Weekly Vulnerabilities Reports > November 18 to 24, 2024
Overview
633 new vulnerabilities reported during this period, including 39 critical vulnerabilities and 303 high severity vulnerabilities. This weekly summary report vulnerabilities in 148 products from 112 vendors including Linux, Irfanview, Google, PDF Xchange, and Tungstenautomation. Vulnerabilities are notably categorized as "Cross-site Scripting", "Out-of-bounds Write", "Out-of-bounds Read", "Missing Authorization", and "Use After Free".
- 259 reported vulnerabilities are remotely exploitables.
- 134 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
- 366 reported vulnerabilities are exploitable by an anonymous user.
- Linux has the most reported vulnerabilities, with 87 reported vulnerabilities.
- Veritas has the most reported critical vulnerabilities, with 7 reported vulnerabilities.
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
EXPLOITABLE
EXPLOITABLE
AVAILABLE
ANONYMOUSLY
WEB APPLICATION
Vulnerability Details
The following table list reported vulnerabilities for the period covered by this report:
39 Critical Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-11-24 | CVE-2024-11666 | Echarge | Insufficient Verification of Data Authenticity vulnerability in Echarge Salia Plcc Firmware Affected devices beacon to eCharge cloud infrastructure asking if there are any command they should run. | 9.8 |
2024-11-24 | CVE-2024-53909 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24334. | 9.8 |
2024-11-24 | CVE-2024-53910 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24336. | 9.8 |
2024-11-24 | CVE-2024-53911 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24339. | 9.8 |
2024-11-24 | CVE-2024-53912 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24341. | 9.8 |
2024-11-24 | CVE-2024-53914 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24344. | 9.8 |
2024-11-24 | CVE-2024-53915 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24405. | 9.8 |
2024-11-24 | CVE-2024-53913 | Veritas | Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24343. | 9.8 |
2024-11-24 | CVE-2024-53899 | Virtualenv | Command Injection vulnerability in Virtualenv virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment. | 9.8 |
2024-11-24 | CVE-2024-11236 | PHP | Integer Overflow or Wraparound vulnerability in PHP In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, uncontrolled long string inputs to ldap_escape() function on 32-bit systems can cause an integer overflow, resulting in an out-of-bounds write. | 9.8 |
2024-11-23 | CVE-2024-11632 | Fabianros | SQL Injection vulnerability in Fabianros Simple CAR Rental System 1.0 A vulnerability was found in code-projects Simple Car Rental System 1.0. | 9.8 |
2024-11-23 | CVE-2023-7299 | Datagear | SQL Injection vulnerability in Datagear A vulnerability was found in DataGear up to 4.60. | 9.8 |
2024-11-23 | CVE-2024-11631 | Angeljudesuarez | SQL Injection vulnerability in Angeljudesuarez Tailoring Management System 1.0 A vulnerability was found in itsourcecode Tailoring Management System 1.0 and classified as critical. | 9.8 |
2024-11-22 | CVE-2024-8806 | Cohesive | Unspecified vulnerability in Cohesive Vns3 Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. | 9.8 |
2024-11-22 | CVE-2024-8807 | Cohesive | Unspecified vulnerability in Cohesive Vns3 Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. | 9.8 |
2024-11-22 | CVE-2023-51638 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra Hard-coded Credentials Authentication Bypass Vulnerability. | 9.8 |
2024-11-22 | CVE-2023-51639 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra downloadExportedChart Directory Traversal Authentication Bypass Vulnerability. | 9.8 |
2024-11-22 | CVE-2024-52723 | Totolink | OS Command Injection vulnerability in Totolink X6000R Firmware 9.4.0Cu.1041B20240224 In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. | 9.8 |
2024-11-22 | CVE-2024-41779 | IBM Engineering Systems Design Rhapsody - Model Manager 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. | 9.8 | |
2024-11-21 | CVE-2024-11592 | 1000Projects | SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0 A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical. | 9.8 |
2024-11-21 | CVE-2024-11591 | 1000Projects | SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0 A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. | 9.8 |
2024-11-21 | CVE-2024-11590 | 1000Projects | SQL Injection vulnerability in 1000Projects Bookstore Management System 1.0 A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. | 9.8 |
2024-11-21 | CVE-2024-11320 | Pandorafms | Command Injection vulnerability in Pandorafms Pandora FMS Arbitrary commands execution on the server by exploiting a command injection vulnerability in the LDAP authentication mechanism. | 9.8 |
2024-11-21 | CVE-2024-51151 | Dlink | Command Injection vulnerability in Dlink Di-8200 Firmware 16.07.26A1 D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function via the flag parameter and cmd parameter. | 9.8 |
2024-11-20 | CVE-2024-52677 | Hkcms | Unrestricted Upload of File with Dangerous Type vulnerability in Hkcms 2.3.0.230709 HkCms <= v2.3.2.240702 is vulnerable to file upload in the getFileName method in /app/common/library/Upload.php. | 9.8 |
2024-11-20 | CVE-2024-52765 | H3C | Unspecified vulnerability in H3C Gr-1800Ax Firmware Minigrw1B0V100R007 H3C GR-1800AX MiniGRW1B0V100R007 is vulnerable to remote code execution (RCE) via the aspForm parameter. | 9.8 |
2024-11-20 | CVE-2018-9478 | Out-of-bounds Write vulnerability in Google Android In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. | 9.8 | |
2024-11-20 | CVE-2018-9479 | Out-of-bounds Write vulnerability in Google Android In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. | 9.8 | |
2024-11-20 | CVE-2018-9467 | Unspecified vulnerability in Google Android In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. | 9.8 | |
2024-11-19 | CVE-2024-52714 | Tenda | Classic Buffer Overflow vulnerability in Tenda AC6 Firmware 15.03.06.50Multi Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function 'fromSetSysTime. | 9.8 |
2024-11-19 | CVE-2024-52759 | Dlink | Classic Buffer Overflow vulnerability in Dlink Di-8003 Firmware 16.07.16A1 D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in the ip_position_asp function. | 9.8 |
2024-11-18 | CVE-2024-0012 | Paloaltonetworks | Missing Authentication for Critical Function vulnerability in Paloaltonetworks Pan-Os An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authenticated privilege escalation vulnerabilities like CVE-2024-9474 https://security.paloaltonetworks.com/CVE-2024-9474 . The risk of this issue is greatly reduced if you secure access to the management web interface by restricting access to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue is applicable only to PAN-OS 10.2, PAN-OS 11.0, PAN-OS 11.1, and PAN-OS 11.2 software. Cloud NGFW and Prisma Access are not impacted by this vulnerability. | 9.8 |
2024-11-18 | CVE-2024-52428 | Scripteo | Unspecified vulnerability in Scripteo ADS Booster BY ADS PRO Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Scripteo Ads Booster by Ads Pro allows PHP Local File Inclusion.This issue affects Ads Booster by Ads Pro: from n/a through 1.12. | 9.8 |
2024-11-18 | CVE-2024-52430 | LIS | Unspecified vulnerability in LIS Video Gallery Deserialization of Untrusted Data vulnerability in Lis Lis Video Gallery allows Object Injection.This issue affects Lis Video Gallery: from n/a through 0.2.1. | 9.8 |
2024-11-18 | CVE-2024-52431 | Pressaholic | Unspecified vulnerability in Pressaholic Wordpress Video Robot Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pressaholic WordPress Video Robot - The Ultimate Video Importer allows SQL Injection.This issue affects WordPress Video Robot - The Ultimate Video Importer: from n/a through 1.20.0. | 9.8 |
2024-11-18 | CVE-2024-52432 | Nixsolutions | Unspecified vulnerability in Nixsolutions NIX Anti-Spam Light Deserialization of Untrusted Data vulnerability in NIX Solutions Ltd NIX Anti-Spam Light allows Object Injection.This issue affects NIX Anti-Spam Light: from n/a through 0.0.4. | 9.8 |
2024-11-18 | CVE-2024-52433 | Mindstien | Deserialization of Untrusted Data vulnerability in Mindstien MY GEO Posts Free Deserialization of Untrusted Data vulnerability in Mindstien Technologies My Geo Posts Free allows Object Injection.This issue affects My Geo Posts Free: from n/a through 1.2. | 9.8 |
2024-11-18 | CVE-2024-42383 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows to write a NULL byte value beyond the memory space dedicated for the hostname field. | 9.8 |
2024-11-18 | CVE-2024-52434 | Supsystic | Code Injection vulnerability in Supsystic Popup Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Supsystic Popup by Supsystic allows Command Injection.This issue affects Popup by Supsystic: from n/a through 1.10.29. | 9.1 |
303 High Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-11-24 | CVE-2024-11665 | Echarge | Command Injection vulnerability in Echarge Salia Plcc Firmware Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in hardy-barth cph2_echarge_firmware allows OS Command Injection.This issue affects cph2_echarge_firmware: through 2.0.4. | 8.8 |
2024-11-22 | CVE-2024-11392 | Huggingface | Unspecified vulnerability in Huggingface Transformers Hugging Face Transformers MobileViTV2 Deserialization of Untrusted Data Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2024-11393 | Huggingface | Deserialization of Untrusted Data vulnerability in Huggingface Transformers Hugging Face Transformers MaskFormer Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2024-11394 | Huggingface | Deserialization of Untrusted Data vulnerability in Huggingface Transformers Hugging Face Transformers Trax Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2024-9254 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2024-8805 | Bluez | Unspecified vulnerability in Bluez 5.77 BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2024-8808 | Cohesive | Unspecified vulnerability in Cohesive Vns3 Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. | 8.8 |
2024-11-22 | CVE-2023-51635 | Netgear | Out-of-bounds Write vulnerability in Netgear Rax30 Firmware NETGEAR RAX30 fing_dil Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 8.8 |
2024-11-21 | CVE-2024-11589 | Angeljudesuarez | SQL Injection vulnerability in Angeljudesuarez Tailoring Management System 1.0 A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. | 8.8 |
2024-11-21 | CVE-2024-10898 | Krishaweb | Unspecified vulnerability in Krishaweb Contact Form 7 Email ADD on The Contact Form 7 Email Add on plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.9 via the cf7_email_add_on_add_admin_template() function. | 8.8 |
2024-11-20 | CVE-2018-9470 | Out-of-bounds Write vulnerability in Google Android In bff_Scanner_addOutPos of Scanner.c, there is a possible out-of-bounds write due to an incorrect bounds check. | 8.8 | |
2024-11-20 | CVE-2018-9472 | Integer Overflow or Wraparound vulnerability in Google Android In xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer overflow. | 8.8 | |
2024-11-20 | CVE-2018-9475 | Out-of-bounds Write vulnerability in Google Android In HeadsetInterface::ClccResponse of btif_hf.cc, there is a possible out of bounds stack write due to a missing bounds check. | 8.8 | |
2024-11-20 | CVE-2024-11484 | Code4Berry | Unspecified vulnerability in Code4Berry Decoration Management System 1.0 A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0. | 8.8 |
2024-11-20 | CVE-2024-11487 | Code4Berry | SQL Injection vulnerability in Code4Berry Decoration Management System 1.0 A vulnerability has been found in Code4Berry Decoration Management System 1.0 and classified as critical. | 8.8 |
2024-11-20 | CVE-2024-44308 | Apple | Unspecified vulnerability in Apple products The issue was addressed with improved checks. | 8.8 |
2024-11-19 | CVE-2018-9466 | Out-of-bounds Write vulnerability in Google Android In the xmlSnprintfElementContent function of valid.c, there is a possible out of bounds write. | 8.8 | |
2024-11-19 | CVE-2018-9411 | Out-of-bounds Write vulnerability in Google Android 8.0/8.1 In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. | 8.8 | |
2024-11-19 | CVE-2018-9433 | Unspecified vulnerability in Google Android In ArrayConcatVisitor of builtins-array.cc, there is a possible type confusion due to improper input validation. | 8.8 | |
2024-11-19 | CVE-2024-51669 | Vivwebsolutions | Cross-Site Request Forgery (CSRF) vulnerability in Vivwebsolutions Dynamic Widgets Cross-Site Request Forgery (CSRF) vulnerability in Vivwebs Dynamic Widgets.This issue affects Dynamic Widgets: from n/a through 1.6.4. | 8.8 |
2024-11-19 | CVE-2018-9365 | Out-of-bounds Read vulnerability in Google Android In smp_data_received of smp_l2c.cc, there is a possible out of bounds read followed by code execution due to a missing bounds check. | 8.8 | |
2024-11-18 | CVE-2024-52427 | Vollstart | Code Injection vulnerability in Vollstart Event Tickets With Ticket Scanner Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Saso Nikolov Event Tickets with Ticket Scanner allows Server Side Include (SSI) Injection.This issue affects Event Tickets with Ticket Scanner: from n/a through 2.3.11. | 8.8 |
2024-11-18 | CVE-2024-52429 | Antonhoelstad | Unspecified vulnerability in Antonhoelstad WP Quick Setup Unrestricted Upload of File with Dangerous Type vulnerability in Anton Hoelstad WP Quick Setup allows Upload a Web Shell to a Web Server.This issue affects WP Quick Setup: from n/a through 2.0. | 8.8 |
2024-11-18 | CVE-2024-41969 | A low privileged remote attacker may modify the configuration of the CODESYS V3 service through a missing authentication vulnerability which could lead to full system access and/or DoS. | 8.8 | |
2024-11-18 | CVE-2024-49574 | Zohocorp | SQL Injection vulnerability in Zohocorp Manageengine Adaudit Plus Zohocorp ManageEngine ADAudit Plus versions below 8123 are vulnerable to SQL Injection in the reports module. | 8.8 |
2024-11-18 | CVE-2024-22067 | ZTE | Unspecified vulnerability in ZTE Nh8091 Firmware Znh8091V1.8 ZTE NH8091 product has an improper permission control vulnerability. | 8.8 |
2024-11-18 | CVE-2020-26071 | A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an affected device, which could result in a denial of service (DoS) condition. The vulnerability is due to insufficient input validation for specific commands. | 8.4 | |
2024-11-22 | CVE-2024-9710 | Posthog | Server-Side Request Forgery (SSRF) vulnerability in Posthog PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability. | 8.3 |
2024-11-24 | CVE-2024-11233 | PHP | Out-of-bounds Write vulnerability in PHP In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, due to an error in convert.quoted-printable-decode filter certain data can lead to buffer overread by one byte, which can in certain circumstances lead to crashes or disclose content of other memory areas. | 8.2 |
2024-11-22 | CVE-2024-11104 | The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post Carousel, Particles, Sliders, Chart, Blogs) plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing capability check on the save_options() function in all versions up to, and including, 2.6.2. | 8.1 | |
2024-11-22 | CVE-2024-11601 | The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post Carousel, Particles, Sliders, Chart, Blog, Video Gallery) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.1. | 8.1 | |
2024-11-20 | CVE-2024-11485 | Code4Berry | Unspecified vulnerability in Code4Berry Decoration Management System 1.0 A vulnerability, which was classified as critical, has been found in Code4Berry Decoration Management System 1.0. | 8.1 |
2024-11-20 | CVE-2024-10855 | Sirv | Authorization Bypass Through User-Controlled Key vulnerability in Sirv The Image Optimizer, Resizer and CDN – Sirv plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to insufficient validation on the filename parameter of the sirv_upload_file_by_chunks() function and lack of in all versions up to, and including, 7.3.0. | 8.1 |
2024-11-20 | CVE-2024-10900 | Metagauss | Missing Authorization vulnerability in Metagauss Profilegrid The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the pm_remove_file_attachment() function in all versions up to, and including, 5.9.3.6. | 8.1 |
2024-11-18 | CVE-2024-41971 | A low privileged remote attacker can overwrite an arbitrary file on the filesystem leading to a DoS and data loss. | 8.1 | |
2024-11-18 | CVE-2024-41973 | A low privileged remote attacker can specify an arbitrary file on the filesystem which may lead to an arbitrary file writes with root privileges. | 8.1 | |
2024-11-18 | CVE-2024-41967 | A low privileged remote attacker may modify the boot mode configuration setup of the device, leading to modification of the firmware upgrade process or a denial-of-service attack. | 8.1 | |
2024-11-22 | CVE-2024-6818 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6819 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6820 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView AWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6821 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6822 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6871 | Gdata Software | Unspecified vulnerability in Gdata-Software Total Security 25.5.15.21 G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7227 | Avast | Unspecified vulnerability in Avast Free Antivirus 23.9.6082 Avast Free Antivirus AvastSvc Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7229 | Avast | Unspecified vulnerability in Avast Cleanup Premium 23.4 Avast Cleanup Premium Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7230 | Avast | Unspecified vulnerability in Avast Cleanup Premium 23.4 Avast Cleanup Premium Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7231 | Avast | Unspecified vulnerability in Avast Cleanup Premium 23.4 Avast Cleanup Premium Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7232 | Avast | Unspecified vulnerability in Avast Free Antivirus 23.12.6094 Avast Free Antivirus AvastSvc Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7234 | AVG | Unspecified vulnerability in AVG Antivirus 23.9.8494.795 AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7237 | AVG | Unspecified vulnerability in AVG Antivirus 23.12.8700.813 AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7238 | Vipre | Unspecified vulnerability in Vipre Advanced Security 12.0.1.214 VIPRE Advanced Security SBAMSvc Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7239 | Vipre | Unspecified vulnerability in Vipre Advanced Security 12.0.1.214 VIPRE Advanced Security Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7240 | F Secure | Unspecified vulnerability in F-Secure Total 19.2 F-Secure Total Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7241 | Pandasecurity | Unspecified vulnerability in Pandasecurity Panda Dome 22.02.01 Panda Security Dome Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7242 | Pandasecurity | Unspecified vulnerability in Pandasecurity Panda Dome 22.02.01 Panda Security Dome Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7243 | Pandasecurity | Unspecified vulnerability in Pandasecurity Panda Dome 22.02.01 Panda Security Dome Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7244 | Pandasecurity | Unspecified vulnerability in Pandasecurity Panda Dome 22.02.01 Panda Security Dome VPN DLL Hijacking Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7245 | Pandasecurity | Unspecified vulnerability in Pandasecurity Panda Dome 22.02.01 Panda Security Dome VPN Incorrect Permission Assignment Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7253 | Nomachine | Unspecified vulnerability in Nomachine NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7352 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Editor PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7508 | Trimble | Out-of-bounds Write vulnerability in Trimble Sketchup Viewer 22.0.354.0 Trimble SketchUp Viewer SKP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7509 | Trimble | Out-of-bounds Write vulnerability in Trimble Sketchup 22.0.354.0 Trimble SketchUp SKP File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7510 | Trimble | Unspecified vulnerability in Trimble Sketchup 22.0.354.0 Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-7565 | Smartbear | Unspecified vulnerability in Smartbear Soapui .5.7.0 SMARTBEAR SoapUI unpackageAll Directory Traversal Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8025 | Nikon | Out-of-bounds Write vulnerability in Nikon NEF Codec 1.31.2 Nikon NEF Codec Thumbnail Provider NRW File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8356 | Visteon | Insufficient Verification of Data Authenticity vulnerability in Visteon Infotainment Cmu150Na74.00.324A Visteon Infotainment VIP MCU Code Insufficient Validation of Data Authenticity Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8357 | Visteon | Unspecified vulnerability in Visteon Infotainment Cmu150Na74.00.324A Visteon Infotainment App SoC Missing Immutable Root of Trust in Hardware Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9112 | Faststone | Unspecified vulnerability in Faststone Image Viewer 7.8 FastStone Image Viewer PSD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9113 | Faststone | Unspecified vulnerability in Faststone Image Viewer 7.8 FastStone Image Viewer TGA File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9114 | Faststone | Out-of-bounds Write vulnerability in Faststone Image Viewer 7.8 FastStone Image Viewer GIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9243 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader AcroForm Doc Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9244 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Update Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9245 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Update Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9247 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Annotation Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9248 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9250 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9251 | Foxit | Use After Free vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Annotation Use-After-Free Information Disclosure Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9252 | Foxit | Use After Free vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader AcroForm Use-After-Free Information Disclosure Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9255 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9258 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView SID File Parsing Uninitialized Pointer Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9259 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView SID File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9260 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView SID File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9261 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.66 IrfanView SID File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9767 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView SID File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11477 | 7 ZIP | Unspecified vulnerability in 7-Zip 7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11506 | Irfanview | Unspecified vulnerability in Irfanview 4.62 IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11507 | Irfanview | Unspecified vulnerability in Irfanview 4.62 IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11508 | Irfanview | Unspecified vulnerability in Irfanview 4.62 IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11509 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.62 IrfanView SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11510 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.62/4.65/4.66 IrfanView WBZ plugin WB1 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11511 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.62/4.65/4.66 IrfanView XCF Plugin XCF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11512 | Irfanview | Unspecified vulnerability in Irfanview 4.62/4.65/4.66 IrfanView WBZ Plugin WB1 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11513 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11514 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11515 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11516 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView JPM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11517 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11518 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView RLE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11519 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView RLE File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11520 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView ARW File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11521 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DJVU File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11522 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11523 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11524 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11525 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11526 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11527 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11528 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11529 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11530 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView CGM File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11531 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11532 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11533 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11534 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11535 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11536 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11537 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11538 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11539 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11540 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11541 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11542 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11543 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11544 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11545 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11546 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11547 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11548 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11549 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11550 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11551 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11552 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11553 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11554 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11555 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11556 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11557 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11558 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11559 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11560 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11561 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11562 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11563 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11564 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11565 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11566 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11567 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11568 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11569 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11570 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11571 | Irfanview | Unspecified vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11572 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11573 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11574 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11575 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.67 IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11576 | Luxion | Out-of-bounds Write vulnerability in Luxion Keyshot Luxion KeyShot 3DS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11577 | Luxion | Unspecified vulnerability in Luxion Keyshot Luxion KeyShot SKP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11578 | Luxion | Out-of-bounds Write vulnerability in Luxion Keyshot Luxion KeyShot 3DS File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11579 | Luxion | Unspecified vulnerability in Luxion Keyshot Luxion KeyShot OBJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11580 | Luxion | Out-of-bounds Write vulnerability in Luxion Keyshot Luxion KeyShot ABC File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-11581 | Luxion | Unspecified vulnerability in Luxion Keyshot Luxion KeyShot JT File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8811 | Winzip | Always-Incorrect Control Flow Implementation vulnerability in Winzip WinZip Mark-of-the-Web Bypass Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8812 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8813 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8814 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8815 | PDF Xchange | Out-of-bounds Write vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8817 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8818 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8825 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8826 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8827 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor PPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8830 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8831 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8833 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8837 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8838 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8840 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8842 | PDF Xchange | Use of Uninitialized Resource vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor RTF File Parsing Uninitialized Variable Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-8847 | PDF Xchange | Unspecified vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor Doc Object Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9712 | Trimble | Unspecified vulnerability in Trimble Sketchup 23.1.340 Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9713 | Trimble | Unspecified vulnerability in Trimble Sketchup 24.0.484 Trimble SketchUp Pro SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9714 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9715 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9716 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9717 | Trimble | Use of Uninitialized Resource vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9718 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9719 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9720 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9721 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9722 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9723 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9724 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9725 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9726 | Trimble | Out-of-bounds Write vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9727 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9728 | Trimble | Unspecified vulnerability in Trimble Sketchup Viewer 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9729 | Trimble | Unspecified vulnerability in Trimble Sketchup 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9730 | Trimble | Out-of-bounds Write vulnerability in Trimble Sketchup 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9731 | Trimble | Out-of-bounds Write vulnerability in Trimble Sketchup 22.0.316.0 Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9732 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9733 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9734 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9735 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JPF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9736 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9737 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9738 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9739 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9740 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9741 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9742 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9743 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9744 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9745 | Tungstenautomation | Out-of-bounds Write vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9746 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF TGA File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9747 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PSD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9748 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9750 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PNG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9751 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9755 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9764 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Use-After-Free Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-9766 | Wacom | Link Following vulnerability in Wacom Center Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-1867 | Gdata Software | Unspecified vulnerability in Gdata-Software Total Security 25.4.0.3 G DATA Total Security Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-1868 | Gdata Software | Unspecified vulnerability in Gdata-Software Total Security 25.4.0.3 G DATA Total Security Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-30377 | Gdata Software | Unspecified vulnerability in Gdata-Software Total Security 25.4.0.3 G DATA Total Security Scan Server Link Following Local Privilege Escalation Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6815 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView RLE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6816 | Irfanview | Out-of-bounds Write vulnerability in Irfanview 4.66 IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2024-6817 | Irfanview | Unspecified vulnerability in Irfanview 4.66 IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. | 7.8 |
2024-11-22 | CVE-2017-9711 | Qualcomm | Unspecified vulnerability in Qualcomm products Certain unprivileged processes are able to perform IOCTL calls. | 7.8 |
2024-11-20 | CVE-2018-9471 | Type Confusion vulnerability in Google Android In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. | 7.8 | |
2024-11-20 | CVE-2018-9474 | Deserialization of Untrusted Data vulnerability in Google Android In writeToParcel of MediaPlayer.java, there is a possible serialization/deserialization mismatch due to improper input validation. | 7.8 | |
2024-11-20 | CVE-2018-9477 | Missing Authorization vulnerability in Google Android 8.0/8.1 In the development options section of the Settings app, there is a possible authentication bypass due to a missing permission check. | 7.8 | |
2024-11-20 | CVE-2018-9469 | Missing Authorization vulnerability in Google Android In multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut due to a missing permission check. | 7.8 | |
2024-11-20 | CVE-2024-44306 | Apple | Classic Buffer Overflow vulnerability in Apple Macos A buffer overflow issue was addressed with improved memory handling. | 7.8 |
2024-11-20 | CVE-2024-44307 | Apple | Classic Buffer Overflow vulnerability in Apple Macos A buffer overflow issue was addressed with improved memory handling. | 7.8 |
2024-11-19 | CVE-2018-9417 | Use After Free vulnerability in Google Android In f_hidg_read and hidg_disable of f_hid.c, there is a possible use-after-free due to improper locking. | 7.8 | |
2024-11-19 | CVE-2018-9424 | Out-of-bounds Write vulnerability in Google Android 8.0/8.1 In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. | 7.8 | |
2024-11-19 | CVE-2018-9428 | Use After Free vulnerability in Google Android 8.1 In startDevice of AAudioServiceStreamBase.cpp there is a possible out of bounds write due to a use after free. | 7.8 | |
2024-11-19 | CVE-2018-9432 | Unspecified vulnerability in Google Android In createPhonebookDialogView and createMapDialogView of BluetoothPermissionActivity.java, there is a possible permissions bypass. | 7.8 | |
2024-11-19 | CVE-2018-9366 | Integer Overflow or Wraparound vulnerability in Google Android In IMSA_Recv_Thread and VT_IMCB_Thread of ImsaClient.cpp and VideoTelephony.c, there is a possible out of bounds write due to an integer overflow. | 7.8 | |
2024-11-19 | CVE-2018-9367 | Out-of-bounds Write vulnerability in Google Android In FT_ACDK_CCT_V2_OP_ISP_SET_TUNING_PARAS of Meta_CCAP_Para.cpp, there is a possible out of bounds write due to improper input validation. | 7.8 | |
2024-11-19 | CVE-2018-9368 | Out-of-bounds Write vulnerability in Google Android In mtkscoaudio debugfs there is a possible arbitrary kernel memory write due to missing bounds check and weakened SELinux policies. | 7.8 | |
2024-11-19 | CVE-2018-9339 | Type Confusion vulnerability in Google Android 8.0/8.1 In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type confusion. | 7.8 | |
2024-11-19 | CVE-2018-9341 | Out-of-bounds Write vulnerability in Google Android In impeg2d_mc_fullx_fully of impeg2d_mc.c there is a possible out of bound write due to missing bounds check. | 7.8 | |
2024-11-19 | CVE-2018-9344 | Improper Locking vulnerability in Google Android 8.1 In several functions of DescramblerImpl.cpp, there is a possible use after free due to improper locking. | 7.8 | |
2024-11-19 | CVE-2017-13315 | Incorrect Calculation of Buffer Size vulnerability in Google Android In writeToParcel and createFromParcel of DcParamObject.java, there is a permission bypass due to a write size mismatch. | 7.8 | |
2024-11-19 | CVE-2018-9338 | Out-of-bounds Write vulnerability in Google Android In ResStringPool::setTo of ResourceTypes.cpp, there is a possible out of bounds write due to a missing bounds check. | 7.8 | |
2024-11-19 | CVE-2023-21270 | Incorrect Authorization vulnerability in Google Android 12.0/12.1/13.0 In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an app to keep permissions that should be revoked due to incorrect permission flags cleared during an update. | 7.8 | |
2024-11-19 | CVE-2024-53057 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT In qdisc_tree_reduce_backlog, Qdiscs with major handle ffff: are assumed to be either root or ingress. | 7.8 |
2024-11-19 | CVE-2024-53059 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: Fix response handling in iwl_mvm_send_recovery_cmd() 1. | 7.8 |
2024-11-19 | CVE-2024-53061 | Linux | Integer Underflow (Wrap or Wraparound) vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: s5p-jpeg: prevent buffer overflows The current logic allows word to be less than 2. | 7.8 |
2024-11-19 | CVE-2024-53068 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix slab-use-after-free in scmi_bus_notifier() The scmi_dev->name is released prematurely in __scmi_device_destroy(), which causes slab-use-after-free when accessing scmi_dev->name in scmi_bus_notifier(). | 7.8 |
2024-11-19 | CVE-2024-50264 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Initialization of the dangling pointer occurring in vsk->trans During loopback communication, a dangling pointer can be created in vsk->trans, potentially leading to a Use-After-Free condition. | 7.8 |
2024-11-19 | CVE-2024-50267 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_edgeport: fix use after free in debug printk The "dev_dbg(&urb->dev->dev, ..." which happens after usb_free_urb(urb) is a use after free of the "urb" pointer. | 7.8 |
2024-11-19 | CVE-2024-50269 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: usb: musb: sunxi: Fix accessing an released usb phy Commit 6ed05c68cbca ("usb: musb: sunxi: Explicitly release USB PHY on exit") will cause that usb phy @glue->xceiv is accessed after released. 1) register platform driver @sunxi_musb_driver // get the usb phy @glue->xceiv sunxi_musb_probe() -> devm_usb_get_phy(). 2) register and unregister platform driver @musb_driver musb_probe() -> sunxi_musb_init() use the phy here //the phy is released here musb_remove() -> sunxi_musb_exit() -> devm_usb_put_phy() 3) register @musb_driver again musb_probe() -> sunxi_musb_init() use the phy here but the phy has been released at 2). ... Fixed by reverting the commit, namely, removing devm_usb_put_phy() from sunxi_musb_exit(). | 7.8 |
2024-11-19 | CVE-2024-50274 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: idpf: avoid vport access in idpf_get_link_ksettings When the device control plane is removed or the platform running device control plane is rebooted, a reset is detected on the driver. | 7.8 |
2024-11-19 | CVE-2024-50276 | Linux | Double Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net: vertexcom: mse102x: Fix possible double free of TX skb The scope of the TX skb is wider than just mse102x_tx_frame_spi(), so in case the TX skb room needs to be expanded, we should free the the temporary skb instead of the original skb. | 7.8 |
2024-11-19 | CVE-2024-50282 | Linux | Classic Buffer Overflow vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a possible buffer overflow if size is larger than 4K. (cherry picked from commit f5d873f5825b40d886d03bd2aede91d4cf002434) | 7.8 |
2024-11-19 | CVE-2024-50283 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-use-after-free in smb3_preauth_hash_rsp ksmbd_user_session_put should be called under smb3_preauth_hash_rsp(). It will avoid freeing session before calling smb3_preauth_hash_rsp(). | 7.8 |
2024-11-19 | CVE-2023-52921 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix possible UAF in amdgpu_cs_pass1() Since the gang_size check is outside of chunk parsing loop, we need to reset i before we free the chunk data. Suggested by Ye Zhang (@VAR10CK) of Baidu Security. | 7.8 |
2024-11-18 | CVE-2024-52572 | Siemens | Out-of-bounds Write vulnerability in Siemens Tecnomatix Plant Simulation A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Teamcenter Visualization V2406 (All versions < V2406.0005), Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). | 7.8 |
2024-11-19 | CVE-2024-52360 | IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 is vulnerable to SQL injection. | 7.6 | |
2024-11-22 | CVE-2023-51634 | Netgear | Unspecified vulnerability in Netgear Rax30 Firmware NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vulnerability. | 7.5 |
2024-11-22 | CVE-2023-52332 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra serveMathJaxLibraries Directory Traversal Information Disclosure Vulnerability. | 7.5 |
2024-11-21 | CVE-2024-11588 | Avlditest | NULL Pointer Dereference vulnerability in Avlditest Libdoip 1.0.0 A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. | 7.5 |
2024-11-20 | CVE-2024-48982 | ARM | Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0 An issue was discovered in MBed OS 6.16.0. | 7.5 |
2024-11-20 | CVE-2024-48986 | ARM | Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0 An issue was discovered in MBed OS 6.16.0. | 7.5 |
2024-11-20 | CVE-2024-52581 | Litestar | Unspecified vulnerability in Litestar Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. | 7.5 |
2024-11-20 | CVE-2024-48981 | ARM | Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0 An issue was discovered in MBed OS 6.16.0. | 7.5 |
2024-11-20 | CVE-2024-48983 | ARM | Integer Overflow or Wraparound vulnerability in ARM Mbed 6.16.0 An issue was discovered in MBed OS 6.16.0. | 7.5 |
2024-11-20 | CVE-2024-48985 | ARM | Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0 An issue was discovered in MBed OS 6.16.0. | 7.5 |
2024-11-20 | CVE-2018-9484 | Out-of-bounds Read vulnerability in Google Android In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out of bounds read due to a missing bounds check. | 7.5 | |
2024-11-19 | CVE-2018-9456 | Out-of-bounds Read vulnerability in Google Android In sdpu_extract_attr_seq of sdp_utils.cc, there is a possible out of bounds read due to an incorrect bounds check. | 7.5 | |
2024-11-19 | CVE-2018-9419 | Out-of-bounds Read vulnerability in Google Android In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. | 7.5 | |
2024-11-19 | CVE-2018-9364 | Unspecified vulnerability in Google Android In the LG LAF component, there is a special command that allowed modification of certain partitions. | 7.5 | |
2024-11-18 | CVE-2024-21287 | Oracle | Incorrect Authorization vulnerability in Oracle Agile Product Lifecycle Management 9.3.6 Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension). | 7.5 |
2024-11-18 | CVE-2024-42384 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and produce a segmentation fault on the application. | 7.5 |
2024-11-18 | CVE-2024-42386 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and produce a segmentation fault on the application. | 7.5 |
2024-11-18 | CVE-2024-42392 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite loop bug if the input string contains unexpected characters. | 7.5 |
2024-11-22 | CVE-2023-51644 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. | 7.3 |
2024-11-22 | CVE-2023-52333 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra saveFile Directory Traversal Remote Code Execution Vulnerability. | 7.3 |
2024-11-19 | CVE-2018-9369 | Unspecified vulnerability in Google Android In bootloader there is fastboot command allowing user specified kernel command line arguments. | 7.3 | |
2024-11-19 | CVE-2018-9370 | Out-of-bounds Write vulnerability in Google Android In download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions due to missing bounds check. | 7.3 | |
2024-11-24 | CVE-2024-11234 | PHP | Injection vulnerability in PHP In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, when using streams with configured proxy and "request_fulluri" option, the URI is not properly sanitized which can lead to HTTP request smuggling and allow the attacker to use the proxy to perform arbitrary HTTP requests originating from the server, thus potentially gaining access to resources not normally available to the external user. | 7.2 |
2024-11-21 | CVE-2024-10788 | The Activity Log – Monitor & Record User Changes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the event parameters in all versions up to, and including, 2.11.1 due to insufficient input sanitization and output escaping. | 7.2 | |
2024-11-20 | CVE-2024-51208 | Phpgurukul | Unrestricted Upload of File with Dangerous Type vulnerability in PHPgurukul Boat Booking System 1.0 File Upload vulnerability in change-image.php in Anuj Kumar's Boat Booking System version 1.0 allows local attackers to upload a malicious PHP script via the Image Upload Mechanism parameter. | 7.2 |
2024-11-18 | CVE-2024-9474 | Paloaltonetworks | OS Command Injection vulnerability in Paloaltonetworks Pan-Os A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access are not impacted by this vulnerability. | 7.2 |
2024-11-18 | CVE-2024-52435 | Wpdownloadmanager | SQL Injection vulnerability in Wpdownloadmanager Premium Packages - Sell Digital products Securely Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in W3 Eden, Inc. | 7.2 |
2024-11-18 | CVE-2024-52436 | Wpexperts | SQL Injection vulnerability in Wpexperts Post Smtp Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Post SMTP allows Blind SQL Injection.This issue affects Post SMTP: from n/a through 2.9.9. | 7.2 |
2024-11-22 | CVE-2024-9246 | Foxit | Out-of-bounds Read vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader Annotation Out-Of-Bounds Read Information Disclosure Vulnerability. | 7.1 |
2024-11-22 | CVE-2024-9249 | Foxit | Unspecified vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. | 7.1 |
2024-11-22 | CVE-2024-9253 | Foxit | Out-of-bounds Read vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. | 7.1 |
2024-11-22 | CVE-2024-9256 | Foxit | Out-of-bounds Read vulnerability in Foxit PDF Editor and PDF Reader Foxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. | 7.1 |
2024-11-20 | CVE-2018-9468 | Unspecified vulnerability in Google Android In query of DownloadManager.java, there is a possible read/write of arbitrary files due to a permissions bypass. | 7.1 | |
2024-11-19 | CVE-2024-53062 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: mgb4: protect driver against spectre Frequency range is set from sysfs via frequency_range_store(), being vulnerable to spectre, as reported by smatch: drivers/media/pci/mgb4/mgb4_cmt.c:231 mgb4_cmt_set_vin_freq_range() warn: potential spectre issue 'cmt_vals_in' [r] drivers/media/pci/mgb4/mgb4_cmt.c:238 mgb4_cmt_set_vin_freq_range() warn: possible spectre second half. | 7.1 |
2024-11-19 | CVE-2024-53082 | Linux | Out-of-bounds Read vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: virtio_net: Add hash_key_length check Add hash_key_length check in virtnet_probe() to avoid possible out of bound errors when setting/reading the hash key. | 7.1 |
2024-11-19 | CVE-2024-50268 | Linux | Out-of-bounds Read vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: usb: typec: fix potential out of bounds in ucsi_ccg_update_set_new_cam_cmd() The "*cmd" variable can be controlled by the user via debugfs. | 7.1 |
2024-11-19 | CVE-2024-50278 | Linux | Out-of-bounds Read vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: dm cache: fix potential out-of-bounds access on the first resume Out-of-bounds access occurs if the fast device is expanded unexpectedly before the first-time resume of the cache table. | 7.1 |
2024-11-19 | CVE-2024-50279 | Linux | Out-of-bounds Read vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: dm cache: fix out-of-bounds access to the dirty bitset when resizing dm-cache checks the dirty bits of the cache blocks to be dropped when shrinking the fast device, but an index bug in bitset iteration causes out-of-bounds access. Reproduce steps: 1. | 7.1 |
2024-11-19 | CVE-2024-50301 | Linux | Out-of-bounds Read vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: security/keys: fix slab-out-of-bounds in key_task_permission KASAN reports an out of bounds read: BUG: KASAN: slab-out-of-bounds in __kuid_val include/linux/uidgid.h:36 BUG: KASAN: slab-out-of-bounds in uid_eq include/linux/uidgid.h:63 [inline] BUG: KASAN: slab-out-of-bounds in key_task_permission+0x394/0x410 security/keys/permission.c:54 Read of size 4 at addr ffff88813c3ab618 by task stress-ng/4362 CPU: 2 PID: 4362 Comm: stress-ng Not tainted 5.10.0-14930-gafbffd6c3ede #15 Call Trace: __dump_stack lib/dump_stack.c:82 [inline] dump_stack+0x107/0x167 lib/dump_stack.c:123 print_address_description.constprop.0+0x19/0x170 mm/kasan/report.c:400 __kasan_report.cold+0x6c/0x84 mm/kasan/report.c:560 kasan_report+0x3a/0x50 mm/kasan/report.c:585 __kuid_val include/linux/uidgid.h:36 [inline] uid_eq include/linux/uidgid.h:63 [inline] key_task_permission+0x394/0x410 security/keys/permission.c:54 search_nested_keyrings+0x90e/0xe90 security/keys/keyring.c:793 This issue was also reported by syzbot. It can be reproduced by following these steps(more details [1]): 1. | 7.1 |
2024-11-18 | CVE-2024-41974 | A low privileged remote attacker may modify the BACNet service properties due to incorrect permission assignment for critical resources which may lead to a DoS limited to BACNet communication. | 7.1 | |
2024-11-19 | CVE-2024-50275 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: arm64/sve: Discard stale CPU state when handling SVE traps The logic for handling SVE traps manipulates saved FPSIMD/SVE state incorrectly, and a race with preemption can result in a task having TIF_SVE set and TIF_FOREIGN_FPSTATE clear even though the live CPU state is stale (e.g. | 7.0 |
2024-11-19 | CVE-2024-50286 | Linux | Use After Free vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-use-after-free in ksmbd_smb2_session_create There is a race condition between ksmbd_smb2_session_create and ksmbd_expire_session. | 7.0 |
2024-11-18 | CVE-2024-42385 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an out-of-bound memory write if the PEM certificate contains unexpected characters. | 7.0 |
281 Medium Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-11-20 | CVE-2024-11406 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in django CMS Association django CMS Attributes Fields allows Stored XSS.This issue affects django CMS Attributes Fields: before 4.0. | 6.9 | |
2024-11-22 | CVE-2024-8355 | Visteon | Unspecified vulnerability in Visteon Infotainment Firmware 74.00.311A Visteon Infotainment System DeviceManager iAP Serial Number SQL Injection Vulnerability. | 6.8 |
2024-11-22 | CVE-2024-8358 | Visteon | Unspecified vulnerability in Visteon Infotainment Cmu150Na74.00.324A Visteon Infotainment UPDATES_ExtractFile Command Injection Remote Code Execution Vulnerability. | 6.8 |
2024-11-22 | CVE-2024-8359 | Visteon | Unspecified vulnerability in Visteon Infotainment Cmu150Na74.00.324A Visteon Infotainment REFLASH_DDU_FindFile Command Injection Remote Code Execution Vulnerability. | 6.8 |
2024-11-22 | CVE-2024-8360 | Visteon | Unspecified vulnerability in Visteon Infotainment Cmu150Na74.00.324A Visteon Infotainment REFLASH_DDU_ExtractFile Command Injection Remote Code Execution Vulnerability. | 6.8 |
2024-11-23 | CVE-2024-35160 | IBM | Insufficient Session Expiration vulnerability in IBM BIG SQL and Watson Query With Cloud PAK for Data IBM Watson Query on Cloud Pak for Data 1.8, 2.0, 2.1, 2.2 and IBM Db2 Big SQL on Cloud Pak for Data 7.3, 7.4, 7.5, and 7.6 could allow an authenticated user to obtain sensitive information due to insufficient session expiration. | 6.5 |
2024-11-22 | CVE-2024-7392 | Chargepoint | Unspecified vulnerability in Chargepoint Home Flex Firmware 5.5.3.13 ChargePoint Home Flex Bluetooth Low Energy Denial-of-Service Vulnerability. | 6.5 |
2024-11-22 | CVE-2024-9257 | Logsign | Unspecified vulnerability in Logsign Unified Secops Platform Logsign Unified SecOps Platform delete_gsuite_key_file Input Validation Arbitrary File Deletion Vulnerability. | 6.5 |
2024-11-22 | CVE-2024-9665 | Zimbra | Cross-Site Request Forgery (CSRF) vulnerability in Zimbra Zimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability. | 6.5 |
2024-11-22 | CVE-2023-51648 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. | 6.5 |
2024-11-22 | CVE-2023-52334 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. | 6.5 |
2024-11-20 | CVE-2018-9480 | Out-of-bounds Read vulnerability in Google Android 8.0/8.1/9.0 In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper input validation. | 6.5 | |
2024-11-20 | CVE-2018-9481 | Google Apache | Integer Overflow or Wraparound vulnerability in multiple products In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. | 6.5 |
2024-11-20 | CVE-2018-9482 | Integer Overflow or Wraparound vulnerability in Google Android 8.0/8.1/9.0 In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. | 6.5 | |
2024-11-20 | CVE-2018-9483 | Use After Free vulnerability in Google Android In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. | 6.5 | |
2024-11-20 | CVE-2018-9485 | Out-of-bounds Read vulnerability in Google Android In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. | 6.5 | |
2024-11-20 | CVE-2018-9486 | Out-of-bounds Read vulnerability in Google Android In hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing bounds check. | 6.5 | |
2024-11-20 | CVE-2024-11179 | Inspireui | SQL Injection vulnerability in Inspireui Mstore API The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to SQL Injection via the 'status_type' parameter in all versions up to, and including, 4.15.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 6.5 |
2024-11-19 | CVE-2018-9440 | Unspecified vulnerability in Google Android In parse of M3UParser.cpp there is a possible resource exhaustion due to improper input validation. | 6.5 | |
2024-11-19 | CVE-2024-52392 | W3Speedster | Cross-Site Request Forgery (CSRF) vulnerability in W3Speedster Cross-Site Request Forgery (CSRF) vulnerability in W3speedster W3SPEEDSTER.This issue affects W3SPEEDSTER: from n/a through 7.25. | 6.5 |
2024-11-19 | CVE-2018-9348 | Integer Overflow or Wraparound vulnerability in Google Android In SMF_ParseMetaEvent of eas_smf.c, there is a possible integer overflow. | 6.5 | |
2024-11-18 | CVE-2021-1232 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arbitrary files on the underlying filesystem of an affected system. This vulnerability is due to insufficient access control for sensitive information that is written to an affected system. | 6.5 | |
2024-11-18 | CVE-2021-1379 | Multiple vulnerabilities in the Cisco Discovery Protocol and Link Layer Discovery Protocol (LLDP) implementations for Cisco IP Phone Series 68xx/78xx/88xx could allow an unauthenticated, adjacent attacker to execute code remotely or cause a reload of an affected IP phone. These vulnerabilities are due to missing checks when the IP phone processes a Cisco Discovery Protocol or LLDP packet. | 6.5 | |
2024-11-18 | CVE-2024-41972 | A low privileged remote attacker can overwrite an arbitrary file on the filesystem which may lead to an arbitrary file read with root privileges. | 6.5 | |
2024-11-23 | CVE-2024-11228 | The ????? ?? ???? – ???? ?? ???? plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's pafw_instant_payment shortcode in all versions up to, and including, 5.1.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11229 | The ???? ??? plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's add_plus_friends and add_plus_talk shortcodes in all versions up to, and including, 1.1.18 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11231 | The ???? ????? plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's mnp_purchase shortcode in all versions up to, and including, 3.3.7 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11199 | The Rescue Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's rescue_progressbar shortcode in all versions up to, and including, 2.9 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11227 | The Memberlite Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's memberlite_accordion shortcode in all versions up to, and including, 1.3.9 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11332 | The HIPAA Compliant Forms with Drag’n’Drop HIPAA Form Builder. | 6.4 | |
2024-11-23 | CVE-2024-11387 | The Easy Liveblogs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'elb_liveblog' shortcode in all versions up to, and including, 2.3.5 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11408 | The Slotti Ajanvaraus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slotti' shortcode in all versions up to, and including, 1.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-11426 | The AutoListicle: Automatically Update Numbered List Articles plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'auto-list-number' shortcode in all versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-10116 | The Twitter Follow Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'username' parameter in all versions up to, and including, 0.2 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-23 | CVE-2024-10874 | The Quotes llama plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'quotes-llama' shortcode in all versions up to, and including, 3.0.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-23 | CVE-2024-10886 | The Tribute Testimonials – WordPress Testimonial Grid/Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tribute_testimonials_slider' shortcode in all versions up to, and including, 1.0.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-22 | CVE-2024-11381 | The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ch_registro' shortcode in all versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-10164 | The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpdmpp_pay_link shortcode in all versions up to, and including, 5.9.3 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-10172 | The WPBakery Visual Composer WHMCS Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's void_wbwhmcse_laouts_search shortcode in all versions up to, and including, 1.0.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-10177 | The Beds24 Online Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's beds24-link shortcode in all versions up to, and including, 2.0.26 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-10785 | The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Countdown' widget in all versions up to, and including, 3.3.3 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-21 | CVE-2024-11412 | The Shine PDF Embeder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'shinepdf' shortcode in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11414 | The RecipePress Reloaded plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Recipe Ingredients in all versions up to, and including, 2.12.0 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-21 | CVE-2024-11424 | The Slick Sitemap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slick-sitemap' shortcode in all versions up to, and including, 2.0.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11428 | The Lazy load videos and sticky control plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'lazy-load-videos-and-sticky-control' shortcode in all versions up to, and including, 3.0.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11432 | The SuevaFree Essential Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'counter' shortcode in all versions up to, and including, 1.1.3 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11438 | The StreamWeasels Online Status Bar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sw-status-bar' shortcode in all versions up to, and including, 2.1.9 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11440 | The Grey Owl Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'gol_button' shortcode in all versions up to, and including, 1.6.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-11455 | The Include Mastodon Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'include-mastodon-feed' shortcode in all versions up to, and including, 1.9.5 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-21 | CVE-2024-9111 | The Product Designer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.35 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-19 | CVE-2018-9371 | Out-of-bounds Write vulnerability in Google Android In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface that allows arbitrary peripheral memory mapping with insufficient blacklisting/whitelisting. | 6.4 | |
2024-11-19 | CVE-2024-11198 | The GD Rating System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘extra_class’ parameter in all versions up to, and including, 3.6.1 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-19 | CVE-2024-11224 | The Parallax Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘position’ parameter in all versions up to, and including, 1.9 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-11-19 | CVE-2024-10268 | The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's sonaar_audioplayer shortcode in all versions up to, and including, 5.8 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-11-18 | CVE-2024-10390 | The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability check on the 'updatePreferences' function in all versions up to, and including, 1.1.0. | 6.4 | |
2024-11-22 | CVE-2023-51641 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. | 6.3 |
2024-11-22 | CVE-2023-51642 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. | 6.3 |
2024-11-22 | CVE-2024-30372 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra getLinkText Server-Side Template Injection Remote Code Execution Vulnerability. | 6.3 |
2024-11-18 | CVE-2020-3539 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. The vulnerability is due to a failure to limit access to resources that are intended for users with Administrator privileges. | 6.3 | |
2024-11-23 | CVE-2024-10519 | The Wishlist for WooCommerce: Multi Wishlists Per Customer PRO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wtab' parameter in versions 3.0.8 to 3.1.2 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-23 | CVE-2024-11330 | The Custom CSS, JS & PHP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.3.0. | 6.1 | |
2024-11-23 | CVE-2024-11446 | The Chessgame Shizzle plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'cs_nonce' parameter in all versions up to, and including, 1.3.0 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-23 | CVE-2024-9635 | The Checkout with Cash App on WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '_wp_http_referer' parameter in several files in all versions up to, and including, 6.0.2 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-23 | CVE-2024-11188 | The Formidable Forms – Contact Form Plugin, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress is vulnerable to POST-Based Reflected Cross-Site Scripting via the Custom HTML Form parameters in all versions up to, and including, 6.16.1.2 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-23 | CVE-2024-10880 | The JobBoardWP – Job Board Listings and Submissions plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.3.0. | 6.1 | |
2024-11-23 | CVE-2024-11361 | The PDF Invoices & Packing Slips Generator for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.2.1. | 6.1 | |
2024-11-23 | CVE-2024-10869 | The WordPress Brute Force Protection – Stop Brute Force Attacks plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.2.6. | 6.1 | |
2024-11-23 | CVE-2024-11362 | The Payments Plugin and Checkout Plugin for WooCommerce: Stripe, PayPal, Square, Authorize.net plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.112.0. | 6.1 | |
2024-11-23 | CVE-2024-11463 | The DeBounce Email Validator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'from', 'to', and 'key' parameters in all versions up to, and including, 5.6.5 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-22 | CVE-2024-11225 | The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 5.9.3. | 6.1 | |
2024-11-22 | CVE-2024-8735 | The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.1.8. | 6.1 | |
2024-11-21 | CVE-2024-11587 | Idccms | Cross-site Scripting vulnerability in Idccms 1.60 A vulnerability was found in idcCMS 1.60. | 6.1 |
2024-11-21 | CVE-2024-10522 | The Co-marquage service-public.fr plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 0.5.76. | 6.1 | |
2024-11-21 | CVE-2024-10623 | The ForumEngine theme for WordPress is vulnerable to Reflected Cross-Site Scripting via a URL in all versions up to, and including, 1.8 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-21 | CVE-2024-10675 | The affiliate-toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via a URL in all versions up to, and including, 3.6.7 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-21 | CVE-2024-10682 | The Announcement & Notification Banner – Bulletin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg and remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.11.7. | 6.1 | |
2024-11-21 | CVE-2024-10726 | The Friendly Functions for Welcart plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.4. | 6.1 | |
2024-11-21 | CVE-2024-10792 | The Easiest Funnel Builder For WordPress & WooCommerce by WPFunnels plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'post_id' parameter in all versions up to, and including, 3.5.5 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-21 | CVE-2024-10890 | The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.1.7. | 6.1 | |
2024-11-21 | CVE-2024-11360 | Benhuson | Cross-site Scripting vulnerability in Benhuson Page Parts The Page Parts plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.3. | 6.1 |
2024-11-21 | CVE-2024-11365 | Hedge3 | Cross-site Scripting vulnerability in Hedge3 Crypto and Defi Widgets The Crypto and DeFi Widgets – Web3 Cryptocurrency Shortcodes plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.1.6. | 6.1 |
2024-11-21 | CVE-2024-11370 | Mediaticus | Cross-site Scripting vulnerability in Mediaticus Subaccounts for Woocommerce The Subaccounts for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.6.0. | 6.1 |
2024-11-21 | CVE-2024-11371 | Slimndap | Cross-site Scripting vulnerability in Slimndap Theater for Wordpress The Theater for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 0.18.6.2. | 6.1 |
2024-11-21 | CVE-2024-11416 | The WIP Incoming Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.1. | 6.1 | |
2024-11-21 | CVE-2024-11435 | The salavat counter Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 0.9.1 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-21 | CVE-2024-11447 | The Community by PeepSo – Download from PeepSo.com plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘filter’ parameter in all versions up to, and including, 6.4.6.2 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-11-21 | CVE-2024-11456 | The Run Contests, Raffles, and Giveaways with ContestsWP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.0.3. | 6.1 | |
2024-11-21 | CVE-2024-9371 | The Branda – White Label & Branding, Custom Login Page Customizer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.4.19. | 6.1 | |
2024-11-20 | CVE-2024-11492 | 115Cms | Cross-site Scripting vulnerability in 115Cms 4.2 A vulnerability classified as problematic has been found in 115cms up to 20240807. | 6.1 |
2024-11-20 | CVE-2024-11493 | 115Cms | Cross-site Scripting vulnerability in 115Cms 4.2 A vulnerability classified as problematic was found in 115cms up to 20240807. | 6.1 |
2024-11-20 | CVE-2024-11488 | 115Cms | Cross-site Scripting vulnerability in 115Cms 4.2 A vulnerability was found in 115cms up to 20240807 and classified as problematic. | 6.1 |
2024-11-20 | CVE-2024-11489 | 115Cms | Cross-site Scripting vulnerability in 115Cms 4.2 A vulnerability was found in 115cms up to 20240807. | 6.1 |
2024-11-20 | CVE-2024-11490 | 115Cms | Cross-site Scripting vulnerability in 115Cms 4.2 A vulnerability was found in 115cms up to 20240807. | 6.1 |
2024-11-20 | CVE-2024-11277 | Ajexperience | Cross-site Scripting vulnerability in Ajexperience 404 Solution The 404 Solution plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in all versions up to, and including, 2.35.19 due to insufficient input sanitization and output escaping. | 6.1 |
2024-11-20 | CVE-2024-8726 | Mailmunch | Cross-site Scripting vulnerability in Mailmunch Mailchimp Forms The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.2.3. | 6.1 |
2024-11-20 | CVE-2024-9239 | The Booster for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 7.2.3. | 6.1 | |
2024-11-20 | CVE-2024-9653 | Oracle | Cross-site Scripting vulnerability in Oracle Restaurant Menu - Food Ordering System - Table Reservation The Restaurant Menu – Food Ordering System – Table Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'action' parameter in all versions up to, and including, 2.4.2 due to insufficient input sanitization and output escaping. | 6.1 |
2024-11-20 | CVE-2024-11278 | The GD bbPress Attachments plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 4.7.2. | 6.1 | |
2024-11-20 | CVE-2024-44309 | Apple | Cross-site Scripting vulnerability in Apple products A cookie management issue was addressed with improved state management. | 6.1 |
2024-11-19 | CVE-2024-11400 | Pluginus | Cross-site Scripting vulnerability in Pluginus Woocommerce products Filter The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the really_curr_tax parameter in all versions up to, and including, 1.3.6.3 due to insufficient input sanitization and output escaping. | 6.1 |
2024-11-19 | CVE-2024-52595 | Fedoralovespython | Cross-site Scripting vulnerability in Fedoralovespython Lxml Html Clean lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. | 6.1 |
2024-11-19 | CVE-2024-9777 | WP Royal Themes | Cross-site Scripting vulnerability in Wp-Royal-Themes Ashe The Ashe theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.243. | 6.1 |
2024-11-18 | CVE-2020-3431 | A vulnerability in the web-based management interface of Cisco Small Business RV042 Dual WAN VPN Routers and Cisco Small Business RV042G Dual Gigabit WAN VPN Routers could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected software. | 6.1 | |
2024-11-18 | CVE-2021-1444 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. This vulnerability is due to insufficient validation of user-supplied input by the web services interface of an affected device. | 6.1 | |
2024-11-18 | CVE-2024-52424 | Sureshkumar | Cross-Site Request Forgery (CSRF) vulnerability in Sureshkumar Wp-Login Customizer 1.0 Cross-Site Request Forgery (CSRF) vulnerability in Suresh Kumar wp-login customizer allows Stored XSS.This issue affects wp-login customizer: from n/a through 1.0. | 6.1 |
2024-11-22 | CVE-2024-7391 | Chargepoint | Unspecified vulnerability in Chargepoint Home Flex Firmware 5.5.3.13 ChargePoint Home Flex Bluetooth Low Energy Information Disclosure Vulnerability. | 5.7 |
2024-11-18 | CVE-2024-41970 | A low privileged remote attacker may gain access to forbidden diagnostic data due to incorrect permission assignment for critical resources. | 5.7 | |
2024-11-24 | CVE-2024-53901 | Tonyc | Out-of-bounds Write vulnerability in Tonyc Imager The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image. | 5.5 |
2024-11-22 | CVE-2024-7228 | Avast | Link Following vulnerability in Avast Free Antivirus 23.11.6090 Avast Free Antivirus Link Following Denial-of-Service Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-7235 | AVG | Link Following vulnerability in AVG Antivirus 23.11.8635.809 AVG AntiVirus Free Link Following Denial-of-Service Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-7236 | AVG | Link Following vulnerability in AVG Antivirus 23.12.8700.812 AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-7511 | Trimble | Out-of-bounds Read vulnerability in Trimble Sketchup 23.1.340 Trimble SketchUp Pro SKP File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8816 | PDF Xchange | Use After Free vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8819 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8820 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8821 | PDF Xchange | Use After Free vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8822 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8823 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8824 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8828 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8829 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8832 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8834 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8835 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8836 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8839 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8841 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8843 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8844 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8845 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8846 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8848 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-8849 | PDF Xchange | Out-of-bounds Read vulnerability in Pdf-Xchange Pdf-Tools and Pdf-Xchange Editor PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. | 5.5 |
2024-11-22 | CVE-2024-52998 | Adobe | Out-of-bounds Read vulnerability in Adobe Substance 3D Stager 2.0.1/2.1.3/3.0.2 Substance3D - Stager versions 3.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. | 5.5 |
2024-11-22 | CVE-2024-10034 | The Gallery Blocks with Lightbox. | 5.5 | |
2024-11-21 | CVE-2024-53089 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Mark hrtimer to expire in hard interrupt context Like commit 2c0d278f3293f ("KVM: LAPIC: Mark hrtimer to expire in hard interrupt context") and commit 9090825fa9974 ("KVM: arm/arm64: Let the timer expire in hardirq context on RT"), On PREEMPT_RT enabled kernels unmarked hrtimers are moved into soft interrupt expiry mode by default. Then the timers are canceled from an preempt-notifier which is invoked with disabled preemption which is not allowed on PREEMPT_RT. The timer callback is short so in could be invoked in hard-IRQ context. So let the timer expire on hard-IRQ context even on -RT. This fix a "scheduling while atomic" bug for PREEMPT_RT enabled kernels: BUG: scheduling while atomic: qemu-system-loo/1011/0x00000002 Modules linked in: amdgpu rfkill nft_fib_inet nft_fib_ipv4 nft_fib_ipv6 nft_fib nft_reject_inet nf_reject_ipv4 nf_reject_ipv6 nft_reject nft_ct nft_chain_nat ns CPU: 1 UID: 0 PID: 1011 Comm: qemu-system-loo Tainted: G W 6.12.0-rc2+ #1774 Tainted: [W]=WARN Hardware name: Loongson Loongson-3A5000-7A1000-1w-CRB/Loongson-LS3A5000-7A1000-1w-CRB, BIOS vUDK2018-LoongArch-V2.0.0-prebeta9 10/21/2022 Stack : ffffffffffffffff 0000000000000000 9000000004e3ea38 9000000116744000 90000001167475a0 0000000000000000 90000001167475a8 9000000005644830 90000000058dc000 90000000058dbff8 9000000116747420 0000000000000001 0000000000000001 6a613fc938313980 000000000790c000 90000001001c1140 00000000000003fe 0000000000000001 000000000000000d 0000000000000003 0000000000000030 00000000000003f3 000000000790c000 9000000116747830 90000000057ef000 0000000000000000 9000000005644830 0000000000000004 0000000000000000 90000000057f4b58 0000000000000001 9000000116747868 900000000451b600 9000000005644830 9000000003a13998 0000000010000020 00000000000000b0 0000000000000004 0000000000000000 0000000000071c1d ... Call Trace: [<9000000003a13998>] show_stack+0x38/0x180 [<9000000004e3ea34>] dump_stack_lvl+0x84/0xc0 [<9000000003a71708>] __schedule_bug+0x48/0x60 [<9000000004e45734>] __schedule+0x1114/0x1660 [<9000000004e46040>] schedule_rtlock+0x20/0x60 [<9000000004e4e330>] rtlock_slowlock_locked+0x3f0/0x10a0 [<9000000004e4f038>] rt_spin_lock+0x58/0x80 [<9000000003b02d68>] hrtimer_cancel_wait_running+0x68/0xc0 [<9000000003b02e30>] hrtimer_cancel+0x70/0x80 [<ffff80000235eb70>] kvm_restore_timer+0x50/0x1a0 [kvm] [<ffff8000023616c8>] kvm_arch_vcpu_load+0x68/0x2a0 [kvm] [<ffff80000234c2d4>] kvm_sched_in+0x34/0x60 [kvm] [<9000000003a749a0>] finish_task_switch.isra.0+0x140/0x2e0 [<9000000004e44a70>] __schedule+0x450/0x1660 [<9000000004e45cb0>] schedule+0x30/0x180 [<ffff800002354c70>] kvm_vcpu_block+0x70/0x120 [kvm] [<ffff800002354d80>] kvm_vcpu_halt+0x60/0x3e0 [kvm] [<ffff80000235b194>] kvm_handle_gspr+0x3f4/0x4e0 [kvm] [<ffff80000235f548>] kvm_handle_exit+0x1c8/0x260 [kvm] | 5.5 |
2024-11-21 | CVE-2024-53090 | Linux | Uncontrolled Recursion vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: afs: Fix lock recursion afs_wake_up_async_call() can incur lock recursion. | 5.5 |
2024-11-21 | CVE-2024-53091 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: bpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ctx_tx/rx As the introduction of the support for vsock and unix sockets in sockmap, tls_sw_has_ctx_tx/rx cannot presume the socket passed in must be IS_ICSK. vsock and af_unix sockets have vsock_sock and unix_sock instead of inet_connection_sock. | 5.5 |
2024-11-21 | CVE-2024-53092 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: virtio_pci: Fix admin vq cleanup by using correct info pointer vp_modern_avq_cleanup() and vp_del_vqs() clean up admin vq resources by virtio_pci_vq_info pointer. | 5.5 |
2024-11-21 | CVE-2024-53093 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: defer partition scanning We need to suppress the partition scan from occuring within the controller's scan_work context. | 5.5 |
2024-11-21 | CVE-2024-53094 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Add sendpage_ok() check to disable MSG_SPLICE_PAGES While running ISER over SIW, the initiator machine encounters a warning from skb_splice_from_iter() indicating that a slab page is being used in send_page. | 5.5 |
2024-11-21 | CVE-2024-49529 | Adobe | Out-of-bounds Read vulnerability in Adobe Indesign InDesign Desktop versions 19.0, 20.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. | 5.5 |
2024-11-20 | CVE-2018-9487 | Unspecified vulnerability in Google Android 8.0/8.1/9.0 In setVpnForcedLocked of Vpn.java, there is a possible blocking of internet traffic through vpn due to a bad uid check. | 5.5 | |
2024-11-20 | CVE-2024-11404 | Unrestricted Upload of File with Dangerous Type, Improper Input Validation, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in django CMS Association django Filer allows Input Data Manipulation, Stored XSS.This issue affects django Filer: from 3 before 3.3. | 5.5 | |
2024-11-19 | CVE-2018-9412 | Unspecified vulnerability in Google Android In removeUnsynchronization of ID3.cpp there is a possible resource exhaustion due to improper input validation. | 5.5 | |
2024-11-19 | CVE-2018-9420 | Use of Uninitialized Resource vulnerability in Google Android In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure due to uninitialized data. | 5.5 | |
2024-11-19 | CVE-2018-9421 | Use of Uninitialized Resource vulnerability in Google Android In writeInplace of Parcel.cpp, there is a possible information leak across processes, using Binder, due to uninitialized data. | 5.5 | |
2024-11-19 | CVE-2018-9410 | Out-of-bounds Read vulnerability in Google Android 8.0/8.1 In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. | 5.5 | |
2024-11-19 | CVE-2018-9340 | Out-of-bounds Read vulnerability in Google Android In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure. | 5.5 | |
2024-11-19 | CVE-2018-9345 | Use of Uninitialized Resource vulnerability in Google Android In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. | 5.5 | |
