Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
linux vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2023-26563
The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated attacker can: - On Windows, list files in any directory, read any file, delete any file, upload any file to any directory accessible by the web...
Syncfusion Nodejs File System Provider 0102271
1 Github repository
9.8
CVSSv3
CVE-2023-29824
A use-after-free issue exists in Py_FindObjects() function in SciPy versions before 1.8.0. NOTE: the vendor and discoverer indicate that this is not a security issue.
Scipy Scipy
9.8
CVSSv3
CVE-2023-34416
Memory safety bugs present in Firefox 113, Firefox ESR 102.11, and Thunderbird 102.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ...
Mozilla Firefox
Mozilla Firefox Esr
Mozilla Thunderbird
9.8
CVSSv3
CVE-2023-29404
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malicious module, or when running any other command which builds untrusted code. This is can by triggered by linker flags, specified via a "#cgo LDFLAG...
Golang Go
Fedoraproject Fedora 38
9.8
CVSSv3
CVE-2023-29405
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malicious module, or when running any other command which builds untrusted code. This is can by triggered by linker flags, specified via a "#cgo LDFLAG...
Golang Go
Fedoraproject Fedora 38
9.8
CVSSv3
CVE-2023-29402
The go command may generate unexpected code at build time when using cgo. This may result in unexpected behavior when running a go program which uses cgo. This may occur when running an untrusted module which contains directories with newline characters in their names. Modules wh...
Golang Go
Fedoraproject Fedora 38
9.8
CVSSv3
CVE-2023-0635
Improper Privilege Management vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2CQG103202S3021, 2CQG103203S3021, 2CQG103204S3021 modules), ABB Ltd. NEXUS Series on NEXUS Series, Linux (2CQG100102R2021, 2CQG100104R2021, 2CQG100105...
Abb Aspect-ent-2 Firmware
Abb Aspect-ent-12 Firmware
Abb Aspect-ent-256 Firmware
Abb Aspect-ent-96 Firmware
Abb Nexus-2128 Firmware
Abb Nexus-2128-a Firmware
Abb Nexus-2128-g Firmware
Abb Nexus-2128-f Firmware
Abb Nexus-3-2128 Firmware
Abb Nexus-3-264 Firmware
Abb Nexus-264 Firmware
Abb Nexus-264-a Firmware
Abb Nexus-264-g Firmware
Abb Nexus-264-f Firmware
Abb Matrix-216 Firmware
Abb Matrix-232 Firmware
Abb Matrix-296 Firmware
Abb Matrix-264 Firmware
Abb Matrix-11 Firmware
9.8
CVSSv3
CVE-2023-0636
Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2CQG103202S3021, 2CQG103203S3021, 2CQG103204S3021 modules), ABB Ltd. NEXUS Series on NEXUS Series, Linux (2CQG100102R2021, 2CQG100104R2021, 2CQG100105R202...
Abb Aspect-ent-2 Firmware
Abb Aspect-ent-12 Firmware
Abb Aspect-ent-256 Firmware
Abb Aspect-ent-96 Firmware
Abb Nexus-2128 Firmware
Abb Nexus-2128-a Firmware
Abb Nexus-2128-g Firmware
Abb Nexus-2128-f Firmware
Abb Nexus-3-2128 Firmware
Abb Nexus-3-264 Firmware
Abb Nexus-264 Firmware
Abb Nexus-264-a Firmware
Abb Nexus-264-g Firmware
Abb Nexus-264-f Firmware
Abb Matrix-216 Firmware
Abb Matrix-232 Firmware
Abb Matrix-296 Firmware
Abb Matrix-264 Firmware
Abb Matrix-11 Firmware
9.8
CVSSv3
CVE-2023-34152
A vulnerability was found in ImageMagick. This security flaw cause a remote code execution vulnerability in OpenBlob with --enable-pipes configured.
Imagemagick Imagemagick
Fedoraproject Extra Packages For Enterprise Linux 8.0
Fedoraproject Fedora 37
Fedoraproject Fedora 38
Redhat Enterprise Linux 7.0
Redhat Enterprise Linux 6.0
2 Github repositories
9.8
CVSSv3
CVE-2023-2319
It exists that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-20...
Clusterlabs Pcs 0.11.4-6.el9
Redhat Enterprise Linux High Availability Eus 9.2
Redhat Enterprise Linux High Availability 9.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
CVE-2024-20360
CVE-2021-47559
XXE
CVE-2024-5229
CVE-2021-47543
CVE-2021-47571
SSTI
CVE-2024-4978
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »