Vulnerabilities (CVE)

Filtered by vendor Renren Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-70821 1 Renren 1 Renren-security 2026-03-05 N/A 9.8 CRITICAL
renren-secuity before v5.5.0 is vulnerable to SQL Injection in the BaseServiceImpl.java component
CVE-2012-0915 1 Renren 1 Renren Talk 2025-04-11 9.3 HIGH N/A
Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of a skin file, leading to a heap-based buffer overflow, as demonstrated using a BMP image.
CVE-2012-0916 1 Renren 1 Renren Talk 2025-04-11 9.3 HIGH N/A
Heap-based buffer overflow in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via a crafted image in a chat message, as demonstrated using a PNG file.