2491
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 have a cross-site scripting (XSS) vulnerability of the hyperlink base in t…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56411
|
2025-01-4 03:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2492
|
7.8 |
HIGH
Local
|
ashlar
|
graphite
|
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13051
|
2025-01-4 02:41 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2493
|
7.8 |
HIGH
Local
|
ashlar
|
graphite
|
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13050
|
2025-01-4 02:41 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2494
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellu…
|
CWE-843
Type Confusion
|
CVE-2024-13049
|
2025-01-4 02:39 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2495
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13048
|
2025-01-4 02:39 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2496
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellu…
|
CWE-843
Type Confusion
|
CVE-2024-13047
|
2025-01-4 02:39 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2497
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt CO File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13046
|
2025-01-4 02:38 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2498
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13045
|
2025-01-4 02:38 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2499
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13044
|
2025-01-4 02:38 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2500
|
- |
|
-
|
-
|
Trix is a what-you-see-is-what-you-get rich text editor for everyday writing. Versions prior to 2.1.12 are vulnerable to cross-site scripting when pasting malicious code in the link field. An attacke…
|
CWE-79
Cross-site Scripting
|
CVE-2025-21610
|
2025-01-4 02:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|