Skip to main content

Vendor archive

synopsys CVEs

Beta · best-effort

6 CVEs tagged to vendor synopsys1 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2024-0226

Published Jan 9, 2024

Synopsys Seeker versions prior to 2023.12.0 are vulnerable to a stored cross-site scripting vulnerability through a specially crafted payload.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-2158

Published Apr 27, 2023

Code Dx versions prior to 2023.4.2 are vulnerable to user impersonation attack where a malicious actor is able to gain access to another user's account by crafting a custom "Remem…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-1663

Published Mar 29, 2023

Coverity versions prior to 2023.3.2 are vulnerable to forced browsing, which exposes authenticated resources to unauthorized actors. The root cause of this vulnerability is an ins…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-23849

Published Feb 6, 2023

Versions of Coverity Connect prior to 2022.12.0 are vulnerable to an unauthenticated Cross-Site Scripting vulnerability. Any web service hosted on the same sub domain can set a co…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30278

Published May 10, 2022

A vulnerability in Black Duck Hub’s embedded MadCap Flare documentation files could allow an unauthenticated remote attacker to conduct a cross-site scripting attack. The vulnerab…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-27589

Published Nov 6, 2020

Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1