Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kc Udonsi

#17538of 53,632
15.3Total CVSS
Vulnerabilities · 2
High
2
PT-2021-18781
7.5
2021-04-27
Apache · Apache Tapestry · CVE-2021-30638
**Name of the Vulnerable Software and Affected Versions** Apache Tapestry versions 5.4.0 through 5.6.3 **Description** The issue allows an attacker to download files inside WEB-INF using a specially-constructed URL, due to incomplete fix for a previous issue. This affects the context asset handling of Apache Tapestry. **Recommendations** For Apache Tapestry versions 5.4.0 through 5.6.3, update to a version that includes a complete fix for the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2021-5210
7.8
2021-03-17
Microsoft · Visual Studio Code · CVE-2021-34529
**Name of the Vulnerable Software and Affected Versions** Visual Studio Code (affected versions not specified) **Description** The issue is related to incorrect code generation management in the settings.json file of Microsoft Visual Studio Code, allowing an attacker to execute arbitrary code. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.