CVE-2021-28237
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decode_preR13. Devamını Oku
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decode_preR13. Devamını Oku
LibreDWG v0.12.3 was discovered to contain a NULL pointer dereference via out_dxfb.c. Devamını Oku
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decode_preR13. Devamını Oku
The ClickBank Affiliate Ads WordPress plugin through 1.20 does not have CSRF check when saving its settings, allowing attacker to make logged in admin change…
The ClickBank Affiliate Ads WordPress plugin through 1.20 does not escape its settings, allowing high privilege users to perform Cross-Site Scripting attacks even when the…
The ClickBank Affiliate Ads WordPress plugin through 1.20 does not have CSRF check when saving its settings, allowing attacker to make logged in admin change…
The ClickBank Affiliate Ads WordPress plugin through 1.20 does not escape its settings, allowing high privilege users to perform Cross-Site Scripting attacks even when the…
Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which…
Authenticated users with Administrator or Developer roles may execute OS commands by Groovy Script which uses Groovy lib to render a webpage. The groovy script…
Authenticated users with Site roles may inject XSS scripts via file names that will execute in the browser for this and other users of the…