CVE-2019-5953: heap buffer overflow in wget iri.c do_conversion

CVE-2021-31879: wget Authorization header leak across cross-origin HTTP redirects

CVE-2021-31879: wget leaks Authorization across origin on redirect

CVE-2021-31879: HTTP Redirect Authorization Header Leak in Wget v1.21

CVE-2018-20483: wget --xattr leaks URL credentials into extended file attributes

CVE-2018-20483: wget --xattr leaks Basic-auth credentials via user.xdg.origin.url

CVE-2018-20483: Information Leak via Extended File Attributes in wget

CVE-2017-13089: wget skip_short_body stack overflow via negative chunked transfer encoding size

CVE-2017-13089: Stack-overflow in wget HTTP chunked transfer encoding parsing

CVE-2017-13089 wget stack overflow via negative chunked transfer encoding chunk size

CVE-2024-38428: wget url_skip_credentials semicolon/multi-@ hostname confusion

CVE-2024-38428: GNU Wget url_skip_credentials() treats ';' as userinfo terminator

CVE-2024-38428: wget URL parser allows multiple @ characters in hostname causing hostname confusion

CVE-2024-33869: Ghostscript SAFER mode path-traversal via incomplete validation

criticaldataposted 1 day ago

CVE-2020-15900: Integer overflow (signed left-shift UB) in Ghostscript bitshift PostScript operator

CVE-2020-15900: Ghostscript zbitshift signed integer overflow / UB in PostScript bitshift operator

CVE-2020-15900: Integer Underflow in Ghostscript rsearch Operator

CVE-2024-29510: Ghostscript uniprint device format-string vulnerability

CVE-2023-36664: Ghostscript %pipe% / '|' command injection

posted 1 day ago

CVE-2023-36664: Command Injection in Ghostscript Pipe Device