İçeriğe atla
Noroxi

Twitter kayıtları

twitter üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%33,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

9 kayıt
  • CVE-2020-35774
    47Planlayın

    server/handler/HistogramQueryHandler.scala in Twitter TwitterServer (aka twitter-server) before 20.12.0, in some configurations, allows XSS

    OrtaCVSS 5,4Kavram kanıtıEPSS %86

    twitter · twitter-server29 Ara 2020

  • CVE-2023-29218
    30İzleyin

    The Twitter Recommendation Algorithm through ec83d01 allows attackers to cause a denial of service (reduction of reputation score) by arrang

    YüksekCVSS 7,5İstismar yokEPSS %1

    twitter · recommendation algorithm3 Nis 2023

  • CVE-2019-16263
    29İzleyin

    The Twitter Kit framework through 3.4.2 for iOS does not properly validate the api.twitter.com SSL certificate.

    YüksekCVSS 7,4İstismar yokEPSS %1

    twitter · twitter kit7 Eki 2019

  • CVE-2020-5217
    24İzleyin

    Directive injection when using dynamic overrides with user input in RubyGems secure_headers

    OrtaCVSS 5,8İstismar yokEPSS %2

    twitter · secure headers22 Oca 2020

  • CVE-2020-5216
    23İzleyin

    Limited header injection when using dynamic overrides with user input in RubyGems secure_headers

    OrtaCVSS 5,8İstismar yokEPSS %1

    twitter · secure headers22 Oca 2020

  • CVE-2016-10511
    23İzleyin

    The Twitter iOS client versions 6.62 and 6.62.1 fail to validate Twitter's server certificates for the /1.1/help/settings.json configuration

    OrtaCVSS 5,9İstismar yokEPSS %1

    twitter · twitter18 Eyl 2017

  • CVE-2017-0911
    21İzleyin

    Twitter Kit for iOS versions 3.0 to 3.2.1 is vulnerable to a callback verification flaw in the "Login with Twitter" component allowing an at

    OrtaCVSS 5,4İstismar yokEPSS %1

    twitter · twitter kit9 Şub 2018

  • CVE-2019-5431
    21İzleyin

    This vulnerability was caused by an incomplete fix to CVE-2017-0911.

    OrtaCVSS 5,4İstismar yokEPSS %0

    twitter · twitter kit6 May 2019

  • CVE-2014-6838
    21İzleyin

    The Groupama toujours la (aka com.groupama.toujoursla) application 1.3.0 for Android does not verify X.509 certificates from SSL servers, wh

    OrtaCVSS 5,4İstismar yokEPSS %0

    twitter · groupama toujours la30 Eyl 2014