All CVEs — page 172 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw in Cocos AI allows a relying party to be induced to trust an unintended attestation context due to the lack of attestation freshness enforcement.
The flaw in Cocos AI allows a relying party to accept a TDX QuoteV4 Evidence with mismatched or reused reportData, enabling session-misbinding and potential unauthorized access to application data.
SysReptor Professional allows authenticated users to upload image files that can execute arbitrary code due to improper handling of Ghostscript and GnuPG, leading to Remote Code Execution (RCE) with the application's privileges.