Show filters
131 Total Results
Displaying 71-80 of 131
Sort by:
Attacker Value
Unknown
CVE-2013-4593
Disclosure Date: December 11, 2019 (last updated November 27, 2024)
RubyGem omniauth-facebook has an access token security vulnerability
0
Attacker Value
Unknown
CVE-2019-11935
Disclosure Date: December 04, 2019 (last updated November 27, 2024)
Insufficient boundary checks when processing a string in mb_ereg_replace allows access to out-of-bounds memory. This issue affects HHVM versions prior to 3.30.12, all versions between 4.0.0 and 4.8.5, all versions between 4.9.0 and 4.23.1, as well as 4.24.0, 4.25.0, 4.26.0, 4.27.0, 4.28.0, and 4.28.1.
0
Attacker Value
Unknown
CVE-2019-11936
Disclosure Date: December 04, 2019 (last updated November 27, 2024)
Various APC functions accept keys containing null bytes as input, leading to premature truncation of input. This issue affects HHVM versions prior to 3.30.12, all versions between 4.0.0 and 4.8.5, all versions between 4.9.0 and 4.23.1, as well as 4.24.0, 4.25.0, 4.26.0, 4.27.0, 4.28.0, and 4.28.1.
0
Attacker Value
Unknown
CVE-2019-11934
Disclosure Date: December 04, 2019 (last updated November 27, 2024)
Improper handling of close_notify alerts can result in an out-of-bounds read in AsyncSSLSocket. This issue affects folly prior to v2019.11.04.00.
0
Attacker Value
Unknown
CVE-2019-11930
Disclosure Date: December 04, 2019 (last updated February 09, 2024)
An invalid free in mb_detect_order can cause the application to crash or potentially result in remote code execution. This issue affects HHVM versions prior to 3.30.12, all versions between 4.0.0 and 4.8.5, all versions between 4.9.0 and 4.23.1, as well as 4.24.0, 4.25.0, 4.26.0, 4.27.0, 4.28.0, and 4.28.1.
0
Attacker Value
Unknown
CVE-2016-1000006
Disclosure Date: November 19, 2019 (last updated November 08, 2023)
hhvm before 3.12.11 has a use-after-free in the serialize_memoize_param() and ResourceBundle::__construct() functions.
0
Attacker Value
Unknown
CVE-2019-11929
Disclosure Date: October 02, 2019 (last updated November 27, 2024)
Insufficient boundary checks when formatting numbers in number_format allows read/write access to out-of-bounds memory, potentially leading to remote code execution. This issue affects HHVM versions prior to 3.30.10, all versions between 4.0.0 and 4.8.5, all versions between 4.9.0 and 4.18.2, and versions 4.19.0, 4.19.1, 4.20.0, 4.20.1, 4.20.2, 4.21.0, 4.22.0, 4.23.0.
0
Attacker Value
Unknown
CVE-2019-11926
Disclosure Date: September 06, 2019 (last updated November 27, 2024)
Insufficient boundary checks when processing M_SOFx markers from JPEG headers in the GD extension could allow access to out-of-bounds memory via a maliciously constructed invalid JPEG input. This issue affects HHVM versions prior to 3.30.9, all versions between 4.0.0 and 4.8.3, all versions between 4.9.0 and 4.15.2, and versions 4.16.0 to 4.16.3, 4.17.0 to 4.17.2, 4.18.0 to 4.18.1, 4.19.0, 4.20.0 to 4.20.1.
0
Attacker Value
Unknown
CVE-2019-11925
Disclosure Date: September 06, 2019 (last updated November 27, 2024)
Insufficient boundary checks when processing the JPEG APP12 block marker in the GD extension could allow access to out-of-bounds memory via a maliciously constructed invalid JPEG input. This issue affects HHVM versions prior to 3.30.9, all versions between 4.0.0 and 4.8.3, all versions between 4.9.0 and 4.15.2, and versions 4.16.0 to 4.16.3, 4.17.0 to 4.17.2, 4.18.0 to 4.18.1, 4.19.0, 4.20.0 to 4.20.1.
0
Attacker Value
Unknown
CVE-2019-15841
Disclosure Date: August 30, 2019 (last updated November 27, 2024)
The facebook-for-woocommerce plugin before 1.9.15 for WordPress has CSRF via ajax_woo_infobanner_post_click, ajax_woo_infobanner_post_xout, or ajax_fb_toggle_visibility.
0