CVE-2023-21940
- EPSS 0.1%
- Veröffentlicht 18.04.2023 20:15:14
- Zuletzt bearbeitet 21.11.2024 07:43:57
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.32 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via...
CVE-2023-21919
- EPSS 0.1%
- Veröffentlicht 18.04.2023 20:15:13
- Zuletzt bearbeitet 21.11.2024 07:43:54
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocol...
CVE-2023-21920
- EPSS 0.1%
- Veröffentlicht 18.04.2023 20:15:13
- Zuletzt bearbeitet 21.11.2024 07:43:54
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pr...
CVE-2023-21929
- EPSS 0.12%
- Veröffentlicht 18.04.2023 20:15:13
- Zuletzt bearbeitet 21.11.2024 07:43:56
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocol...
CVE-2023-21911
- EPSS 0.1%
- Veröffentlicht 18.04.2023 20:15:12
- Zuletzt bearbeitet 21.11.2024 07:43:53
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to ...
CVE-2023-0482
- EPSS 0.04%
- Veröffentlicht 17.02.2023 22:15:11
- Zuletzt bearbeitet 18.03.2025 16:15:15
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.
CVE-2022-43551
- EPSS 0.03%
- Veröffentlicht 23.12.2022 15:15:15
- Zuletzt bearbeitet 21.11.2024 07:26:45
A vulnerability exists in curl <7.87.0 HSTS check that could be bypassed to trick it to keep using HTTP. Using its HSTS support, curl can be instructed to use HTTPS instead of using an insecure clear-text HTTP step even when HTTP is provided in the U...
CVE-2022-43680
- EPSS 0.31%
- Veröffentlicht 24.10.2022 14:15:53
- Zuletzt bearbeitet 30.05.2025 20:15:31
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
CVE-2022-39408
- EPSS 0.1%
- Veröffentlicht 18.10.2022 21:15:15
- Zuletzt bearbeitet 21.11.2024 07:18:14
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.30 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple prot...
CVE-2022-39410
- EPSS 0.1%
- Veröffentlicht 18.10.2022 21:15:15
- Zuletzt bearbeitet 21.11.2024 07:18:14
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.30 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple prot...