Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-10-01 CVE-2024-9394 Unspecified vulnerability in Mozilla Firefox
An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin.
network
low complexity
mozilla
7.5
2024-10-01 CVE-2024-9397 Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox
A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking.
network
low complexity
mozilla CWE-1021
6.1
2024-10-01 CVE-2024-9398 Unspecified vulnerability in Mozilla Firefox
By checking the result of calls to `window.open` with specifically set protocol handlers, an attacker could determine if the application which implements that protocol handler is installed.
network
low complexity
mozilla
5.3
2024-10-01 CVE-2024-9399 Unspecified vulnerability in Mozilla Thunderbird
A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a denial of service condition.
network
low complexity
mozilla
7.5
2024-10-01 CVE-2024-46258 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_load_png_mem() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8
2024-10-01 CVE-2024-46259 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_unfilter() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8
2024-10-01 CVE-2024-46261 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_make32() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8
2024-10-01 CVE-2024-46263 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a stack overflow via the cp_dynamic() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8
2024-10-01 CVE-2024-46264 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_find() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8
2024-10-01 CVE-2024-46267 Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_block() function at cute_png.h.
local
low complexity
randygaul CWE-787
7.8