An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.Read More ...
Continue ReadingMay 22, 2023
iden3 snarkjs through 0.6.11 allows double spending because there is no validation that the publicSignals length is less than the field modulus.Read More ...
Continue ReadingMay 22, 2023
There is an LDAP bind credentials exposure on KACE Systems Deployment and Remote Site appliances 9.0.146. The captured credentials may provide a higher privilege level on the Active Directory domain. ...
Continue ReadingMay 22, 2023
An issue was discovered in hledger before 1.23. A Stored Cross-Site Scripting (XSS) vulnerability exists in toBloodhoundJson that allows an attacker to execute JavaScript by encoding user-controlled v ...
Continue ReadingMay 21, 2023
When Akka HTTP before 10.5.2 accepts file uploads via the FileUploadDirectives.fileUploadAll directive, the temporary file it creates has too weak permissions: it is readable by other users on Linux o ...
Continue ReadingMay 21, 2023
A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnerability affects unknown code of the file search_teacher_result.php of the compone ...
Continue ReadingMay 21, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Bill Erickson Gallery Metabox plugin Read More ...
Continue ReadingMay 21, 2023
Cross-Site Request Forgery (CSRF) vulnerability in LJ Apps WP Airbnb Review Slider plugin Read More ...
Continue ReadingMay 21, 2023
Back to Main