Open Source Vulnerabilities
pressbooks/pressbooks
Stored cross-site scripting in PressBooks
pressbooks/pressbooks
Stored cross-site scripting in PressBooks
openssl
Important: openssl security update
com.netflix.hollow:hollow
Insecure temporary file in Netflix OSS Hollow
com.netflix.hollow:hollow
Insecure temporary file in Netflix OSS Hollow
linux-aws, linux-azure, linux, linux-aws, linux-aws-hwe, linux-azure, linux-gcp, linux-hwe, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon, linux, linux-aws, linux-azure-4.15, linux-gcp-4.15, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
linux-aws/ linux-azure/ linux/ linux-aws/ linux-aws-hwe/ linux-azure/ linux-gcp/ linux-hwe/ linux-kvm/ linux-oracle/ linux-raspi2/ linux-snapdragon/ linux/ linux-aws/ linux-azure-4.15/ linux-gcp-4.15/ linux-kvm/ linux-oracle/ linux-raspi2/ linux-snapdragon
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
pillow
Out of bounds read in Pillow
pillow
Regular Expression Denial of Service (ReDoS) in Pillow
pillow
Regular Expression Denial of Service (ReDoS) in Pillow
pillow
Out-of-bounds Write in Pillow
pillow
Out of bounds read in Pillow
pillow
Out of bounds write in Pillow
pygments
Pygments vulnerable to Regular Expression Denial of Service (ReDoS)
pygments
Pygments vulnerable to Regular Expression Denial of Service (ReDoS)
reportlab
Server-side Request Forgery (SSRF) via img tags in reportlab
reportlab
Server-side Request Forgery (SSRF) via img tags in reportlab
kramdown
Remote code execution in Kramdown
linux-azure, linux-aws-hwe, linux-azure, linux-gcp, linux-hwe, linux-oracle, linux, linux-aws, linux-azure-4.15, linux-dell300x, linux-gcp-4.15, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-dell300x, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2 linux-snapdragon vulnerabilities
linux-azure/ linux-aws-hwe/ linux-azure/ linux-gcp/ linux-hwe/ linux-oracle/ linux/ linux-aws/ linux-azure-4.15/ linux-dell300x/ linux-gcp-4.15/ linux-kvm/ linux-oracle/ linux-raspi2/ linux-snapdragon
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-dell300x, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2 linux-snapdragon vulnerabilities
twitter-stream
Improper Certificate Validation in twitter-stream
twitter-stream
Improper Certificate Validation in twitter-stream
y18n, y18n, y18n
Prototype Pollution in y18n
underscore, underscore, underscore
js-jquery
CVE-2021-23358 affecting package js-jquery 3.5.0-4
underscore, underscore, underscore, underscore
squid3, squid3, squid
squid, squid3 vulnerabilities
webkit2gtk, webkit2gtk
webkit2gtk vulnerabilities
MozillaFirefox
Security update for MozillaFirefox
envoy
ASSERT: bufferRemainingSize() >= length.
libredwg
Segv on unknown address in dwg_free_MTEXTATTRIBUTEOBJECTCONTEXTDATA_private
libredwg
Segv on unknown address in dwg_free_MTEXTATTRIBUTEOBJECTCONTEXTDATA_private
harfbuzz
Heap-buffer-overflow in BEInt<unsigned short, 2>::operator unsigned short
harfbuzz
Heap-buffer-overflow in BEInt<unsigned short, 2>::operator unsigned short
Global-buffer-overflow in mode_sense_page
Uncaught exception in com.fasterxml.jackson.databind.deser.std.BaseNodeDeserializer.deserializeObject
Uncaught exception in com.fasterxml.jackson.databind.deser.std.BaseNodeDeserializer.deserializeObject
