VulnSea

fuse vulnerabilities

CVEs whose affected-version data names the fuse package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

34 CVEsRSS

CVE-2024-1635High· 7.5
2y ago

A vulnerability was found in Undertow

A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection with the HTTP port of the server and then closes the conne…

Twilightnetapp · active_iq_unified_managerEPSS 4.6%via NVD
CVE-2020-14040High· 7.5
6y ago

golang.org/x/text: possibility to trigger an infinite loop in encoding/unicode could lead to crash (CVE-2020-14040)

A denial of service vulnerability was found in the golang.org/x/text library. A library or application must use one of the vulnerable functions, such as unicode.Transform, transform.String, or transform.Byte, to be susceptible to this vuln…

TwilightRed Hat · Red Hat OpenShift Container Platform 4.6EPSS 1.8%via CSAF
CVE-2019-10219Medium· 6.1PoC
6y ago

A vulnerability was found in Hibernate-Validator

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS a…

Twilightredhat · hibernate_validatorEPSS 2.2%via NVD
CVE-2018-1258High· 8.8
8y ago

Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass when using method security

Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass when using method security. An unauthorized malicious user can gain unauthorized access to methods that should …

Twilightpivotal_software · spring_securityEPSS 2.5%via NVD
fuse vulnerabilities (CVEs) — page 2 · VulnSea