Author: Angelo Barbosa

CVE-2023-6185 | Document Foundation LibreOffice up to 7.5.8/7.6.2 GStreamer input validation

A vulnerability, which was classified as critical, was found in Document Foundation LibreOffice up to 7.5.8/7.6.2. Affected is an unknown function of the component GStreamer. The manipulation leads to improper input validation. This vulnerability is traded as CVE-2023-6185. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-6186 | Document Foundation LibreOffice up to 7.5.8/7.6.3 Macro permission

A vulnerability, which was classified as critical, has been found in Document Foundation LibreOffice up to 7.5.8/7.6.3. This issue affects some unknown processing of the component Macro Handler. The manipulation leads to permission issues. The identification of this vulnerability is CVE-2023-6186. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-49964 | Hyland Alfresco Community Edition up to 7.2.0 Template folder.get.html.ftl injection

A vulnerability classified as critical has been found in Hyland Alfresco Community Edition up to 7.2.0. This affects an unknown part of the file folder.get.html.ftl of the component Template Handler. The manipulation leads to injection. This vulnerability is uniquely identified as CVE-2023-49964. It is possible to initiate the attack remotely. There is no exploit...

Read More

CVE-2022-48614 | Semantic MediaWiki up to 4.0.1 Special:Ask cross site scripting (Issue 5262)

A vulnerability was found in Semantic MediaWiki up to 4.0.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file Special:Ask. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2022-48614. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More