871
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 are vulnerable to unauthorized reflected cross-site scripting in the `Curr…
|
-
|
CVE-2024-56409
|
2025-01-4 04:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
872
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 are vulnerable to unauthorized reflected cross-site scripting in the `Acco…
|
-
|
CVE-2024-56366
|
2025-01-4 04:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
873
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 are vulnerable to unauthorized reflected cross-site scripting in the const…
|
-
|
CVE-2024-56365
|
2025-01-4 04:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
874
|
- |
|
-
|
-
|
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/de…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0195
|
2025-01-4 03:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
875
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 are vulnerable to bypass of the cross-site scripting sanitizer using the j…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56412
|
2025-01-4 03:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
876
|
- |
|
-
|
-
|
PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.29.7 have a cross-site scripting (XSS) vulnerability of the hyperlink base in t…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56411
|
2025-01-4 03:15 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
877
|
7.8 |
HIGH
Local
|
ashlar
|
graphite
|
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13051
|
2025-01-4 02:41 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
878
|
7.8 |
HIGH
Local
|
ashlar
|
graphite
|
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13050
|
2025-01-4 02:41 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
879
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellu…
|
CWE-843
Type Confusion
|
CVE-2024-13049
|
2025-01-4 02:39 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
880
|
7.8 |
HIGH
Local
|
ashlar
|
cobalt
|
Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-13048
|
2025-01-4 02:39 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|