A vulnerability has been found in Events Manager Plugin up to 5.9.7 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection.
This vulnerability is known as CVE-2020-35012. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Events Manager Plugin up to 5.9.7 on WordPress and classified as problematic. Affected by this issue is some unknown functionality of the component Search Parameter Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2020-35037. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Atlassian JIRA Server and Data Center up to 8.13.14/8.20.2 and classified as problematic. Affected by this issue is some unknown functionality of the component Email Template Handler. The manipulation leads to Privilege Escalation.
This vulnerability is handled as CVE-2021-43947. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Atlassian Confluence Server and Data Center up to 7.4.9/7.12.2. This issue affects some unknown processing. The manipulation leads to uncontrolled search path.
The identification of this vulnerability is CVE-2021-43940. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was suspected in libpng 1.6.38. This issue was flagged as a false-positive. Please consult the sources mentioned and consider not using this entry at all.
A vulnerability was found in Google Chrome. It has been classified as critical. Affected is an unknown function of the component Browser History. The manipulation of the argument TBD leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2023-1820. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Apache NiFi up to 1.21.0. This vulnerability affects unknown code of the component DBCPConnectionPool/HikariCPConnectionPool. The manipulation leads to code injection.
This vulnerability was named CVE-2023-34468. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in Esri Portal Sites 10.8.1/11.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Link Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-25835. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic has been found in Esri Portal Sites 10.8.1/10.9. This affects an unknown part of the component Link Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2023-25837. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Esri ArcGIS Server up to 11.0 on Windows/Linux. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Feature Service. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2023-25841. The attack may be launched remotely. There is no exploit available.
A vulnerability classified as problematic was found in Esri ArcGIS Server up to 11.1. This vulnerability affects unknown code of the component Link Handler. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2023-25840. The attack can be initiated remotely. There is no exploit available.