Search CVE reports


Toggle filters

321 – 330 of 501 results


CVE-2013-7451

Medium priority
Not affected

The validator module before 1.1.0 for Node.js allows remote attackers to bypass the XSS filter via a nested tag.

1 affected package

validator.js

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
validator.js
Show less packages

CVE-2016-8860

Medium priority

Some fixes available 1 of 3

Tor before 0.2.8.9 and 0.2.9.x before 0.2.9.4-alpha had internal functions that were entitled to expect that buf_t data had NUL termination, but the implementation of or/buffers.c did not ensure that NUL termination was present,...

1 affected package

tor

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor Not affected
Show less packages

CVE-2016-5598

Medium priority
Vulnerable

Unspecified vulnerability in the MySQL Connector component 2.1.3 and earlier and 2.0.4 and earlier in Oracle MySQL allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Connector/Python.

1 affected package

mysql-connector-python

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-python Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-5301

Medium priority

Some fixes available 3 of 7

The parse_chunk_header function in libtorrent before 1.1.1 allows remote attackers to cause a denial of service (crash) via a crafted (1) HTTP response or possibly a (2) UPnP broadcast.

1 affected package

libtorrent-rasterbar

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libtorrent-rasterbar Not affected Not affected Not affected
Show less packages

CVE-2015-5685

Medium priority
Vulnerable

The lazy_bdecode function in BitTorrent DHT bootstrap server (bootstrap-dht ) allows remote attackers to execute arbitrary code via a crafted packet, related to "improper indexing."

1 affected package

libtorrent-rasterbar

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libtorrent-rasterbar Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2015-2575

Medium priority
Vulnerable

Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.

1 affected package

mysql-connector-java

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-java Not in release Not in release Not in release Not in release Not affected
Show less packages

CVE-2014-3684

Medium priority

Some fixes available 2 of 4

The tm_adopt function in lib/Libifl/tm.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 5.0.x, 4.5.x, 4.2.x, and earlier does not validate that the owner of the process also owns the adopted...

1 affected package

torque

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torque Not in release
Show less packages

CVE-2014-3558

Medium priority
Ignored

ReflectionHelper (org.hibernate.validator.util.ReflectionHelper) in Hibernate Validator 4.1.0 before 4.2.1, 4.3.x before 4.3.2, and 5.x before 5.1.2 allows attackers to bypass Java Security Manager (JSM) restrictions and execute...

1 affected package

libhibernate-validator-java

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libhibernate-validator-java Not affected
Show less packages

CVE-2014-6029

Medium priority
Ignored

TorrentFlux 2.4 allows remote authenticated users to delete or modify other users' cookies via the cid parameter in an editCookies action to profile.php.

1 affected package

torrentflux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux Not in release
Show less packages

CVE-2014-6028

Medium priority
Ignored

TorrentFlux 2.4 allows remote authenticated users to obtain other users' cookies via the cid parameter in an editCookies action to profile.php.

1 affected package

torrentflux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux Not in release
Show less packages