CVE-2023-34624
https://notcve.org/view.php?id=CVE-2023-34624
14 Jun 2023 — An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. • https://github.com/amplafi/htmlcleaner/issues/13 • CWE-787: Out-of-bounds Write •
CVE-2013-5035
https://notcve.org/view.php?id=CVE-2013-5035
16 Aug 2013 — Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations. Múltiples vulnerabilidades de condición de carrera en HtmlCleaner anterior a v2.6, como es utilizado en Open-Xchange AppSuite v7.2.2 anterior a rev13 y otros prod... • http://archives.neohapsis.com/archives/bugtraq/2013-08/0115.html • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •