Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 PACKETSTORM:214963

📄 Casdoor 2.284.0 / 2.285.0 Cross Site Request Forgery_PACKETSTORM:214963

Casdoor versions 2.284.0 and 2.285.0 suffer a cross site request forgery vulnerability that was originally discovered in an earlier version but has...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:215042

📄 OctoPrint 1.11.2 Remote Code Execution_PACKETSTORM:215042

OctoPrint versions 1.11.2 and below suffer from a remote code execution vulnerability via a malformed filename being used in an authenticated file ...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:215038

📄 aiohttp 3.9.1 Directory Traversal_PACKETSTORM:215038

Proof of concept exploit for a directory traversal vulnerability in aiohttp version 3.9.1...

N/A N/A PACKETSTORM
MEDIUM 6.5 PACKETSTORM:215040

📄 Microsoft Windows 10 / 11 NTLM Hash Disclosure Spoofing_PACKETSTORM:215040

Microsoft Windows 10 / 11 proof of concept exploit that generates a .library-ms XML file pointing to a network share UNC. When opened/imported on W...

N/A N/A PACKETSTORM
MEDIUM 5.4 PACKETSTORM:215037

📄 RPi-Jukebox-RFID 2.8.0 Cross Site Scripting_PACKETSTORM:215037

RPi-Jukebox-RFID version 2.8.0 suffers from a persistent cross site scripting vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215036

📄 D-Link DIR-825 Rev.B 2.10 Buffer Overflow_PACKETSTORM:215036

D-Link DIR-825 Rev.B versions 2.10 and below proof of concept stack buffer overflow denial of service exploit...

N/A N/A PACKETSTORM
HIGH 7.8 PACKETSTORM:215041

📄 Redis 8.0.2 Remote Code Execution_PACKETSTORM:215041

Redis versions from 2.8 to before 8.0.3, 7.4.5, 7.2.10, and 6.2.19, suffer from a heap out of bounds write that can be leverage for remote code exe...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215039

📄 Ingress-NGINX Admission Controller 1.11.1 Remote Code Execution_PACKETSTORM:215039

Ingress-NGINX Admission Controller version 1.11.1 remote code execution proof of concept exploit that chains together multiple vulnerabilities...

N/A N/A PACKETSTORM
MEDIUM 6.8 PACKETSTORM:215044

📄 Piranha CMS 12.0 Cross Site Scripting_PACKETSTORM:215044

Piranha CMS version 12.0 suffers from a cross site scripting vulnerability...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:214882

📄 Go crypto/x509 Hostname Verification Denial of Service_PACKETSTORM:214882

A denial of service vulnerability exists in the Go programming language crypto/x509 package. The issue occurs during TLS hostname verification when...

N/A N/A PACKETSTORM