Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Fernando Hartmann

#19173of 53,624
13.9Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2021-18158
6.1
2021-03-29
Redmine · Redmine · CVE-2021-29274
Name of the Vulnerable Software and Affected Versions: Redmine versions 4.1.0 through 4.1.1 Description: The issue arises from the mishandling of an issue's subject in the auto complete tip, leading to a potential XSS attack. Recommendations: For versions 4.1.0 through 4.1.1, update to version 4.1.2 or later to resolve the issue.
PT-2009-4886
7.8
2009-07-16
Mozilla · Firefox · CVE-2009-2479
**Name of the Vulnerable Software and Affected Versions** Mozilla Firefox versions 3.0.x, 3.5, and 3.5.1 **Description** The issue allows remote attackers to cause a denial of service, resulting in an uncaught exception and application crash, via a long Unicode string argument to the `write` method. This issue was initially reported as a stack-based buffer overflow. **Recommendations** For Mozilla Firefox versions 3.0.x, 3.5, and 3.5.1, consider avoiding the use of long Unicode strings in the `write` method until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.