CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104054  CVE-2017-7234  Candidate  A maliciously crafted URL to a Django (1.10 before 1.10.7, 1.9 before 1.9.13, and 1.8 before 1.8.18) site using the ``django.views.static.serve()`` view could redirect to any other domain, aka an open redirect vulnerability.  Assigned (20170322)  None (candidate not yet proposed)    View
87770  CVE-2016-10254  Candidate  The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted ELF file, which triggers a memory allocation failure.  Assigned (20170322)  None (candidate not yet proposed)    View
87771  CVE-2016-10255  Candidate  The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.  Assigned (20170322)  None (candidate not yet proposed)    View
104055  CVE-2017-7235  Candidate  An issue was discovered in cloudflare-scrape 1.6.6 through 1.7.1. A malicious website owner could craft a page that executes arbitrary Python code against any cfscrape user who scrapes that website. This is fixed in 1.8.0.  Assigned (20170323)  None (candidate not yet proposed)    View
104056  CVE-2017-7236  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170323)  None (candidate not yet proposed)    View

Page 20208 of 20943, showing 5 records out of 104715 total, starting on record 101036, ending on 101040

Actions