Show filters
46 Total Results
Displaying 41-46 of 46
Sort by:
Attacker Value
Unknown

CVE-2019-19919

Disclosure Date: December 20, 2019 (last updated November 27, 2024)
Versions of handlebars prior to 4.3.0 are vulnerable to Prototype Pollution leading to Remote Code Execution. Templates may alter an Object's __proto__ and __defineGetter__ properties, which may allow an attacker to execute arbitrary code through crafted payloads.
Attacker Value
Unknown

CVE-2019-19646

Disclosure Date: December 09, 2019 (last updated November 27, 2024)
pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns.
Attacker Value
Unknown

CVE-2019-19645

Disclosure Date: December 09, 2019 (last updated November 27, 2024)
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential views in conjunction with ALTER TABLE statements.
Attacker Value
Unknown

CVE-2019-11042

Disclosure Date: August 09, 2019 (last updated November 27, 2024)
When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.1.x below 7.1.31, 7.2.x below 7.2.21 and 7.3.x below 7.3.8 it is possible to supply it with data what will cause it to read past the allocated buffer. This may lead to information disclosure or crash.
Attacker Value
Unknown

CVE-2019-11041

Disclosure Date: August 09, 2019 (last updated November 27, 2024)
When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.1.x below 7.1.31, 7.2.x below 7.2.21 and 7.3.x below 7.3.8 it is possible to supply it with data what will cause it to read past the allocated buffer. This may lead to information disclosure or crash.
Attacker Value
Unknown

CVE-2019-8331

Disclosure Date: February 20, 2019 (last updated November 08, 2023)
In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.