NA - CVE-2024-13194 - A vulnerability was found in Sucms 1.0 and...
A vulnerability was found in Sucms 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/admin_members.php?ac=search. The manipulation of the...
NA - CVE-2024-13195 - A vulnerability was found in donglight...
A vulnerability was found in donglight bookstore???????? 1.0.0. It has been classified as critical. This affects the function getHtml of the file src/main/java/org/zdd/bookstore/rawl/HttpUtil.java....
NA - CVE-2024-13196 - A vulnerability was found in donglight...
A vulnerability was found in donglight bookstore???????? 1.0.0. It has been declared as problematic. This vulnerability affects the function BookSearchList of the file...
NA - CVE-2024-13197 - A vulnerability was found in donglight...
A vulnerability was found in donglight bookstore???????? 1.0.0. It has been rated as problematic. This issue affects the function updateUser of the file...
NA - CVE-2023-23913 - There is a potential DOM based cross-site...
There is a potential DOM based cross-site scripting issue in rails-ujs which leverages the Clipboard API to target HTML elements that are assigned the contenteditable attribute. This has the...
NA - CVE-2023-28362 - The redirect_to method in Rails allows provided...
The redirect_to method in Rails allows provided values to contain characters which are not legal in an HTTP header value. This results in the potential for downstream services which enforce RFC...
NA - CVE-2023-38037 - ActiveSupport::EncryptedFile writes contents...
ActiveSupport::EncryptedFile writes contents that will be encrypted to a temporary file. The temporary file's permissions are defaulted to the user's current `umask` settings, meaning...