Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-4rr6-2v9v-wcpc
  • NuGet/RestSharp
CRLF Injection in RestSharp's `RestRequest.AddHeader` method 29 Aug
  • Fix available
  • Severity - 7.1 (High)
GHSA-5x5q-cqf6-gj8r
  • NuGet/Serilog.Enrichers.ClientInfo
Serilog Client IP Spoofing vulnerability 29 Aug
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-hrww-x3fq-xcvh
  • NuGet/Umbraco.Cms
Umbraco CMS Improper Access Control vulnerability 20 Aug
  • Fix available
  • Severity - 6.3 (Medium)
GHSA-77gj-crhp-3gvx
  • NuGet/Umbraco.Cms.Api.Management
Umbraco CMS vulnerable to Generation of Error Message Containing Sensitive Information 20 Aug
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-7qrv-8f9x-3h32
  • NuGet/Microsoft.AspNetCore.App.Runtime.win-arm
  • NuGet/Microsoft.AspNetCore.App.Runtime.win-arm64
  • NuGet/Microsoft.AspNetCore.App.Runtime.win-x64
  • NuGet/Microsoft.AspNetCore.App.Runtime.win-x86
Microsoft Security Advisory CVE-2024-38168 | .NET Denial of Service Vulnerability 13 Aug
  • Fix available
  • Severity - 8.7 (High)
GHSA-3r34-r6w3-fqp6
  • NuGet/Microsoft.NetCore.App.Runtime.linux-arm
  • NuGet/Microsoft.NetCore.App.Runtime.linux-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-arm
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.linux-musl-x64
  • NuGet/Microsoft.NetCore.App.Runtime.linux-x64
  • NuGet/Microsoft.NetCore.App.Runtime.osx-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.osx-x64
  • NuGet/Microsoft.NetCore.App.Runtime.win-arm
  • NuGet/Microsoft.NetCore.App.Runtime.win-arm64
  • NuGet/Microsoft.NetCore.App.Runtime.win-x64
  • NuGet/Microsoft.NetCore.App.Runtime.win-x86
Microsoft Security Advisory CVE-2024-38167 | .NET Information Disclosure Vulnerability 13 Aug
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-55p7-v223-x366
  • NuGet/IdentityServer4
IdentityServer Open Redirect vulnerability 31 Jul
  • No fix available
  • Severity - 5.1 (Medium)
GHSA-ff4q-64jc-gx98
  • NuGet/Duende.IdentityServer
  • NuGet/IdentityServer4
IdentityServer Open Redirect vulnerability 31 Jul
  • Fix available
  • Severity - 5.1 (Medium)
GHSA-c3h4-9gc2-f7h4
  • NuGet/Tgstation.Server.Api
  • NuGet/Tgstation.Server.Host
tgstation-server's DreamMaker environment files outside the deployment directory can be compiled and ran by insufficiently permissioned users 29 Jul
  • Fix available
  • Severity - 7.3 (High)
GHSA-9xhh-3m78-gvgj
  • NuGet/Csla
CLSA Directory Traversal vulnerability 22 Jul
  • Fix available
  • Severity - 9.3 (Critical)
GHSA-qxrv-gp6x-rc23
  • NuGet/SixLabors.ImageSharp
SixLabors ImageSharp has Excessive Memory Allocation in Gif Decoder 22 Jul
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-63p8-c4ww-9cg7
  • NuGet/SixLabors.ImageSharp
SixLabors ImageSharp Out-of-bounds Write 22 Jul
  • Fix available
  • Severity - 8.7 (High)
GHSA-vmcp-66r5-3pcp
  • NuGet/Steeltoe.Discovery.Eureka
  • NuGet/Steeltoe.Discovery.EurekaBase
  • NuGet/Steeltoe.Discovery.ClientCore
  • NuGet/Steeltoe.Discovery.ClientAutofac
Steeltoe Leaks Basic Auth Credentials to Logs After Fetch Registry Error 17 Jul
  • Fix available
  • Severity - 2.0 (Low)
GHSA-9mvj-f7w8-pvh2
  • npm/bootstrap
  • RubyGems/bootstrap
  • NuGet/bootstrap
  • RubyGems/bootstrap-sass
  • NuGet/bootstrap.sass
  • Packagist/twbs/bootstrap
  • Maven/org.webjars:bootstrap
  • Maven/org.webjars.npm:bootstrap
Bootstrap Cross-Site Scripting (XSS) vulnerability 11 Jul
  • No fix available
  • Severity - 5.3 (Medium)
GHSA-vc8w-jr9v-vj7f
  • npm/bootstrap
  • RubyGems/bootstrap
  • NuGet/bootstrap
  • NuGet/bootstrap.sass
  • Packagist/twbs/bootstrap
  • Maven/org.webjars:bootstrap
  • Maven/org.webjars.npm:bootstrap
Bootstrap Cross-Site Scripting (XSS) vulnerability 11 Jul
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-gmc6-fwg3-75m5
  • NuGet/MimeKit
Mimekit has vulnerable dependency that can lead to denial of service 11 Jul
  • Fix available
  • Severity - 8.7 (High)