Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown

CVE-2022-24783

Disclosure Date: March 25, 2022 (last updated February 23, 2025)
Deno is a runtime for JavaScript and TypeScript. The versions of Deno between release 1.18.0 and 1.20.2 (inclusive) are vulnerable to an attack where a malicious actor controlling the code executed in a Deno runtime could bypass all permission checks and execute arbitrary shell code. This vulnerability does not affect users of Deno Deploy. The vulnerability has been patched in Deno 1.20.3. There is no workaround. All users are recommended to upgrade to 1.20.3 immediately.
Attacker Value
Unknown

CVE-2021-42139

Disclosure Date: October 11, 2021 (last updated February 23, 2025)
Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.
Attacker Value
Unknown

CVE-2021-32619

Disclosure Date: May 28, 2021 (last updated February 22, 2025)
Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. In Deno versions 1.5.0 to 1.10.1, modules that are dynamically imported through `import()` or `new Worker` might have been able to bypass network and file system permission checks when statically importing other modules. The vulnerability has been patched in Deno release 1.10.2.
Attacker Value
Unknown

CVE-2020-26149

Disclosure Date: September 30, 2020 (last updated February 22, 2025)
NATS nats.js before 2.0.0-209, nats.ws before 1.0.0-111, and nats.deno before 1.0.0-9 allow credential disclosure from a client to a server.
Attacker Value
Unknown

CVE-2009-0861

Disclosure Date: March 10, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-4246

Disclosure Date: September 25, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Denora IRC Stats Server before 1.4.1 allows remote IRC servers to cause a denial of service (application crash) via a crafted CTCP response.
0
Attacker Value
Unknown

CVE-2005-2484

Disclosure Date: August 07, 2005 (last updated February 22, 2025)
Buffer overflow in the rdb_query function for Denora IRC Stats 1.0 might allow attackers to execute arbitrary code.
0