CVE-2022-0699 A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases
The vendor has confirmed that there are no active attacks against this issue. Users are advised to upgrade to the latest release. CVE-2017-9832 - Double-free
CVE-2022-42341 ColdFusion versions 14 and earlier are affected by an XXE vulnerability that could lead to arbitrary file system read.
If a user visited a malicious website, opened a malicious advertiser tag, or browsed to a malicious URL within an ad unit, an attacker could
CVE-2022-38419 ColdFusion versions 14 and earlier are affected by an XXE vulnerability that could lead to arbitrary file system read.
If a user visited a malicious website, opened a malicious advertiser tag, or browsed to a malicious URL within an ad unit, an attacker could
CVE-2022-40921 DedeCMS V5.7.99 had an arbitrary file upload vulnerability.
A hacker could exploit this weakness to upload arbitrary files, conduct a XXE attack, conduct a XSS attack, or obtain sensitive information. Furthermore, it was
CVE-2022-40943 Dairy Farm Shop Management System 1.0 is vulnerable to SQL Injection via bwdate-report-ds.php file.
SQL Injection occurs when a hacker injects malicious SQL code into a database to manipulate or access data that should be protected. The most serious
Episode
00:00:00
00:00:00