HTACG kayıtları
htacg üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %66,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-20 Improper Input Validation1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-416 Use After Free1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-33391İstismar yok | An issue in HTACG HTML Tidy v5.7.28 allows attacker to execute arbitrary code via the -g option of the CleanNode() function in gdoc.c.htacg · tidy · CWE-416 | Kritik9,8 | — | %1,1 | 17 Şub 2023 |
30İzleyin | CVE-2017-17497İstismar yok | In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentation Fault), because thhtacg · tidy · CWE-119 | Yüksek7,5 | — | %1,4 | 10 Ara 2017 |
30İzleyin | CVE-2017-13692İstismar yok | In Tidy 5.5.31, the IsURLCodePoint function in attrs.c allows attackers to cause a denial of service (Segmentation Fault), as demonstrated bhtacg · tidy · CWE-20 | Yüksek7,5 | — | %1,2 | 25 Ağu 2017 |
28İzleyin | CVE-2015-5522İstismar yok | Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service htacg · tidy · CWE-119 | Orta6,8 | — | %4,7 | 11 Ağu 2015 |
18İzleyin | CVE-2015-5523İstismar yok | The ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving canonical · ubuntu linux · CWE-119 | Orta4,3 | — | %3,8 | 11 Ağu 2015 |
7İzleyin | CVE-2025-6498İstismar yok | HTACG tidy-html5 alloc.c defaultAlloc memory leakhtacg · tidy · CWE-401 | Düşük1,9 | — | %0,2 | 22 Haz 2025 |
- CVE-2021-3339139İzleyin
An issue in HTACG HTML Tidy v5.7.28 allows attacker to execute arbitrary code via the -g option of the CleanNode() function in gdoc.c.
KritikCVSS 9,8İstismar yokEPSS %1htacg · tidy17 Şub 2023
- CVE-2017-1749730İzleyin
In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentation Fault), because th
YüksekCVSS 7,5İstismar yokEPSS %1htacg · tidy10 Ara 2017
- CVE-2017-1369230İzleyin
In Tidy 5.5.31, the IsURLCodePoint function in attrs.c allows attackers to cause a denial of service (Segmentation Fault), as demonstrated b
YüksekCVSS 7,5İstismar yokEPSS %1htacg · tidy25 Ağu 2017
- CVE-2015-552228İzleyin
Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service
OrtaCVSS 6,8İstismar yokEPSS %5htacg · tidy11 Ağu 2015
- CVE-2015-552318İzleyin
The ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving
OrtaCVSS 4,3İstismar yokEPSS %4canonical · ubuntu linux11 Ağu 2015
- CVE-2025-64987İzleyin
HTACG tidy-html5 alloc.c defaultAlloc memory leak
DüşükCVSS 1,9İstismar yokEPSS %0htacg · tidy22 Haz 2025