Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-29 CVE-2024-0988 Unspecified vulnerability in Kuerp Project Kuerp 1.0.4
A vulnerability classified as critical was found in Sichuan Yougou Technology KuERP up to 1.0.4.
network
low complexity
kuerp-project
critical
9.8
2024-01-28 CVE-2024-23740 Unspecified vulnerability in Getkap KAP
An issue in Kap for macOS version 3.6.0 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
network
low complexity
getkap
critical
9.8
2024-01-28 CVE-2024-23739 Unspecified vulnerability in Discord 0.0.291
An issue in Discord for macOS version 0.0.291 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
network
low complexity
discord
critical
9.8
2024-01-28 CVE-2024-23741 Unspecified vulnerability in Hyper 3.4.1
An issue in Hyper on macOS version 3.4.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
network
low complexity
hyper
critical
9.8
2024-01-28 CVE-2024-23742 Unspecified vulnerability in Loom 0.196.1
An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
network
low complexity
loom
critical
9.8
2024-01-28 CVE-2024-23738 Unspecified vulnerability in Postman
An issue in Postman version 10.22 and before on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
network
low complexity
postman
critical
9.8
2024-01-27 CVE-2024-0960 Unspecified vulnerability in Flink-Extended Aiflow 0.3.1
A vulnerability was found in flink-extended ai-flow 0.3.1.
network
low complexity
flink-extended
critical
9.8
2024-01-27 CVE-2024-0959 Unspecified vulnerability in Standford Gibsonenv 0.3.1
A vulnerability was found in StanfordVL GibsonEnv 0.3.1.
network
low complexity
standford
critical
9.8
2024-01-27 CVE-2024-22860 Integer Overflow or Wraparound vulnerability in Ffmpeg
Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the jpegxl_anim_read_packet component in the JPEG XL Animation decoder.
network
low complexity
ffmpeg CWE-190
critical
9.8
2024-01-27 CVE-2024-22862 Integer Overflow or Wraparound vulnerability in Ffmpeg
Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the JJPEG XL Parser.
network
low complexity
ffmpeg CWE-190
critical
9.8