Vulnerabilities > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-01 | CVE-2024-36401 | Code Injection vulnerability in multiple products GeoServer is an open source server that allows users to share and edit geospatial data. | 9.8 |
2024-07-01 | CVE-2024-21456 | Out-of-bounds Read vulnerability in Qualcomm products Information Disclosure while parsing beacon frame in STA. | 9.1 |
2024-07-01 | CVE-2024-6376 | Code Injection vulnerability in Mongodb Compass MongoDB Compass may be susceptible to code injection due to insufficient sandbox protection settings with the usage of ejson shell parser in Compass' connection handling. | 9.8 |
2024-07-01 | CVE-2024-38998 | Unspecified vulnerability in Requirejs jrburke requirejs v2.3.6 was discovered to contain a prototype pollution via the function config. | 9.8 |
2024-07-01 | CVE-2024-6419 | Unspecified vulnerability in Oretnom23 Medicine Tracker System 1.0 A vulnerability classified as critical was found in SourceCodester Medicine Tracker System 1.0. | 9.8 |
2024-06-28 | CVE-2024-37371 | In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields. | 9.1 |
2024-06-28 | CVE-2024-6402 | Out-of-bounds Write vulnerability in Tendacn A301 Firmware 15.13.08.12 A vulnerability classified as critical was found in Tenda A301 15.13.08.12. | 9.8 |
2024-06-28 | CVE-2024-6403 | Out-of-bounds Write vulnerability in Tendacn A301 Firmware 15.13.08.12 A vulnerability, which was classified as critical, has been found in Tenda A301 15.13.08.12. | 9.8 |
2024-06-28 | CVE-2024-39704 | Injection vulnerability in Unknown-Corp Melty Blood Actress Again Current Code Soft Circle French-Bread Melty Blood: Actress Again: Current Code through 1.07 Rev. | 9.8 |
2024-06-28 | CVE-2024-3816 | SQL Injection vulnerability in Conceptintermedia S@M CMS Sites managed in S@M CMS (Concept Intermedia) might be vulnerable to a blind SQL Injection executed using the search bar. Only a part of observed services is vulnerable, but since vendor has not investigated the root problem, it is hard to determine when the issue appears. | 9.8 |