Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 624 625 626 627 628 629 630 631 632 633 [634] 635 636 637 638 639 640 641 642 643 644 ... Result(s) : 43431

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.8 2022-03-17 CVE-2022-0749 cve This affects all versions of package SinGooCMS.Utility. The socket client in the package can pass in the payload via the user-controllable input after it has been established, b...
9.8 2022-03-17 CVE-2022-0748 cve The package post-loader from 0.0.0 are vulnerable to Arbitrary Code Execution which uses a markdown parser in an unsafe way so that any javascript code inside the markdown input...
9.8 2022-03-17 CVE-2021-44908 cve SailsJS Sails.js
9.8 2022-03-17 CVE-2021-23632 cve All versions of package git are vulnerable to Remote Code Execution (RCE) due to missing sanitization in the Git.git method, which allows execution of OS commands rather than ju...
9.8 2022-03-17 CVE-2021-44906 cve Minimist
9.8 2022-03-17 CVE-2020-15591 cve fexsrv in F*EX (aka Frams' Fast File EXchange) before fex-20160919_2 allows eval injection (for unauthenticated remote code execution).
9.8 2022-03-17 CVE-2022-26501 cve Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2).
9.8 2022-03-17 CVE-2021-45040 cve The Spatie media-library-pro library through 1.17.10 and 2.x through 2.1.6 for Laravel allows remote attackers to upload executable files via the uploads route.
9.8 2022-03-17 CVE-2021-44088 cve An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.
9.8 2022-03-17 CVE-2021-44087 cve A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously c...
9.8 2022-03-17 CVE-2022-25760 cve All versions of package accesslog are vulnerable to Arbitrary Code Injection due to the usage of the Function constructor without input sanitization. If (attacker-controlled) us...
9.8 2022-03-17 CVE-2021-44259 cve A vulnerability is in the 'wx.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to access this page without any...
9.8 2022-03-17 CVE-2022-1000 cve Path Traversal in GitHub repository prasathmani/tinyfilemanager prior to 2.4.7.
9.8 2022-03-17 CVE-2022-24074 cve Whale Bridge, a default extension in Whale browser before 3.12.129.18, allowed to receive any SendMessage request from the content script itself that could lead to controlling W...
9.8 2022-03-17 CVE-2022-22273 cve Improper neutralization of Special Elements leading to OS Command Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products and older firmware versions o...
9.8 2022-03-16 CVE-2021-43958 cve Various rest resources in Fisheye and Crucible before version 4.8.9 allowed remote attackers to brute force user login credentials as rest resources did not check if users were ...
9.8 2022-03-16 CVE-2021-39723 cve Product: AndroidVersions: Android kernelAndroid ID: A-209014813References: N/A
9.3 2022-03-16 CVE-2021-40736 cve Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the context of the current user....
9.3 2022-03-16 CVE-2021-40734 cve Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a SVG file, potentially resulting in arbitrary code execution in the cont...
9.3 2022-03-16 CVE-2021-40735 cve Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the context of the current user....
Page(s) : 1 ... 624 625 626 627 628 629 630 631 632 633 [634] 635 636 637 638 639 640 641 642 643 644 ... Result(s) : 43431