Medium
CVSS: 5.5
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. An app may be able to access protected user data.
High
CVSS: 7.5
HashiCorp’s go-slug library is vulnerable to a zip-slip style attack when a non-existing user-provided path is extracted from the tar entry.
High
CVSS: 7.2
SimpleHelp remote support software v5.5.7 and before allows admin users to upload arbitrary files anywhere on the file system by uploading a crafted zip file (i.e. zip slip). This can be exploited to execute arbitrary code on the host in th…
High
CVSS: 7.3
Windows Installer Elevation of Privilege Vulnerability
Medium
CVSS: 5.5
Windows Event Tracing Denial of Service Vulnerability