Author: Angelo Barbosa

CVE-2023-6350 | Google Chrome prior 119.0.6045.199 libavif out-of-bounds

A vulnerability classified as problematic was found in Google Chrome. Affected by this vulnerability is an unknown functionality of the component libavif. The manipulation leads to out-of-bounds read. This vulnerability is known as CVE-2023-6350. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-46887 | Dreamer CMS up to 4.0.0 Backend Attachment Management Office information disclosure

A vulnerability was found in Dreamer CMS up to 4.0.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Backend Attachment Management Office. The manipulation leads to information disclosure. This vulnerability is handled as CVE-2023-46887. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-46944 | GitKraken GitLens up to 13.x Visual Studio Codes Workspace Trust Remote Code Execution

A vulnerability has been found in GitKraken GitLens up to 13.x and classified as critical. Affected by this vulnerability is an unknown functionality of the component Visual Studio Codes Workspace Trust. The manipulation leads to Remote Code Execution. This vulnerability is known as CVE-2023-46944. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-45484 | Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn fromSetWifiGuestBasic shareSpeed stack-based overflow

A vulnerability, which was classified as critical, was found in Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn. Affected is the function fromSetWifiGuestBasic. The manipulation of the argument shareSpeed leads to stack-based buffer overflow. This vulnerability is traded as CVE-2023-45484. Access to the local network is required for this attack. There is no exploit...

Read More