Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown
CVE-2022-24783
Disclosure Date: March 25, 2022 (last updated February 23, 2025)
Deno is a runtime for JavaScript and TypeScript. The versions of Deno between release 1.18.0 and 1.20.2 (inclusive) are vulnerable to an attack where a malicious actor controlling the code executed in a Deno runtime could bypass all permission checks and execute arbitrary shell code. This vulnerability does not affect users of Deno Deploy. The vulnerability has been patched in Deno 1.20.3. There is no workaround. All users are recommended to upgrade to 1.20.3 immediately.
0
Attacker Value
Unknown
CVE-2021-42139
Disclosure Date: October 11, 2021 (last updated February 23, 2025)
Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.
0
Attacker Value
Unknown
CVE-2021-32619
Disclosure Date: May 28, 2021 (last updated February 22, 2025)
Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. In Deno versions 1.5.0 to 1.10.1, modules that are dynamically imported through `import()` or `new Worker` might have been able to bypass network and file system permission checks when statically importing other modules. The vulnerability has been patched in Deno release 1.10.2.
0
Attacker Value
Unknown
CVE-2020-26149
Disclosure Date: September 30, 2020 (last updated February 22, 2025)
NATS nats.js before 2.0.0-209, nats.ws before 1.0.0-111, and nats.deno before 1.0.0-9 allow credential disclosure from a client to a server.
0
Attacker Value
Unknown
CVE-2009-0861
Disclosure Date: March 10, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-4246
Disclosure Date: September 25, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Denora IRC Stats Server before 1.4.1 allows remote IRC servers to cause a denial of service (application crash) via a crafted CTCP response.
0
Attacker Value
Unknown
CVE-2005-2484
Disclosure Date: August 07, 2005 (last updated February 22, 2025)
Buffer overflow in the rdb_query function for Denora IRC Stats 1.0 might allow attackers to execute arbitrary code.
0