Issue summary: The AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries which are unauthenticated as a consequence. Impact summary: Applications that use ...
Continue ReadingJuly 14, 2023
Improper Input Validation in the hyperlink interpretation in Savoir-faire Linux's Jami (version 20222284) on Windows. This allows an attacker to send a custom HTML anchor tag to pass a string v ...
Continue ReadingJuly 14, 2023
SQL Injection in GitHub repository pimcore/pimcore prior to 10.5.24.Read More ...
Continue ReadingJuly 14, 2023
The "nickname" field within Savoir-faire Linux's Jami application is susceptible to a failed state when a user inserts special characters into the field. When present, these special characters, make i ...
Continue ReadingJuly 14, 2023
Cross-site Scripting (XSS) - DOM in GitHub repository plaidweb/webmention.js prior to 0.5.5.Read More ...
Continue ReadingJuly 14, 2023
The "Buy Me a Coffee â Button and Widget Plugin" plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 3.6 due to insufficient sanitization and escaping on ...
Continue ReadingJuly 14, 2023
Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral Read More ...
Continue ReadingJuly 14, 2023
Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral Read More ...
Continue ReadingJuly 14, 2023
Back to Main