Products: 6
    Vulnerabilities: 11
    Known Exploited: 0
    2
    Critical Level Threats
    2
    High Level Threats
    7
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-1781

    There is a XXE in W3CSS Validator versions before cssval-20250226 that allows an attacker to use specially-crafted XML objects to coerce server-side request forgery (SSRF).  This could be exploited to read arbitrary local files if an attacker has access to exception messages.

    Last Modified: Aug 01, 2025
    Published: Mar 28, 2025

    CVE-2020-4070

    Cross-site Scripting in CSS Validator

    Last Modified: Nov 21, 2024
    Published: Jun 22, 2020

    CVE-2008-6005

    Multiple buffer overflows in the CheckUniqueName function in W3C Amaya Web Browser 10.0.1, and possibly other versions including 11.0.1, might allow remote attackers to execute arbitrary code via "duplicated" attribute value inputs.

    Last Modified: Apr 23, 2026
    Published: Jan 28, 2009

    CVE-2008-5282

    Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF attribute, and (2) a DIV tag with a long id attribute.

    Last Modified: Apr 23, 2026
    Published: Nov 29, 2008

    CVE-2006-1900

    Multiple buffer overflows in World Wide Web Consortium (W3C) Amaya 9.4, and possibly other versions including 8.x before 8.8.5, allow remote attackers to execute arbitrary code via a long value in (1) the COMPACT attribute of the COLGROUP element, (2) the ROWS attribute of the TEXTAREA element, and (3) the COLOR attribute of the LEGEND element; and via other unspecified attack vectors consisting of "dozens of possible snippets."

    Last Modified: Apr 16, 2026
    Published: Apr 20, 2006
    Items Per Page
    W3c Vulnerabilities & Security CVEs | CVE-DB