Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-17 CVE-2024-44189 Unspecified vulnerability in Apple Macos
The issue was addressed with improved checks.
network
low complexity
apple
7.5
2024-09-17 CVE-2024-44190 Path Traversal vulnerability in Apple Macos
A path handling issue was addressed with improved validation.
local
low complexity
apple CWE-22
5.5
2024-09-17 CVE-2024-44191 Unspecified vulnerability in Apple products
This issue was addressed through improved state management.
local
low complexity
apple
5.5
2024-09-17 CVE-2024-44198 Integer Overflow or Wraparound vulnerability in Apple products
An integer overflow was addressed through improved input validation.
local
low complexity
apple CWE-190
5.5
2024-09-17 CVE-2024-44202 Improper Authentication vulnerability in Apple Iphone OS
An authentication issue was addressed with improved state management.
network
low complexity
apple CWE-287
5.3
2024-09-16 CVE-2024-4283 Open Redirect vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 11.1 before 17.1.7, 17.2 before 17.2.5, and 17.3 before 17.3.2.
network
low complexity
gitlab CWE-601
6.1
2024-09-16 CVE-2024-6685 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.7 prior to 17.1.7, 17.2 prior to 17.2.5, and 17.3 prior to 17.3.2, where group runners information was disclosed to unauthorised group members.
network
low complexity
gitlab
4.3
2024-09-16 CVE-2024-32034 Cross-site Scripting vulnerability in Decidim
decidim is a Free Open-Source participatory democracy, citizen participation and open government for cities and organizations.
network
low complexity
decidim CWE-79
4.8
2024-09-16 CVE-2024-39910 Cross-site Scripting vulnerability in Decidim
decidim is a Free Open-Source participatory democracy, citizen participation and open government for cities and organizations.
network
low complexity
decidim CWE-79
4.8
2024-09-16 CVE-2024-8661 Cross-site Scripting vulnerability in Concretecms Concrete CMS
Concrete CMS versions 9.0.0 to 9.3.3 and below 8.5.19 are vulnerable to Stored XSS in the "Next&Previous Nav" block.
network
low complexity
concretecms CWE-79
4.8