Movatterモバイル変換


[0]ホーム

URL:


Homepage

Snyk Vulnerability Database

The leading database for open source vulnerabilities and cloud misconfigurations.

Improper Neutralization of Quoting Syntax

Affecting postgresql package, versions[,13.19) , [14.0,14.16) , [15.0,15.11) , [16.0,16.7) , [17.0,17.3)

How to fix?

Upgradepostgresql to version 13.19, 14.16, 15.11, 16.7, 17.3 or higher.

0.0
0
10

Vulnerabilities from the last week

Malicious Package

0.0
0
10

invoiceread-paypal is a malicious package.This package contains malicious code, and its content was removed from the official package manager. While this package might be attempting to impersonate a valid organization, there is no connection between that organization and this package authorship.

SQL Injection

0.0
0
10

apache-airflow-providers-mysql is a provider for Apache Airflow

Affected versions of this package are vulnerable to SQL Injection through thedump_sql() orload_sql() functions. A user can inject DML into a table parameter from the UI on a DAG that uses one of these functions.

Regular Expression Denial of Service (ReDoS)

0.0
0
10

org.webjars:jspdf is a WebJar for jspdf.

Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) in theaddImage(),html(), andaddSvgAsImage() methods. An attacker can occupy excessive CPU by supplying a malicious data-url.

Recent vulnerabilities disclosed by Snyk

We’ve disclosed
3396
vulnerabilities

by Snyk Security
Researchers

Dobermann sits logo

About Snyk

Snyk is a developer security platform. Integrating directly into development tools, workflows, and automation pipelines, Snyk makes it easy for teams to find, prioritize, and fix security vulnerabilities in code, dependencies, containers, and infrastructure as code. Supported by industry-leading application and security intelligence, Snyk puts security expertise in any developer's toolkit.

A shield with a tick icon inside, symbolising security
                                                  

[8]ページ先頭

©2009-2025 Movatter.jp