Webpack是一个模块打包器。它的主要目的是捆绑 JavaScript 文件以便在浏览器中使用,但它也能够转换、捆绑或打包几乎任何资源或资产。 Webpack存在安全漏洞,该漏洞源于可能允许远程攻击者绕过因 ImportParserPlugin.js 对评论功能处理不当而导致的安全限制。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | pcs | Affects pcs v0.11.4-6.el9, Fixed in pcs v0.11.4-7.el9_2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-30191 | 9.8 CRITICAL | PrestaShop SQL注入漏洞 |
| CVE-2023-2768 | 3.5 LOW | Sucms cross site scripting |
| CVE-2023-31722 | Nasm 缓冲区错误漏洞 | |
| CVE-2023-1972 | GNU Binutils 缓冲区错误漏洞 | |
| CVE-2023-2203 | WebKitGTK 资源管理错误漏洞 | |
| CVE-2023-2491 | Red Hat Enterprise Linux 命令注入漏洞 | |
| CVE-2023-2731 | LibTIFF 代码问题漏洞 | |
| CVE-2023-1859 | Xen 资源管理错误漏洞 | |
| CVE-2023-2295 | Libreswan 安全漏洞 | |
| CVE-2023-27233 | Piwigo SQL注入漏洞 | |
| CVE-2023-29837 | Exelysis Unified Communication Solutions 跨站脚本漏洞 | |
| CVE-2023-32767 | Symcon IP-Symcon 路径遍历漏洞 | |
| CVE-2023-31700 | TP-LINK TL-WPA4530 命令注入漏洞 | |
| CVE-2023-31701 | TP-LINK TL-WPA4530 命令注入漏洞 | |
| CVE-2023-31723 | yasm 安全漏洞 | |
| CVE-2023-31724 | yasm 安全漏洞 | |
| CVE-2023-31725 | yasm 资源管理错误漏洞 | |
| CVE-2023-31698 | Bludit 跨站脚本漏洞 | |
| CVE-2023-31699 | ChurchCRM 跨站脚本漏洞 | |
| CVE-2023-31702 | MicroWorld eScan Management Console SQL注入漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet