Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2024-42467 Unspecified vulnerability in Openhab web Interface
openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu.
network
low complexity
openhab
critical
10.0
2024-08-12 CVE-2024-42469 Path Traversal vulnerability in Openhab
openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu.
network
low complexity
openhab CWE-22
critical
9.8
2024-08-12 CVE-2024-42470 Missing Authorization vulnerability in Openhab
openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu.
network
low complexity
openhab CWE-862
critical
9.1
2024-08-12 CVE-2024-42473 Incorrect Authorization vulnerability in Openfga 1.5.7/1.5.8
OpenFGA is an authorization/permission engine.
network
low complexity
openfga CWE-863
critical
9.8
2024-08-12 CVE-2024-7503 The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.5.
network
low complexity
critical
9.8
2024-08-12 CVE-2024-7613 Out-of-bounds Write vulnerability in Tenda Fh1206 Firmware 1.2.0.8(8155)
A vulnerability was found in Tenda FH1206 1.2.0.8(8155) and classified as critical.
network
low complexity
tenda CWE-787
critical
9.8
2024-08-12 CVE-2024-7614 Out-of-bounds Write vulnerability in Tenda Fh1206 Firmware 1.2.0.8(8155)
A vulnerability was found in Tenda FH1206 1.2.0.8(8155).
network
low complexity
tenda CWE-787
critical
9.8
2024-08-12 CVE-2024-7615 Out-of-bounds Write vulnerability in Tenda Fh1206 Firmware 1.2.0.8(8155)
A vulnerability was found in Tenda FH1206 1.2.0.8.
network
low complexity
tenda CWE-787
critical
9.8
2024-08-12 CVE-2024-7616 Command Injection vulnerability in Edimax Ic-5150W Firmware and Ic-6220Dc Firmware
A vulnerability was found in Edimax IC-6220DC and IC-5150W up to 3.06.
network
low complexity
edimax CWE-77
critical
9.8
2024-08-12 CVE-2024-7635 SQL Injection vulnerability in Code-Projects Simple Ticket Booking 1.0
A vulnerability was found in code-projects Simple Ticket Booking 1.0.
network
low complexity
code-projects CWE-89
critical
9.8