1111
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal TacJS allows Cross-Site Scripting (XSS).This issue affects TacJS: from 0.0.0 before 6.5.0.
|
-
|
CVE-2024-13252
|
2025-01-10 06:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1112
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Coffee allows Cross-Site Scripting (XSS).This issue affects Coffee: from 0.0.0 before 1.4.…
|
-
|
CVE-2024-13247
|
2025-01-10 06:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1113
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal CKEditor 4 LTS - WYSIWYG HTML editor allows Cross-Site Scripting (XSS).This issue affects …
|
-
|
CVE-2024-13245
|
2025-01-10 06:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1114
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Typogrify allows Cross-Site Scripting (XSS).This issue affects Typogrify: from 0.0.0 befor…
|
-
|
CVE-2024-13238
|
2025-01-10 06:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1115
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal File Entity (fieldable files) allows Cross-Site Scripting (XSS).This issue affects File En…
|
-
|
CVE-2024-13237
|
2025-01-10 06:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1116
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ACPI: x86: Add adev NULL check to acpi_quirk_skip_serdev_enumeration()
acpi_dev_hid_match() does not check for adev == NULL, dere…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-56782
|
2025-01-10 06:00 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1117
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
btrfs: add a sanity check for btrfs root in btrfs_search_slot()
Syzbot reports a null-ptr-deref in btrfs_search_slot().
The repr…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-56774
|
2025-01-10 06:00 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1118
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
kunit: Fix potential null dereference in kunit_device_driver_test()
kunit_kzalloc() may return a NULL pointer, dereferencing it w…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-56773
|
2025-01-10 05:59 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1119
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
kunit: string-stream: Fix a UAF bug in kunit_init_suite()
In kunit_debugfs_create_suite(), if alloc_string_stream() fails in the
…
|
CWE-416
Use After Free
|
CVE-2024-56772
|
2025-01-10 05:57 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1120
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE
I expect that the hardware will have limited this to 16, but just in
case it ha…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2022-49035
|
2025-01-10 05:22 |
2025-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|