USN-5967-1: object-path vulnerabilities
It was discovered that the set() method in object-path could be corrupted as a result of prototype pollution by sending a message to the parent...
reposurgeon-4.35-1.fc38
FEDORA-2023-76d18cf2fa Packages in this update: reposurgeon-4.35-1.fc38 Update description: 4.35: 2023-03-21 Document an importand gotcha about working with CVS. Clean up some annoyances in the build...
Realtek Jungle SDK Vulnerability (CVE-2021-35394) Still Actively being Exploited in the Wild
FortiGuard Labs has observed threat actors continuing to exploit an arbitrary command injection vulnerability in Realtek Jungle SDK (CVE-2021-35394). Successful exploitation of this vulnerability allows...
CVE-2022-37337
A command execution vulnerability exists in the access control functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted HTTP request can lead to arbitrary command...
CVE-2022-38452
A command execution vulnerability exists in the hidden telnet service functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted network request can lead to arbitrary...
CVE-2022-38458
A cleartext transmission vulnerability exists in the Remote Management functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted man-in-the-middle attack can lead to a disclosure...
CVE-2018-25082
A vulnerability was found in zwczou WeChat SDK Python 0.3.0 and classified as critical. This issue affects the function validate/to_xml. The manipulation leads to xml...
CVE-2022-36429
A command execution vulnerability exists in the ubus backend communications functionality of Netgear Orbi Satellite RBS750 4.6.8.5. A specially-crafted JSON object can lead to arbitrary...
xen-4.17.0-8.fc38
FEDORA-2023-703f133eb3 Packages in this update: xen-4.17.0-8.fc38 Update description: 3 security issues (#2180425) x86 shadow plus log-dirty mode use-after-free [XSA-427, CVE-2022-42332] x86/HVM pinned cache attributes mis-handling...
moodle-3.11.13-1.fc36
FEDORA-2023-d9c13996b2 Packages in this update: moodle-3.11.13-1.fc36 Update description: Fixes for multiple CVEs. Read More