Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-07-30 CVE-2024-38986 Unspecified vulnerability in 75Lb Deep-Merge 1.1.1
Prototype Pollution in 75lb deep-merge 1.1.1 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) and cause other impacts via merge methods of lodash to merge objects.
network
low complexity
75lb
critical
9.8
2024-07-30 CVE-2024-39010 Unspecified vulnerability in Chasemoskal Snapstate 0.0.9
chase-moskal snapstate v0.0.9 was discovered to contain a prototype pollution via the function attemptNestedProperty.
network
low complexity
chasemoskal
critical
9.8
2024-07-30 CVE-2024-39011 Unspecified vulnerability in Chargeover Redoc 2.0.9
Prototype Pollution in chargeover redoc v2.0.9-rc.69 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) and cause other impacts via the function mergeObjects.
network
low complexity
chargeover
critical
9.8
2024-07-30 CVE-2024-39012 Unspecified vulnerability in AIS Strategyen 0.4.0
ais-ltd strategyen v0.4.0 was discovered to contain a prototype pollution via the function mergeObjects.
network
low complexity
ais
critical
9.8
2024-07-30 CVE-2024-3930 XXE vulnerability in Perforce Akana API
In versions of Akana API Platform prior to 2024.1.0 a flaw resulting in XML External Entity (XXE) was discovered.
network
low complexity
perforce CWE-611
critical
9.8
2024-07-30 CVE-2024-6699 Unspecified vulnerability in Mikafon MA7 Firmware
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mikafon Electronic Inc.
network
low complexity
mikafon
critical
9.8
2024-07-30 CVE-2024-41702 Unspecified vulnerability in Siberiancms
SiberianCMS - CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
network
low complexity
siberiancms
critical
9.8
2024-07-30 CVE-2024-38432 Insufficient Verification of Data Authenticity vulnerability in Matrix-Globalservices Tafnit
Matrix Tafnit v8 - CWE-646: Reliance on File Name or Extension of Externally-Supplied File
network
low complexity
matrix-globalservices CWE-345
critical
9.8
2024-07-30 CVE-2024-7223 Unspecified vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability has been found in SourceCodester Lot Reservation Management System 1.0 and classified as critical.
network
low complexity
oretnom23
critical
9.8
2024-07-30 CVE-2024-7224 Unspecified vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0 and classified as critical.
network
low complexity
oretnom23
critical
9.8