Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
The Matrix specification before 1.16 (i.e., with a room version before 12 and State Resolution before 2.1) has deficient state resolution
The snow crate before 0.9.5 for Rust, when stateful TransportState is used, allows incrementing a nonce and thereby denying message delivery
hw/pci/pcie_sriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to CVE-2024-26327
External Control of Critical State Data in GitLab
External Control of Critical State Data (CWE-642) in the Controller 6000 and Controller 7000 diagnostic web interface allows an authenticated user ...
Remote Code Execution
Junos Fusion: A Satellite Device can be controlled by rewiring it to a foreign AD causing a DoS
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability
GlobalProtect on MacOS: Local denial-of-service (DoS) vulnerability.
An invalid authentication sequence could result in the hostapd process terminating due to missing state validation steps
Cisco HyperFlex Software Static Signing Key Vulnerability
html-janitor node module suffers from an External Control of Critical State Data vulnerability via user-control of the '_sanitized' variable causin...