VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
>
Fedora
> 38
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-04-12
CVE-2023-0004
A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to delete files from the local file system with elevated privileges. These files can include logs and system components that impact the integrity and availability of PAN-OS software.
network
low complexity
paloaltonetworks
fedoraproject
6.5
6.5
2023-04-03
CVE-2022-36440
Reachable Assertion vulnerability in multiple products
A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function.
network
low complexity
frrouting
fedoraproject
debian
CWE-617
7.5
7.5
2023-03-31
CVE-2023-28755
A ReDoS issue was discovered in the URI component through 0.12.0 in Ruby through 3.2.1.
network
low complexity
ruby-lang
debian
fedoraproject
5.3
5.3
2023-03-31
CVE-2023-28756
A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1.
network
low complexity
ruby-lang
debian
fedoraproject
5.3
5.3
2023-03-30
CVE-2023-1393
Use After Free vulnerability in multiple products
A flaw was found in X.Org Server Overlay Window.
local
low complexity
x-org
fedoraproject
CWE-416
7.8
7.8
2023-03-30
CVE-2023-26116
Versions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy() utility function due to the usage of an insecure regular expression.
network
low complexity
angularjs
fedoraproject
5.3
5.3
2023-03-30
CVE-2023-26117
Versions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to the usage of an insecure regular expression.
network
low complexity
angularjs
fedoraproject
5.3
5.3
2023-03-30
CVE-2023-26118
Versions of the package angular from 1.4.9 are vulnerable to Regular Expression Denial of Service (ReDoS) via the <input type="url"> element due to the usage of an insecure regular expression in the input[url] functionality.
network
low complexity
angularjs
fedoraproject
5.3
5.3
2023-03-28
CVE-2023-28447
Cross-site Scripting vulnerability in multiple products
Smarty is a template engine for PHP.
network
low complexity
smarty
fedoraproject
CWE-79
6.1
6.1
2023-03-24
CVE-2023-28686
Authorization Bypass Through User-Controlled Key vulnerability in multiple products
Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message.
network
low complexity
dino
fedoraproject
debian
CWE-639
7.1
7.1
«
Previous
1
2
...
50
51
52
(current)
53
54
55
»
Next