crossbeam-deque up to 0.7.3/0.8.0 Worker Queue steal_batch_and_pop race condition

A vulnerability was found in crossbeam-deque up to 0.7.3/0.8.0. It has been rated as critical. This issue affects the function Stealer::steal/Stealer::steal_batch/Stealer::steal_batch_and_pop of the component Worker Queue Handler. Upgrading to version 0.7.4 or 0.8.1 eliminates this vulnerability.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION

CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION

Description discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely

CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD

CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD

Description Use of Default Password vulnerability in ABB RCCMD on Windows, Linux, MacOS allows Try Common or Default Usernames and

CVE-2023-25655 : BASERCMS UP TO 4.7.4 UNRESTRICTED UPLOAD

CVE-2023-25655 : BASERCMS UP TO 4.7.4 UNRESTRICTED UPLOAD

Description baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system