W3 kayıtları
w3 üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %12,5
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %12,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
59Planlayın | CVE-2009-0323Silahlaştırılmış | Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a longw3 · amaya · CWE-119 | Kritik10,0 | — | %62,5 | 28 Oca 2009 |
41Planlayın | CVE-2009-1209Kavram kanıtı | Stack-based buffer overflow in W3C Amaya Web Browser 11.1 allows remote attackers to execute arbitrary code via a script tag with a long defw3 · amaya · CWE-119 | Kritik9,3 | — | %12,4 | 1 Nis 2009 |
33İzleyin | CVE-2025-1781İstismar yok | There is a XXE in W3CSS Validator versions before cssval-20250226 that allows an attacker to use specially-crafted XML objects to coerce serw3 · css validator · CWE-611 | Yüksek8,4 | — | %0,4 | 28 Mar 2025 |
31İzleyin | CVE-2016-9487İstismar yok | EpubCheck 4.0.1 is vulnerable to external XML entity processing attacksw3 · epubcheck · CWE-611 | Yüksek7,8 | — | %1,3 | 13 Tem 2018 |
24İzleyin | CVE-2021-4296İstismar yok | w3c Unicorn ValidatorNuMessage.java ValidatorNuMessage cross site scriptingw3 · unicorn · CWE-79 | Orta6,1 | — | %0,5 | 29 Ara 2022 |
24İzleyin | CVE-2014-125108İstismar yok | w3c online-spellchecker-py spellchecker cross site scriptingw3 · spell checker · CWE-79 | Orta6,1 | — | %0,5 | 23 Ara 2023 |
22İzleyin | CVE-2023-30300İstismar yok | An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.w3 · webassembly · CWE-835 | Orta5,5 | — | %0,3 | 3 May 2023 |
15İzleyin | CVE-2017-5928İstismar yok | The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by aw3 · high resolution time api | Düşük3,7 | — | %1,7 | 27 Şub 2017 |
- CVE-2009-032359Planlayın
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long
KritikCVSS 10,0SilahlaştırılmışEPSS %62w3 · amaya28 Oca 2009
- CVE-2009-120941Planlayın
Stack-based buffer overflow in W3C Amaya Web Browser 11.1 allows remote attackers to execute arbitrary code via a script tag with a long def
KritikCVSS 9,3Kavram kanıtıEPSS %12w3 · amaya1 Nis 2009
- CVE-2025-178133İzleyin
There is a XXE in W3CSS Validator versions before cssval-20250226 that allows an attacker to use specially-crafted XML objects to coerce ser
YüksekCVSS 8,4İstismar yokEPSS %0w3 · css validator28 Mar 2025
- CVE-2016-948731İzleyin
EpubCheck 4.0.1 is vulnerable to external XML entity processing attacks
YüksekCVSS 7,8İstismar yokEPSS %1w3 · epubcheck13 Tem 2018
- CVE-2021-429624İzleyin
w3c Unicorn ValidatorNuMessage.java ValidatorNuMessage cross site scripting
OrtaCVSS 6,1İstismar yokEPSS %1w3 · unicorn29 Ara 2022
- CVE-2014-12510824İzleyin
w3c online-spellchecker-py spellchecker cross site scripting
OrtaCVSS 6,1İstismar yokEPSS %0w3 · spell checker23 Ara 2023
- CVE-2023-3030022İzleyin
An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.
OrtaCVSS 5,5İstismar yokEPSS %0w3 · webassembly3 May 2023
- CVE-2017-592815İzleyin
The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by a
DüşükCVSS 3,7İstismar yokEPSS %2w3 · high resolution time api27 Şub 2017