Vulnerabilities
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-11-26 | CVE-2024-11828 | Unspecified vulnerability in Gitlab A denial of service (DoS) condition was discovered in GitLab CE/EE affecting all versions from 13.2.4 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. | 7.5 |
2024-11-26 | CVE-2024-8114 | Unspecified vulnerability in Gitlab An issue has been discovered in GitLab CE/EE affecting all versions from 8.12 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. | 8.8 |
2024-11-26 | CVE-2024-8177 | Unspecified vulnerability in Gitlab An issue was discovered in GitLab CE/EE affecting all versions starting from 15.6 prior to 17.4.5, starting from 17.5 prior to 17.5.3, starting from 17.6 prior to 17.6.1 which could cause Denial of Service via integrating a malicious harbor registry. | 7.5 |
2024-11-26 | CVE-2024-8237 | Unspecified vulnerability in Gitlab A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all versions prior to 12.6 prior to 17.4.5, 17.5 prior to 17.5.3, and 17.6 prior to 17.6.1. | 7.5 |
2024-11-26 | CVE-2024-10878 | The Sugar Calendar – Simple Event Management plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.3.0. | 6.1 |
2024-11-26 | CVE-2016-10408 | Unspecified vulnerability in Qualcomm products QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. | 7.8 |
2024-11-26 | CVE-2017-18306 | Use of Uninitialized Resource vulnerability in Qualcomm products Information disclosure due to uninitialized variable. | 5.5 |
2024-11-26 | CVE-2017-18307 | Unspecified vulnerability in Qualcomm products Information disclosure possible while audio playback. | 5.5 |
2024-11-26 | CVE-2018-5852 | Integer Underflow (Wrap or Wraparound) vulnerability in Qualcomm products An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat' | 7.8 |
2024-11-26 | CVE-2024-8236 | The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter of the Icon widget in all versions up to, and including, 3.25.7 due to insufficient input sanitization and output escaping. | 6.4 |