A vulnerability has been found in HumHub up to 1.0.1 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting (Reflected). The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.1 is able to address this issue. It is recommended to upgrade the affected component.
Category Archives: Advisories
CVE-2017-20018
A vulnerability was found in XAMPP 7.1.1-0-VC14. It has been classified as problematic. Affected is an unknown function of the component Installer. The manipulation leads to privilege escalation. It is possible to launch the attack remotely.
CVE-2017-20019
A vulnerability classified as problematic was found in Solare Solar-Log 2.8.4-56/3.5.2-85. Affected by this vulnerability is an unknown functionality of the component Config Handler. The manipulation leads to information disclosure. The attack can be launched remotely. Upgrading to version 3.5.3-86 is able to address this issue. It is recommended to upgrade the affected component.
CVE-2017-20020
A vulnerability, which was classified as problematic, has been found in Solare Solar-Log 2.8.4-56/3.5.2-85. Affected by this issue is some unknown functionality. The manipulation leads to cross site request forgery. The attack may be launched remotely. Upgrading to version 3.5.3-86 is able to address this issue. It is recommended to upgrade the affected component.
python3-docs-3.10.5-1.fc36 python3.10-3.10.5-2.fc36
FEDORA-2022-9da5703d22
Packages in this update:
python3.10-3.10.5-2.fc36
python3-docs-3.10.5-1.fc36
Update description:
This is the fourth maintenance release of Python 3.10.
https://docs.python.org/3.10/whatsnew/changelog.html#python-3-10-5-final
Security fix for CVE-2015-20107
python3.10-3.10.5-2.fc37
FEDORA-2022-dab4c0bcb5
Packages in this update:
python3.10-3.10.5-2.fc37
Update description:
Automatic update for python3.10-3.10.5-2.fc37.
Changelog
* Thu Jun 9 2022 Charalampos Stratakis <cstratak@redhat.com> – 3.10.5-2
– Security fix for CVE-2015-20107
Resolves: rhbz#2075390
kernel-5.17.14-200.fc35
FEDORA-2022-548484eeb9
Packages in this update:
kernel-5.17.14-200.fc35
Update description:
The 5.17.14 stable kernel update contains a number of important fixes across the tree.
kernel-5.17.14-300.fc36
FEDORA-2022-b8b1e358e1
Packages in this update:
kernel-5.17.14-300.fc36
Update description:
The 5.17.14 stable kernel update contains a number of important fixes across the tree.
CVE-2016-15002
A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of the component Cookie Handler. The manipulation of the argument HasServerEdit/IsAdmin leads to privilege escalation. It is possible to initiate the attack remotely.
CVE-2019-25064
A vulnerability was found in CoreHR Core Portal up to 27.0.7. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site request forgery. It is possible to launch the attack remotely. Upgrading to version 27.0.8 is able to address this issue. It is recommended to upgrade the affected component.