CVE-2021-44648
- EPSS 0.15%
- Veröffentlicht 12.01.2022 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:31:18
GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12.
CVE-2022-0173
- EPSS 0.36%
- Veröffentlicht 11.01.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:38:04
radare2 is vulnerable to Out-of-bounds Read
CVE-2021-44647
- EPSS 0.02%
- Veröffentlicht 11.01.2022 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:31:18
Lua v5.4.3 and above are affected by SEGV by type confusion in funcnamefromcode function in ldebug.c which can cause a local denial of service.
CVE-2022-21668
- EPSS 1.48%
- Veröffentlicht 10.01.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:45:11
pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in pipenv's parsing of requirements files allows an attacker to insert a specially crafted string inside a comment anywhere within a r...
CVE-2021-29454
- EPSS 0.64%
- Veröffentlicht 10.01.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:01:08
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.42 and 4.0.2, template authors could run arbitrary PHP code by crafting a malicious math string. If a math strin...
CVE-2021-21408
- EPSS 0.47%
- Veröffentlicht 10.01.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 05:48:17
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.43 and 4.0.3, template authors could run restricted static php methods. Users should upgrade to version 3.1.43 o...
CVE-2022-0156
- EPSS 0.22%
- Veröffentlicht 10.01.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:38:01
vim is vulnerable to Use After Free
CVE-2022-0157
- EPSS 0.4%
- Veröffentlicht 10.01.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:38:01
phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-0158
- EPSS 0.23%
- Veröffentlicht 10.01.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:38:01
vim is vulnerable to Heap-based Buffer Overflow
CVE-2022-21663
- EPSS 0.33%
- Veröffentlicht 06.01.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:45:11
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. On a multisite, users with Super Admin role can bypass explicit/additional hardening under certain conditions through object injection. T...