Aggregator
CVE-2012-4902 | Template CMS up to 2.1.1 admin/index.php themes_editor cross-site request forgery (EDB-21742 / BID-55766)
4 months 3 weeks ago
A vulnerability classified as problematic was found in Template CMS up to 2.1.1. This vulnerability affects unknown code of the file admin/index.php. The manipulation of the argument themes_editor leads to cross-site request forgery.
This vulnerability was named CVE-2012-4902. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Tonic.ai product updates: May 2025
4 months 3 weeks ago
Tonic.ai acquires Fabricate, Tonic Textual adds Audio Synthesis, + Okta SSO arrives on Structural Cloud and Textual Cloud!
The post Tonic.ai product updates: May 2025 appeared first on Security Boulevard.
Expert Insights on Synthetic Data from the Tonic.ai Blog
CVE-2022-0319 | vim up to 8.1 out-of-bounds (Nessus ID 212462)
4 months 3 weeks ago
A vulnerability classified as problematic has been found in vim up to 8.1. This affects an unknown part. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2022-0319. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-25079 | Contact Form Entries Plugin up to 1.2.3 on WordPress Admin Page form_id/status/end_date/order/orderby/search cross site scripting (ID 2629442)
4 months 3 weeks ago
A vulnerability has been found in Contact Form Entries Plugin up to 1.2.3 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Admin Page. The manipulation of the argument form_id/status/end_date/order/orderby/search leads to cross site scripting.
This vulnerability is known as CVE-2021-25079. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-24923 | Sendinblue Newsletter, SMTP, Email Marketing and Subscribe Forms Plugin Attribute cross site scripting
4 months 3 weeks ago
A vulnerability was found in Sendinblue Newsletter, SMTP, Email Marketing and Subscribe Forms Plugin on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Attribute Handler. The manipulation of the argument sib-statistics-date leads to cross site scripting.
This vulnerability was named CVE-2021-24923. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-25076 | WP User Frontend Plugin prior 3.5.26 on WordPress Subscribers Dashboard Status sql injection (ID 2648715 / EDB-50772)
4 months 3 weeks ago
A vulnerability classified as critical was found in WP User Frontend Plugin on WordPress. This vulnerability affects unknown code of the component Subscribers Dashboard. The manipulation of the argument Status leads to sql injection.
This vulnerability was named CVE-2021-25076. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-22590 | Apple iOS/iPadOS up to 15.2.1 WebKit use after free (HT213053)
4 months 3 weeks ago
A vulnerability has been found in Apple iOS and iPadOS up to 15.2.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the component WebKit. The manipulation leads to use after free.
This vulnerability is known as CVE-2022-22590. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-22590 | Apple watchOS up to 8.3 WebKit use after free (HT213059)
4 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Apple watchOS up to 8.3. Affected by this issue is some unknown functionality of the component WebKit. The manipulation leads to use after free.
This vulnerability is handled as CVE-2022-22590. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-22590 | Apple tvOS up to 15.2 WebKit use after free (HT213057)
4 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Apple tvOS up to 15.2. This issue affects some unknown processing of the component WebKit. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2022-22590. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-22590 | Apple macOS up to 12.1 WebKit use after free (HT213054)
4 months 3 weeks ago
A vulnerability was found in Apple macOS. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component WebKit. The manipulation leads to use after free.
This vulnerability is known as CVE-2022-22590. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-22590 | Apple Safari up to 15.2 WebKit use after free (HT213058)
4 months 3 weeks ago
A vulnerability classified as critical was found in Apple Safari. This vulnerability affects unknown code of the component WebKit. The manipulation leads to use after free.
This vulnerability was named CVE-2022-22590. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2006-5175 | Buffalotech TeraStation HD-HTGL up to 2.05 cross-site request forgery (XFDB-29338 / SA22248)
4 months 3 weeks ago
A vulnerability classified as critical was found in Buffalotech TeraStation HD-HTGL up to 2.05. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2006-5175. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2022-23218 | GNU C Library up to 2.34 sunrpc Module svcunix_create path buffer overflow
4 months 3 weeks ago
A vulnerability classified as critical has been found in GNU C Library up to 2.34. This affects the function svcunix_create of the component sunrpc Module. The manipulation of the argument path leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2022-23218. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2022-23219 | GNU C Library up to 2.34 sunrpc Module clnt_create Hostname buffer overflow
4 months 3 weeks ago
A vulnerability classified as critical was found in GNU C Library up to 2.34. This vulnerability affects the function clnt_create of the component sunrpc Module. The manipulation of the argument Hostname leads to buffer overflow.
This vulnerability was named CVE-2022-23219. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2022-23219 | Oracle Communications Cloud Native Core Binding Support Function BSF buffer overflow
4 months 3 weeks ago
A vulnerability was found in Oracle Communications Cloud Native Core Binding Support Function 22.1.3. It has been rated as very critical. This issue affects some unknown processing of the component BSF. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2022-23219. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-23219 | Oracle Communications Cloud Native Core Network Function Cloud Native Environment CNE buffer overflow
4 months 3 weeks ago
A vulnerability, which was classified as very critical, was found in Oracle Communications Cloud Native Core Network Function Cloud Native Environment 22.1.0. This affects an unknown part of the component CNE. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2022-23219. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-23219 | Oracle Communications Cloud Native Core Network Repository Function NRF buffer overflow
4 months 3 weeks ago
A vulnerability was found in Oracle Communications Cloud Native Core Network Repository Function 22.1.2/22.2.0 and classified as very critical. This issue affects some unknown processing of the component NRF. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2022-23219. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-23219 | Oracle Communications Cloud Native Core Security Edge Protection Proxy SEPP buffer overflow
4 months 3 weeks ago
A vulnerability was found in Oracle Communications Cloud Native Core Security Edge Protection Proxy 22.1.1. It has been declared as very critical. Affected by this vulnerability is an unknown functionality of the component SEPP. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2022-23219. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-23219 | Oracle Communications Cloud Native Core Unified Data Repository UDR buffer overflow
4 months 3 weeks ago
A vulnerability classified as very critical has been found in Oracle Communications Cloud Native Core Unified Data Repository 22.2.0. This affects an unknown part of the component UDR. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2022-23219. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com