CVE-2022-23074 The 'Name' field of Keyword, Food, and Unit components are vulnerable to Stored XSS in Recipes 0.17.0 - 1.2.5. When a victim accesses the endpoints, the XSS payload will trigger.
Additionally, in version 1.2.5 and prior, there is a XSS issue in the ‘Description’ field of Recipe. An attacker can inject a malicious
CVE-2022-23073 V1.0.5-1.2.5 is vulnerable to XSS in copy to clipboard functionality.
In version 1.2.6 and later, this issue has been fixed. This issue has been confirmed on versions 1.6.0 through 1.8.
CVE-2022-26668 ASUS Control Center API has a broken access control vulnerability
The security risk is estimated as high, due to the fact that the underlying system software stack is usually heavily administrated by system administrators. The
CVE-2022-21742 The Realtek USB driver has a buffer overflow vulnerability due to insufficient parameter length verification in the API function.
An authenticated user on the same network can exploit this vulnerability to execute arbitrary code on the system with root privileges.
CVE-2019-0516: An
CVE-2022-33987 - Exploiting the Got Package UNIX Socket Redirect Vulnerability (Node.js)
CVE-2022-33987 is a serious vulnerability found in the popular Node.js HTTP request library, got, before version 12.1. (and also fixed in
Episode
00:00:00
00:00:00