Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Scryh

#16141of 53,624
16.7Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2025-36479
6.9
2025-01-01
Sqlite · Sqlite Fts5 · CVE-2025-7709
Name of the Vulnerable Software and Affected Versions: SQLite FTS5 extension (affected versions not specified) Description: An integer overflow exists in the FTS5 extension. The issue occurs when calculating the size of an array of tombstone pointers, leading to truncation into a 32-bit integer. This allows writing a pointer to partially controlled data out of bounds. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-16769
9.8
2022-03-18
Unknown · Open Web Analytics · CVE-2022-24637
**Name of the Vulnerable Software and Affected Versions** Open Web Analytics versions prior to 1.7.4 **Description** The issue allows an unauthenticated remote attacker to obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes. This occurs because files generated with '<?php' (instead of the intended "<?php" sequence) aren't handled by the PHP interpreter. **Recommendations** For versions prior to 1.7.4, update to version 1.7.4 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive user information and cache hashes until a patch is applied.