(CVE-2023-2666): Allocation of Resources Without Limits or Throttling in froxlor/froxlor.
https://t.co/Mb9KS4Vhau
Disclosed by https://t.co/MrVEhSsIwe, fixed by froxlor maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2665): Storage of Sensitive Data in a Mechanism without Access Control in francoisjacquet/rosariosis.
https://t.co/TjHNTpBgXW
Disclosed by https://t.co/y5xUPtOymo, fixed by francoisjacquet maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2629): Improper Neutralization of Formula Elements in a CSV File in pimcore/customer-data-framework.
https://t.co/aHMusl9yBV
Disclosed by @sampritdas8, fixed by pimcore maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2610): Integer Overflow or Wraparound in vim/vim.
https://t.co/GG8zB6QIIe
Disclosed by https://t.co/IZU0V2L8Wr, fixed by vim maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2609): NULL Pointer Dereference in vim/vim.
https://t.co/YlavTEGNbQ
Disclosed by https://t.co/IZU0V2L8Wr, fixed by vim maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2583): Code Injection in jsreport/jsreport.
https://t.co/1bjM5vnZms
Disclosed by https://t.co/ZyBmcX8cTI, fixed by jsreport maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2564): OS Command Injection in sbs20/scanservjs.
https://t.co/R77Ldw8SGJ
Disclosed by https://t.co/I14WJHkTGO, fixed by sbs20 maintainers...
#opensource#CVE#bugbounty#security#vulnerability
(CVE-2023-2554): External Control of File Name or Path in unilogies/bumsys.
https://t.co/w95MeTioGo
Disclosed by https://t.co/518PJCiRo5, fixed by unilogies maintainers...
#opensource#CVE#bugbounty#security#vulnerability