataease v1.11.1 SQL Injection via parameter dataSourceId
