Search CVE reports
341 – 350 of 42041 results
CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, calling UploadedFile::move() without a second argument uses the client-provided filename without sanitization, allowing a remote attacker to use path traversal...
1 affected package
php-codeigniter-framework
| Package | 24.04 LTS |
|---|---|
| php-codeigniter-framework | Needs evaluation |
CodeIgniter is a PHP full-stack web framework. From 4.3.0 through 4.7.3, Query Builder deleteBatch() substitutes bound values from where() conditions into generated SQL while ignoring their escape flags, allowing user-controlled...
1 affected package
php-codeigniter-framework
| Package | 24.04 LTS |
|---|---|
| php-codeigniter-framework | Needs evaluation |
CodeIgniter is a PHP full-stack web framework. In versions prior to 4.7.4, IncomingRequest::isSecure() trusted the X-Forwarded-Proto and Front-End-Https headers from any incoming request, allowing an attacker could spoof these...
1 affected package
php-codeigniter-framework
| Package | 24.04 LTS |
|---|---|
| php-codeigniter-framework | Needs evaluation |
A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confidentiality impact or bypass of the intended security boundary under affected...
1 affected package
nodejs
| Package | 24.04 LTS |
|---|---|
| nodejs | Needs evaluation |
[Unknown description]
4 affected packages
libgd2, php5, php7.0, php7.2
| Package | 24.04 LTS |
|---|---|
| libgd2 | Needs evaluation |
| php5 | Not in release |
| php7.0 | Not in release |
| php7.2 | Not in release |
[Unknown description]
2 affected packages
borgbackup, borgbackup2
| Package | 24.04 LTS |
|---|---|
| borgbackup | Needs evaluation |
| borgbackup2 | Needs evaluation |
[Unknown description]
1 affected package
libgit2
| Package | 24.04 LTS |
|---|---|
| libgit2 | Needs evaluation |
[Unknown description]
1 affected package
libgit2
| Package | 24.04 LTS |
|---|---|
| libgit2 | Needs evaluation |
[Unknown description]
1 affected package
libgit2
| Package | 24.04 LTS |
|---|---|
| libgit2 | Needs evaluation |
[Unknown description]
1 affected package
libgit2
| Package | 24.04 LTS |
|---|---|
| libgit2 | Needs evaluation |