Index: vuln.xml =================================================================== --- vuln.xml +++ vuln.xml @@ -58,6 +58,39 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + couchdb -- administrator privilege escalation + + + couchdb + 2.3.0,2 + + + couchdb2 + 2.3.0 + + + + +

Apache CouchDB PMC reports:

+
+

Database Administrator could achieve privilege escalation to + the account that CouchDB runs under, by abusing insufficient validation + in the HTTP API, escaping security controls implemented in previous + releases.

+
+ +
+ + http://docs.couchdb.org/en/stable/cve/2018-17188.html + CVE-2018-17188 + + + 2018-12-01 + 2018-12-13 + +
+ node.js -- multiple vulnerabilities