Filter
AND

Facebook HHVMHHVM 4.172.0 and all prior versions use TLS 1.0 for secure connections when handling tls:// URLs in …

First published (updated )

Facebook HermesAn error in Hermes' algorithm for copying objects properties prior to commit a00d237346894c6067a5949…

First published (updated )

Facebook NetconsdInteger Overflow

First published (updated )

Facebook HermesUse After Free

First published (updated )

Facebook HermesA type confusion bug in TypedArray prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could ha…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Facebook HermesUse After Free

First published (updated )

Facebook WangleWangle's LineBasedFrameDecoder contains logic for identifying newlines which incorrectly advances a …

First published (updated )

Facebook HHVMBuffer Overflow

First published (updated )

Facebook HHVMThe implementations of streams for bz2 and php://output improperly implemented their readImpl functi…

First published (updated )

Facebook TAC+Input Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Facebook PhotoUploaderBuffer Overflow

First published (updated )

Aurigma Image Uploader ActiveX controlBuffer Overflow

First published (updated )

ubuntu/hhvmUse After Free

First published (updated )

Facebook HHVMmcrypt_get_block_size did not enforce that the provided "module" parameter was a string, leading to …

First published (updated )

Facebook HHVMInsufficient type checks were employed prior to casting input data in SimpleXMLElement_exportNode an…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Facebook HHVMInteger Overflow

First published (updated )

Facebook HHVMSelf recursion in compact in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact…

First published (updated )

Facebook HHVMInfinite recursion in wddx in Facebook HHVM before 3.15.0 allows attackers to have unspecified impac…

First published (updated )

Facebook HHVMThe array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified …

First published (updated )

Facebook HHVMOut-of-bounds write in the (1) mb_detect_encoding, (2) mb_send_mail, and (3) mb_detect_order functio…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Facebook HHVMInteger Overflow, Buffer Overflow

First published (updated )

Facebook HHVMThe function number_format is vulnerable to a heap overflow issue when its second argument ($dec_poi…

First published (updated )

Facebook BuckBuck parser-cache command loads/saves state using Java serialized object. If the state information i…

First published (updated )

Facebook HHVMInput Validation

First published (updated )

Facebook react-dev-utilsOS Command Injection, CSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Facebook NuclideInput Validation, XSS

First published (updated )

Facebook FollyImproper handling of close_notify alerts can result in an out-of-bounds read in AsyncSSLSocket. This…

First published (updated )

Facebook ProxygenUse After Free

First published (updated )

Facebook HHVMAn invalid free in mb_detect_order can cause the application to crash or potentially result in remot…

First published (updated )

Facebook HHVMInsufficient boundary checks when processing a string in mb_ereg_replace allows access to out-of-bou…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203