Cross Site Scripting vulnerabiltiy in Badaso v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the title parameter in the new book and edit book function.Read More ...
Continue ReadingAugust 28, 2023
theme volty tvcmsvideotab up to v4.0.0 was discovered to contain a SQL injection vulnerability via the component TvcmsVideoTabConfirmDeleteModuleFrontController::run().Read More ...
Continue ReadingAugust 28, 2023
jupyter-server is the backend for Jupyter web applications. Improper cross-site credential checks on `/files/` URLs could allow exposure of certain file contents, or accessing files when opening untru ...
Continue ReadingAugust 28, 2023
Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local attackers to execute arbitrary code.Read More ...
Continue ReadingAugust 28, 2023
Cross Site Scripting vulnerability in Spipu HTML2PDF before v.5.2.8 allows a remote attacker to execute arbitrary code via a crafted script to the forms.php.Read More ...
Continue ReadingAugust 28, 2023
GitPython is a python library used to interact with Git repositories. When resolving a program, Python/Windows look for the current working directory, and after that the PATH environment. GitPython de ...
Continue ReadingAugust 28, 2023
GPAC v2.3-DEV-rev449-g5948e4f70-master was discovered to contain a heap-use-after-free via the gf_bs_align function at bitstream.c. This vulnerability allows attackers to cause a Denial of Service (Do ...
Continue ReadingAugust 28, 2023
An issue in the CPIO command of Busybox v1.33.2 allows attackers to execute a directory traversal.Read More ...
Continue ReadingAugust 28, 2023
Back to Main