Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-11115 Unspecified vulnerability in Google Chrome
Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker to perform privilege escalation via a series of UI gestures.
network
low complexity
google
8.8
2024-11-12 CVE-2024-11116 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page.
network
low complexity
google
4.3
2024-11-12 CVE-2024-11117 Unspecified vulnerability in Google Chrome
Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
network
low complexity
google
4.3
2024-11-12 CVE-2024-49507 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-11-12 CVE-2024-49508 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-11-12 CVE-2024-49509 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2024-11-12 CVE-2024-49510 Out-of-bounds Read vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-11-12 CVE-2024-49511 Out-of-bounds Read vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-11-12 CVE-2024-49512 Out-of-bounds Read vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-11-12 CVE-2024-51093 Cross-site Scripting vulnerability in Snipeitapp Snipe-It 7.0.13
Stored Cross-Site Scripting (XSS) vulnerability in Snipe-IT - v7.0.13 allows an attacker to upload a malicious XML file containing JavaScript code.
network
low complexity
snipeitapp CWE-79
8.7