NA - CVE-2023-40581 - yt-dlp is a youtube-dl fork with additional...
yt-dlp is a youtube-dl fork with additional features and fixes. yt-dlp allows the user to provide shell command lines to be executed at various stages in its download steps through the `--exec`...
NA - CVE-2023-42817 - Pimcore admin-ui-classic-bundle provides a...
Pimcore admin-ui-classic-bundle provides a Backend UI for Pimcore. The translation value with text including “%s” (from “%suggest%) is parsed by sprintf() even though it’s supposed to be output...
NA - CVE-2023-43319 - Cross Site Scripting (XSS) vulnerability in the...
Cross Site Scripting (XSS) vulnerability in the Sign-In page of IceWarp WebClient 10.3.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the username...
NA - CVE-2022-4137 - A reflected cross-site scripting (XSS)...
A reflected cross-site scripting (XSS) vulnerability was found in the 'oob' OAuth endpoint due to incorrect null-byte handling. This issue allows a malicious link to insert an arbitrary...
NA - CVE-2022-4244 - A flaw was found in codeplex-codehaus. A...
A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files...