Записи W3
8 опубликованных записей вендора w3.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 12,5 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 12,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
59В плане | CVE-2009-0323Готовый эксплойт | Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a longw3 · amaya · CWE-119 | Критическая10,0 | — | 62,5 % | 28 янв. 2009 г. |
41В плане | CVE-2009-1209Proof of concept | Stack-based buffer overflow in W3C Amaya Web Browser 11.1 allows remote attackers to execute arbitrary code via a script tag with a long defw3 · amaya · CWE-119 | Критическая9,3 | — | 12,4 % | 1 апр. 2009 г. |
33Наблюдать | CVE-2025-1781Эксплойта нет | There is a XXE in W3CSS Validator versions before cssval-20250226 that allows an attacker to use specially-crafted XML objects to coerce serw3 · css validator · CWE-611 | Высокая8,4 | — | 0,4 % | 28 мар. 2025 г. |
31Наблюдать | CVE-2016-9487Эксплойта нет | EpubCheck 4.0.1 is vulnerable to external XML entity processing attacksw3 · epubcheck · CWE-611 | Высокая7,8 | — | 1,3 % | 13 июл. 2018 г. |
24Наблюдать | CVE-2021-4296Эксплойта нет | w3c Unicorn ValidatorNuMessage.java ValidatorNuMessage cross site scriptingw3 · unicorn · CWE-79 | Средняя6,1 | — | 0,5 % | 29 дек. 2022 г. |
24Наблюдать | CVE-2014-125108Эксплойта нет | w3c online-spellchecker-py spellchecker cross site scriptingw3 · spell checker · CWE-79 | Средняя6,1 | — | 0,5 % | 23 дек. 2023 г. |
22Наблюдать | CVE-2023-30300Эксплойта нет | An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.w3 · webassembly · CWE-835 | Средняя5,5 | — | 0,3 % | 3 мая 2023 г. |
15Наблюдать | CVE-2017-5928Эксплойта нет | The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by aw3 · high resolution time api | Низкая3,7 | — | 1,7 % | 27 февр. 2017 г. |
- CVE-2009-032359В плане
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long
КритическаяCVSS 10,0Готовый эксплойтEPSS 62 %w3 · amaya28 янв. 2009 г.
- CVE-2009-120941В плане
Stack-based buffer overflow in W3C Amaya Web Browser 11.1 allows remote attackers to execute arbitrary code via a script tag with a long def
КритическаяCVSS 9,3Proof of conceptEPSS 12 %w3 · amaya1 апр. 2009 г.
- CVE-2025-178133Наблюдать
There is a XXE in W3CSS Validator versions before cssval-20250226 that allows an attacker to use specially-crafted XML objects to coerce ser
ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %w3 · css validator28 мар. 2025 г.
- CVE-2016-948731Наблюдать
EpubCheck 4.0.1 is vulnerable to external XML entity processing attacks
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %w3 · epubcheck13 июл. 2018 г.
- CVE-2021-429624Наблюдать
w3c Unicorn ValidatorNuMessage.java ValidatorNuMessage cross site scripting
СредняяCVSS 6,1Эксплойта нетEPSS 1 %w3 · unicorn29 дек. 2022 г.
- CVE-2014-12510824Наблюдать
w3c online-spellchecker-py spellchecker cross site scripting
СредняяCVSS 6,1Эксплойта нетEPSS 0 %w3 · spell checker23 дек. 2023 г.
- CVE-2023-3030022Наблюдать
An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %w3 · webassembly3 мая 2023 г.
- CVE-2017-592815Наблюдать
The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by a
НизкаяCVSS 3,7Эксплойта нетEPSS 2 %w3 · high resolution time api27 февр. 2017 г.