Skip to content

トピトピニュース

Header Image
Category

HIGH

381 Posts

Featured

Posted byGitHub
[phpxmlrpc/phpxmlrpc] code injection in phpxmlrpc/phpxmlrpc
Posted byGitHub
[ghost] ghost vulnerable to unauthorized newsletter modification via improper access controls
Posted byGitHub
[microweber/microweber] Account Takeover Through Password Reset Poisoning
Posted byGitHub
[apache-airflow] OS Command Injection in Apache Airflow

[com.fasterxml.jackson.core:jackson-databind] Uncontrolled Resource Consumption in Jackson-databind

  • Posted inHIGH
  • Posted byGitHub
  • 10/03/202211/18/2022

In FasterXML jackson-databind before 2.12.7.1 and in 2.13.x before 2.13.4.1 resource exhaustion can occur because of a lack of a check in primitive value deserializers to avoid deep wrapper array nesting, when the UNWRAP_SINGLE_VALUE_ARRAYS feature is …

[github.com/cloudflare/goflow/v3/decoders/sflow] Cloudflare GoFlow vulnerable to a Denial of Service in the sflow packet handling package

  • Posted inHIGH
  • Posted byGitHub
  • 10/02/202210/05/2022

Impact
The sflow decode package prior to version 3.4.4 is vulnerable to a denial of service attack. Attackers can craft malformed packets causing the process to consume huge amounts of memory resulting in a denial of service.
Patches
Version 3.4.4 cont…

[css-what] css-what vulnerable to ReDoS due to use of insecure regular expression

  • Posted inHIGH
  • Posted byGitHub
  • 10/01/202210/05/2022

The package css-what before 2.1.3 is vulnerable to Regular Expression Denial of Service (ReDoS) due to the use of insecure regular expression in the re_attr variable of index.js. The exploitation of this vulnerability could be triggered via the parse f…

[react-native-reanimated] react-native-reanimated vulnerable to ReDoS

  • Posted inHIGH
  • Posted byGitHub
  • 10/01/202210/21/2022

The package react-native-reanimated before 3.0.0-rc.1 is vulnerable to Regular Expression Denial of Service (ReDoS) due to improper usage of regular expression in the parser of Colors.js.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-24373
http…

[rdiffweb] rdiffweb’s lack of token name length limit can result in DoS or memory corruption

  • Posted inHIGH
  • Posted byGitHub
  • 10/01/202210/05/2022

rdiffweb prior to 2.5.0a3 is vulnerable to Allocation of Resources Without Limits or Throttling. A lack of limit in the length of the Token name parameter can result in denial of service or memory corruption. Version 2.5.0a3 fixes this issue.
Reference…

[matrix-nio] When matrix-nio receives forwarded room keys, the receiver doesn’t check if it requested the key from the forwarder

  • Posted inHIGH
  • Posted byGitHub
  • 10/01/202210/01/2022

When matrix-nio before 0.20 requests a room key from our devices, it correctly accepts key forwards only if they are a response to a previous request. However, it doesn’t check that the device that responded matches the device the key was requested fro…

[matrix-js-sdk] matrix-js-sdk subject to user impersonation due to key/device identifier confusion in SAS verification

  • Posted inHIGH
  • Posted byGitHub
  • 10/01/202210/01/2022

Impact
An attacker cooperating with a malicious homeserver could interfere with the verification flow between two users, injecting its own cross-signing user identity in place of one of the users’ identities, leading to the other device trusting/verify…

[twig/twig] Twig may load a template outside a configured directory when using the filesystem loader

  • Posted inHIGH
  • Posted byGitHub
  • 09/30/202210/13/2022

Description
When using the filesystem loader to load templates for which the name is a user input, it is possible to use the source or include statement to read arbitrary files from outside the templates directory when using a namespace like @somewhere…

[com.wire.bots:lithium] Lithium vulnerable to Cross Site Scripting in provided Swagger-UI

  • Posted inHIGH
  • Posted byGitHub
  • 09/30/202210/06/2022

Impact
A XSS vulnerability in the provided (outdated) Swagger-UI is exploitable in applications using lithium with Swagger-UI enabled.
This allows an attacker gain Remote Code Execution (RCE) and potentially exfiltrate secrets in the context of this s…

[org.matrix.android:matrix-android-sdk2] matrix-android-sdk2 vulnerable to Olm/Megolm protocol confusion

  • Posted inHIGH
  • Posted byGitHub
  • 09/30/202209/30/2022

Impact
An attacker cooperating with a malicious homeserver can construct messages that legitimately appear to have come from another person, without any indication such as a grey shield.
Additionally, a sophisticated attacker cooperating with a malici…

Posts navigation

Previous Posts 1 … 10 11 12 13 14 … 39 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close