ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-13278
Incorrect Authorization vulnerability in Drupal Diff allows Functionality Misuse.This issue affects Diff:

Incorrect Authorization vulnerability in Drupal Diff allows Functionality Misuse.This issue affects Diff: from 0.0.0 before 1.8.0.

NVD description · AI analysis pending
9.1<1%
  • diff project diff
CVE-2022-41713
deep-object-diff version 1.1.0 allows an external attacker to edit or add new properties to an object.

deep-object-diff version 1.1.0 allows an external attacker to edit or add new properties to an object. This is possible because the application does not properly validate incoming JSON keys, thus allowing the '__proto__' property to be edited.

NVD description · AI analysis pending
5.3<1% PoC
  • deep-object-diff project deep-object-diff
CVE-2021-45694
An issue was discovered in the rdiff crate through 2021-02-03 for Rust.

An issue was discovered in the rdiff crate through 2021-02-03 for Rust. Window may read from uninitialized memory locations.

NVD description · AI analysis pending
7.51%
  • rdiff project rdiff