İçeriğe atla
Noroxi

facebook kayıtları

facebook üreticisine ait 132 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
2 · %1,5
Silahlaştırılmış
3 · %2,3
Pre-auth RCE
28
Düzeltme kaydı olan
%35,6
Yayından KEV’e ortanca
1 gün

Tüm kayıtlar

132 kayıt
  • A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1.1, and 19.2.0 inclu

    KritikCVSS 10,0KEVSilahlaştırılmışEPSS %100

    facebook · react3 Ara 2025

  • The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100

    siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 Eki 2023

  • CVE-2025-55184
    50Planlayın

    A pre-authentication denial of service vulnerability exists in React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.

    YüksekCVSS 7,5Kavram kanıtıEPSS %67

    facebook · react11 Ara 2025

  • CVE-2008-0660
    48Planlayın

    Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0, and 4.5.126.0, and

    KritikCVSS 9,3Kavram kanıtıEPSS %38

    aurigma · image uploader activex control7 Şub 2008

  • CVE-2008-5711
    47Planlayın

    Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to execute arbitrary c

    KritikCVSS 9,3SilahlaştırılmışEPSS %33

    facebook · photouploader24 Ara 2008

  • CVE-2021-24040
    44Planlayın

    Due to use of unsafe YAML deserialization logic, an attacker with the ability to modify local YAML configuration files could provide malicio

    KritikCVSS 9,8Kavram kanıtıEPSS %17

    facebook · parlai10 Eyl 2021

  • CVE-2025-55183
    40Planlayın

    An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.

    OrtaCVSS 5,3Kavram kanıtıEPSS %64

    vercel · next.js11 Ara 2025

  • CVE-2019-11929
    40Planlayın

    Insufficient boundary checks when formatting numbers in number_format allows read/write access to out-of-bounds memory, potentially leading

    KritikCVSS 9,8İstismar yokEPSS %4

    facebook · hhvm2 Eki 2019

  • CVE-2021-24036
    40Planlayın

    Passing an attacker controlled size when creating an IOBuf could cause integer overflow, leading to an out of bounds write on the heap with

    KritikCVSS 9,8İstismar yokEPSS %3

    facebook · folly22 Tem 2021

  • CVE-2019-11930
    40Planlayın

    An invalid free in mb_detect_order can cause the application to crash or potentially result in remote code execution.

    KritikCVSS 9,8İstismar yokEPSS %3

    facebook · hhvm4 Ara 2019

  • CVE-2018-6342
    40Planlayın

    react-dev-utils on Windows allows developers to run a local webserver for accepting various commands, including a command to launch an edito

    KritikCVSS 9,8İstismar yokEPSS %3

    facebook · react-dev-utils31 Ara 2018

  • CVE-2020-1914
    40Planlayın

    A logic vulnerability when handling the SaveGeneratorLong instruction in Facebook Hermes prior to commit b2021df620824627f5a8c96615edbd1eb7f

    KritikCVSS 9,8İstismar yokEPSS %3

    facebook · hermes8 Eki 2020

  • CVE-2018-6331
    40Planlayın

    Buck parser-cache command loads/saves state using Java serialized object.

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · buck31 Ara 2018

  • CVE-2020-1896
    40Planlayın

    A stack overflow vulnerability in Facebook Hermes 'builtin apply' prior to commit 86543ac47e59c522976b5632b8bf9a2a4583c7d2 (https://github.c

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hermes2 Şub 2021

  • CVE-2018-6333
    40Planlayın

    The hhvm-attach deep link handler in Nuclide did not properly sanitize the provided hostname parameter when rendering.

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · nuclide31 Ara 2018

  • CVE-2016-6871
    40Planlayın

    Integer overflow in bcmath in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, which triggers a

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2019-11926
    40Planlayın

    Insufficient boundary checks when processing M_SOFx markers from JPEG headers in the GD extension could allow access to out-of-bounds memory

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm6 Eyl 2019

  • CVE-2016-6875
    40Planlayın

    Infinite recursion in wddx in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2016-6873
    40Planlayın

    Self recursion in compact in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2016-6872
    40Planlayın

    Integer overflow in StringUtil::implode in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2016-6870
    40Planlayın

    Out-of-bounds write in the (1) mb_detect_encoding, (2) mb_send_mail, and (3) mb_detect_order functions in Facebook HHVM before 3.15.0 allows

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2019-11925
    40Planlayın

    Insufficient boundary checks when processing the JPEG APP12 block marker in the GD extension could allow access to out-of-bounds memory via

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm6 Eyl 2019

  • CVE-2019-11921
    40Planlayın

    An out of bounds write is possible via a specially crafted packet in certain configurations of Proxygen due to improper handling of Base64 w

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · proxygen25 Tem 2019

  • CVE-2016-6874
    40Planlayın

    The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to r

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hhvm17 Şub 2017

  • CVE-2020-1911
    40Planlayın

    A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains in Facebook Hermes pr

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · hermes3 Eyl 2020