CVE-2020-27793
An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c. This could allow an attacker to cause a crash, and...
CVE-2020-27794
A double free issue was discovered in radare2 in cmd_info.c:cmd_info(). Successful exploitation could lead to modification of unexpected memory locations and potentially causing a crash....
CVE-2020-27795 (radare2)
A segmentation fault was discovered in radare2 with adf command. In libr/core/cmd_anal.c, when command "adf" has no or wrong argument, anal_fcn_data (core, input + 1)...
Re: typeorm CVE-2022-33171
Posted by Tobias Schneider on Aug 19 Someone should tell Snyk about the risks of "Supply Chain vulnerabilities" ... (and yes this is a vulnerability,...
Trovent Security Advisory 2110-01 / Insecure data storage in Polar Flow Android application
Posted by Stefan Pietsch on Aug 19 # Trovent Security Advisory 2110-01 # ##################################### Insecure data storage in Polar Flow Android application ####################################################### Overview ########...
APPLE-SA-2022-08-18-1 Safari 15.6.1
Posted by Apple Product Security via Fulldisclosure on Aug 19 APPLE-SA-2022-08-18-1 Safari 15.6.1 Safari 15.6.1 addresses the following issues. Information about the security content is...
APPLE-SA-2022-08-17-1 iOS 15.6.1 and iPadOS 15.6.1
Posted by Apple Product Security via Fulldisclosure on Aug 19 APPLE-SA-2022-08-17-1 iOS 15.6.1 and iPadOS 15.6.1 iOS 15.6.1 and iPadOS 15.6.1 addresses the following issues....
APPLE-SA-2022-08-17-2 macOS Monterey 12.5.1
Posted by Apple Product Security via Fulldisclosure on Aug 19 APPLE-SA-2022-08-17-2 macOS Monterey 12.5.1 macOS Monterey 12.5.1 addresses the following issues. Information about the security...
[CVE-2022-2536] Transposh <= 1.0.8.1 “tp_translation” Authorization Bypass
Posted by Julien Ahrens (RCE Security) on Aug 19 RCE Security Advisory https://www.rcesecurity.com 1. ADVISORY INFORMATION ======================= Product: Transposh WordPress Translation Vendor URL: https://wordpress.org/plugins/transposh-translation-filter-for-wordpress/ Type:...
CVE-2020-23466 (online_marriage_registration_system)
Cross Site Scripting (XSS) vulnerability exists in the phpgurukul Online Marriage Registration System 1.0 allows attackers to run arbitrary code via the wzipcode field. Read...