Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Fabianfett

#21516of 53,633
11.2Total CVSS
Vulnerabilities · 2
Low
1
High
1
PT-2023-23170
3.7
2023-05-09
Unknown · Postgresnio · CVE-2023-31136
**Name of the Vulnerable Software and Affected Versions** PostgresNIO versions prior to 1.14.2 **Description** The issue affects users of PostgresNIO who connect to servers with TLS enabled, allowing a man-in-the-middle attacker to inject false responses to the client's first few queries despite the use of TLS certificate verification and encryption. **Recommendations** For PostgresNIO versions prior to 1.14.2, update to version 1.14.2 or later to resolve the issue. As a temporary workaround, consider disabling TLS connections until a patch is available. Restrict access to sensitive data to minimize the risk of exploitation.
PT-2020-20813
7.5
2020-11-02
Apple · Swift · CVE-2020-9861
**Name of the Vulnerable Software and Affected Versions** Swift for Linux (affected versions not specified) **Description** A stack overflow issue existed due to deeply nested malicious JSON input. The issue was addressed with improved input validation. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.