Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-05-31 CVE-2024-23692 Code Injection vulnerability in Rejetto Http File Server
Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injection vulnerability.
network
low complexity
rejetto CWE-94
critical
9.8
2024-05-30 CVE-2024-35349 SQL Injection vulnerability in Dino Physics School Assistant Project Dino Physics School Assistant 2.3
A vulnerability has been discovered in Diño Physics School Assistant version 2.3.
network
low complexity
dino-physics-school-assistant-project CWE-89
critical
9.8
2024-05-30 CVE-2024-35359 SQL Injection vulnerability in Dino Physics School Assistant Project Dino Physics School Assistant 2.3
A vulnerability has been discovered in Diño Physics School Assistant version 2.3.
network
low complexity
dino-physics-school-assistant-project CWE-89
critical
9.8
2024-05-29 CVE-2024-4358 Authentication Bypass by Spoofing vulnerability in Telerik Report Server 2024 10.0.24.130/10.0.24.305
In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthenticated attacker can gain access to Telerik Report Server restricted functionality via an authentication bypass vulnerability.
network
low complexity
telerik CWE-290
critical
9.8
2024-05-28 CVE-2024-5274 Type Confusion vulnerability in multiple products
Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
network
low complexity
google fedoraproject CWE-843
critical
9.6
2024-05-21 CVE-2024-31989 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Argoproj Argo CD
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
low complexity
argoproj CWE-327
critical
9.0
2024-05-18 CVE-2024-3658 The Build App Online plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0.21.
network
low complexity
critical
9.8
2024-05-16 CVE-2024-4931 Unspecified vulnerability in Oretnom23 Simple Online Bidding System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Simple Online Bidding System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-05-16 CVE-2024-4932 Unspecified vulnerability in Oretnom23 Simple Online Bidding System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Bidding System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-05-16 CVE-2024-4933 Unspecified vulnerability in Oretnom23 Simple Online Bidding System 1.0
A vulnerability has been found in SourceCodester Simple Online Bidding System 1.0 and classified as critical.
network
low complexity
oretnom23
critical
9.8