CVE-2023-39978 |
|
CVE-2023-39340 |
|
CVE-2023-39018 |
Description: FFmpeg 0.7.0 and below was discovered to contain a code injection vulnerability in the component net.bramp.ffmpeg.FFmpeg.. This vulnerability is exploited via passing an unchecked argument. NOTE: this is disputed by multiple third parties because there are no realistic use cases in which FFmpeg.java uses untrusted input for the path of the executable file.
CVSS: LOW (0.0) EPSS Score: 0.25%
November 28th, 2024 (5 months ago)
|
CVE-2023-38552 |
Description: When the Node.js policy feature checks the integrity of a resource against a trusted manifest, the application can intercept the operation and return a forged checksum to the node's policy implementation, thus effectively disabling the integrity check.
Impacts:
This vulnerability affects all users using the experimental policy mechanism in all active release lines: 18.x and, 20.x.
Please note that at the time this CVE was issued, the policy mechanism is an experimental feature of Node.js.
CVSS: LOW (0.0) EPSS Score: 1.53%
November 28th, 2024 (5 months ago)
|
CVE-2023-38403 |
|
CVE-2023-37306 |
|
CVE-2023-37303 |
Description: An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. In certain situations, an attempt to block a user fails after a temporary browser hang and a DBQueryDisconnectedError error message.
CVSS: LOW (0.0) EPSS Score: 0.25%
November 28th, 2024 (5 months ago)
|
CVE-2023-37301 |
|
CVE-2023-37300 |
|
CVE-2023-37299 |
|