2024-11-19 | CVE-2018-9346 | Use of Uninitialized Resource vulnerability in Google Android In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. | 5.5 | |
2024-11-19 | CVE-2024-50303 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: resource,kexec: walk_system_ram_res_rev must retain resource flags walk_system_ram_res_rev() erroneously discards resource flags when passing the information to the callback. This causes systems with IORESOURCE_SYSRAM_DRIVER_MANAGED memory to have these resources selected during kexec to store kexec buffers if that memory happens to be at placed above normal system ram. This leads to undefined behavior after reboot. | 5.5 |
2024-11-19 | CVE-2024-50304 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_tunnel: Fix suspicious RCU usage warning in ip_tunnel_find() The per-netns IP tunnel hash table is protected by the RTNL mutex and ip_tunnel_find() is only called from the control path where the mutex is taken. Add a lockdep expression to hlist_for_each_entry_rcu() in ip_tunnel_find() in order to validate that the mutex is held and to silence the suspicious RCU usage warning [1]. [1] WARNING: suspicious RCU usage 6.12.0-rc3-custom-gd95d9a31aceb #139 Not tainted ----------------------------- net/ipv4/ip_tunnel.c:221 RCU-list traversed in non-reader section!! other info that might help us debug this: rcu_scheduler_active = 2, debug_locks = 1 1 lock held by ip/362: #0: ffffffff86fc7cb0 (rtnl_mutex){+.+.}-{3:3}, at: rtnetlink_rcv_msg+0x377/0xf60 stack backtrace: CPU: 12 UID: 0 PID: 362 Comm: ip Not tainted 6.12.0-rc3-custom-gd95d9a31aceb #139 Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 Call Trace: <TASK> dump_stack_lvl+0xba/0x110 lockdep_rcu_suspicious.cold+0x4f/0xd6 ip_tunnel_find+0x435/0x4d0 ip_tunnel_newlink+0x517/0x7a0 ipgre_newlink+0x14c/0x170 __rtnl_newlink+0x1173/0x19c0 rtnl_newlink+0x6c/0xa0 rtnetlink_rcv_msg+0x3cc/0xf60 netlink_rcv_skb+0x171/0x450 netlink_unicast+0x539/0x7f0 netlink_sendmsg+0x8c1/0xd80 ____sys_sendmsg+0x8f9/0xc20 ___sys_sendmsg+0x197/0x1e0 __sys_sendmsg+0x122/0x1f0 do_syscall_64+0xbb/0x1d0 entry_SYSCALL_64_after_hwframe+0x77/0x7f | 5.5 |
2024-11-19 | CVE-2024-53042 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_tunnel: Fix suspicious RCU usage warning in ip_tunnel_init_flow() There are code paths from which the function is called without holding the RCU read lock, resulting in a suspicious RCU usage warning [1]. Fix by using l3mdev_master_upper_ifindex_by_index() which will acquire the RCU read lock before calling l3mdev_master_upper_ifindex_by_index_rcu(). [1] WARNING: suspicious RCU usage 6.12.0-rc3-custom-gac8f72681cf2 #141 Not tainted ----------------------------- net/core/dev.c:876 RCU-list traversed in non-reader section!! other info that might help us debug this: rcu_scheduler_active = 2, debug_locks = 1 1 lock held by ip/361: #0: ffffffff86fc7cb0 (rtnl_mutex){+.+.}-{3:3}, at: rtnetlink_rcv_msg+0x377/0xf60 stack backtrace: CPU: 3 UID: 0 PID: 361 Comm: ip Not tainted 6.12.0-rc3-custom-gac8f72681cf2 #141 Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 Call Trace: <TASK> dump_stack_lvl+0xba/0x110 lockdep_rcu_suspicious.cold+0x4f/0xd6 dev_get_by_index_rcu+0x1d3/0x210 l3mdev_master_upper_ifindex_by_index_rcu+0x2b/0xf0 ip_tunnel_bind_dev+0x72f/0xa00 ip_tunnel_newlink+0x368/0x7a0 ipgre_newlink+0x14c/0x170 __rtnl_newlink+0x1173/0x19c0 rtnl_newlink+0x6c/0xa0 rtnetlink_rcv_msg+0x3cc/0xf60 netlink_rcv_skb+0x171/0x450 netlink_unicast+0x539/0x7f0 netlink_sendmsg+0x8c1/0xd80 ____sys_sendmsg+0x8f9/0xc20 ___sys_sendmsg+0x197/0x1e0 __sys_sendmsg+0x122/0x1f0 do_syscall_64+0xbb/0x1d0 entry_SYSCALL_64_after_hwframe+0x77/0x7f | 5.5 |
2024-11-19 | CVE-2024-53043 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: mctp i2c: handle NULL header address daddr can be NULL if there is no neighbour table entry present, in that case the tx packet should be dropped. saddr will usually be set by MCTP core, but check for NULL in case a packet is transmitted by a different protocol. | 5.5 |
2024-11-19 | CVE-2024-53044 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_api: fix xa_insert() error path in tcf_block_get_ext() This command: $ tc qdisc replace dev eth0 ingress_block 1 egress_block 1 clsact Error: block dev insert failed: -EBUSY. fails because user space requests the same block index to be set for both ingress and egress. [ side note, I don't think it even failed prior to commit 913b47d3424e ("net/sched: Introduce tc block netdev tracking infra"), because this is a command from an old set of notes of mine which used to work, but alas, I did not scientifically bisect this ] The problem is not that it fails, but rather, that the second time around, it fails differently (and irrecoverably): $ tc qdisc replace dev eth0 ingress_block 1 egress_block 1 clsact Error: dsa_core: Flow block cb is busy. [ another note: the extack is added by me for illustration purposes. the context of the problem is that clsact_init() obtains the same &q->ingress_block pointer as &q->egress_block, and since we call tcf_block_get_ext() on both of them, "dev" will be added to the block->ports xarray twice, thus failing the operation: once through the ingress block pointer, and once again through the egress block pointer. | 5.5 |
2024-11-19 | CVE-2024-53045 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ASoC: dapm: fix bounds checker error in dapm_widget_list_create The widgets array in the snd_soc_dapm_widget_list has a __counted_by attribute attached to it, which points to the num_widgets variable. | 5.5 |
2024-11-19 | CVE-2024-53046 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: arm64: dts: imx8ulp: correct the flexspi compatible string The flexspi on imx8ulp only has 16 LUTs, and imx8mm flexspi has 32 LUTs, so correct the compatible string here, otherwise will meet below error: [ 1.119072] ------------[ cut here ]------------ [ 1.123926] WARNING: CPU: 0 PID: 1 at drivers/spi/spi-nxp-fspi.c:855 nxp_fspi_exec_op+0xb04/0xb64 [ 1.133239] Modules linked in: [ 1.136448] CPU: 0 UID: 0 PID: 1 Comm: swapper/0 Not tainted 6.11.0-rc6-next-20240902-00001-g131bf9439dd9 #69 [ 1.146821] Hardware name: NXP i.MX8ULP EVK (DT) [ 1.151647] pstate: 40000005 (nZcv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--) [ 1.158931] pc : nxp_fspi_exec_op+0xb04/0xb64 [ 1.163496] lr : nxp_fspi_exec_op+0xa34/0xb64 [ 1.168060] sp : ffff80008002b2a0 [ 1.171526] x29: ffff80008002b2d0 x28: 0000000000000000 x27: 0000000000000000 [ 1.179002] x26: ffff2eb645542580 x25: ffff800080610014 x24: ffff800080610000 [ 1.186480] x23: ffff2eb645548080 x22: 0000000000000006 x21: ffff2eb6455425e0 [ 1.193956] x20: 0000000000000000 x19: ffff80008002b5e0 x18: ffffffffffffffff [ 1.201432] x17: ffff2eb644467508 x16: 0000000000000138 x15: 0000000000000002 [ 1.208907] x14: 0000000000000000 x13: ffff2eb6400d8080 x12: 00000000ffffff00 [ 1.216378] x11: 0000000000000000 x10: ffff2eb6400d8080 x9 : ffff2eb697adca80 [ 1.223850] x8 : ffff2eb697ad3cc0 x7 : 0000000100000000 x6 : 0000000000000001 [ 1.231324] x5 : 0000000000000000 x4 : 0000000000000000 x3 : 00000000000007a6 [ 1.238795] x2 : 0000000000000000 x1 : 00000000000001ce x0 : 00000000ffffff92 [ 1.246267] Call trace: [ 1.248824] nxp_fspi_exec_op+0xb04/0xb64 [ 1.253031] spi_mem_exec_op+0x3a0/0x430 [ 1.257139] spi_nor_read_id+0x80/0xcc [ 1.261065] spi_nor_scan+0x1ec/0xf10 [ 1.264901] spi_nor_probe+0x108/0x2fc [ 1.268828] spi_mem_probe+0x6c/0xbc [ 1.272574] spi_probe+0x84/0xe4 [ 1.275958] really_probe+0xbc/0x29c [ 1.279713] __driver_probe_device+0x78/0x12c [ 1.284277] driver_probe_device+0xd8/0x15c [ 1.288660] __device_attach_driver+0xb8/0x134 [ 1.293316] bus_for_each_drv+0x88/0xe8 [ 1.297337] __device_attach+0xa0/0x190 [ 1.301353] device_initial_probe+0x14/0x20 [ 1.305734] bus_probe_device+0xac/0xb0 [ 1.309752] device_add+0x5d0/0x790 [ 1.313408] __spi_add_device+0x134/0x204 [ 1.317606] of_register_spi_device+0x3b4/0x590 [ 1.322348] spi_register_controller+0x47c/0x754 [ 1.327181] devm_spi_register_controller+0x4c/0xa4 [ 1.332289] nxp_fspi_probe+0x1cc/0x2b0 [ 1.336307] platform_probe+0x68/0xc4 [ 1.340145] really_probe+0xbc/0x29c [ 1.343893] __driver_probe_device+0x78/0x12c [ 1.348457] driver_probe_device+0xd8/0x15c [ 1.352838] __driver_attach+0x90/0x19c [ 1.356857] bus_for_each_dev+0x7c/0xdc [ 1.360877] driver_attach+0x24/0x30 [ 1.364624] bus_add_driver+0xe4/0x208 [ 1.368552] driver_register+0x5c/0x124 [ 1.372573] __platform_driver_register+0x28/0x34 [ 1.377497] nxp_fspi_driver_init+0x1c/0x28 [ 1.381888] do_one_initcall+0x80/0x1c8 [ 1.385908] kernel_init_freeable+0x1c4/0x28c [ 1.390472] kernel_init+0x20/0x1d8 [ 1.394138] ret_from_fork+0x10/0x20 [ 1.397885] ---[ end trace 0000000000000000 ]--- [ 1.407908] ------------[ cut here ]------------ | 5.5 |
2024-11-19 | CVE-2024-53047 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: mptcp: init: protect sched with rcu_read_lock Enabling CONFIG_PROVE_RCU_LIST with its dependence CONFIG_RCU_EXPERT creates this splat when an MPTCP socket is created: ============================= WARNING: suspicious RCU usage 6.12.0-rc2+ #11 Not tainted ----------------------------- net/mptcp/sched.c:44 RCU-list traversed in non-reader section!! other info that might help us debug this: rcu_scheduler_active = 2, debug_locks = 1 no locks held by mptcp_connect/176. stack backtrace: CPU: 0 UID: 0 PID: 176 Comm: mptcp_connect Not tainted 6.12.0-rc2+ #11 Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 Call Trace: <TASK> dump_stack_lvl (lib/dump_stack.c:123) lockdep_rcu_suspicious (kernel/locking/lockdep.c:6822) mptcp_sched_find (net/mptcp/sched.c:44 (discriminator 7)) mptcp_init_sock (net/mptcp/protocol.c:2867 (discriminator 1)) ? sock_init_data_uid (arch/x86/include/asm/atomic.h:28) inet_create.part.0.constprop.0 (net/ipv4/af_inet.c:386) ? __sock_create (include/linux/rcupdate.h:347 (discriminator 1)) __sock_create (net/socket.c:1576) __sys_socket (net/socket.c:1671) ? __pfx___sys_socket (net/socket.c:1712) ? do_user_addr_fault (arch/x86/mm/fault.c:1419 (discriminator 1)) __x64_sys_socket (net/socket.c:1728) do_syscall_64 (arch/x86/entry/common.c:52 (discriminator 1)) entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) That's because when the socket is initialised, rcu_read_lock() is not used despite the explicit comment written above the declaration of mptcp_sched_find() in sched.c. | 5.5 |
2024-11-19 | CVE-2024-53048 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ice: fix crash on probe for DPLL enabled E810 LOM The E810 Lan On Motherboard (LOM) design is vendor specific. | 5.5 |
2024-11-19 | CVE-2024-53049 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: slub/kunit: fix a WARNING due to unwrapped __kmalloc_cache_noprof 'modprobe slub_kunit' will have a warning as shown below. | 5.5 |
2024-11-19 | CVE-2024-53050 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/i915/hdcp: Add encoder check in hdcp2_get_capability Add encoder check in intel_hdcp2_get_capability to avoid null pointer error. | 5.5 |
2024-11-19 | CVE-2024-53051 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/i915/hdcp: Add encoder check in intel_hdcp_get_capability Sometimes during hotplug scenario or suspend/resume scenario encoder is not always initialized when intel_hdcp_get_capability add a check to avoid kernel null pointer dereference. | 5.5 |
2024-11-19 | CVE-2024-53053 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix another deadlock during RTC update If ufshcd_rtc_work calls ufshcd_rpm_put_sync() and the pm's usage_count is 0, we will enter the runtime suspend callback. | 5.5 |
2024-11-19 | CVE-2024-53055 | Linux | Infinite Loop vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix 6 GHz scan construction If more than 255 colocated APs exist for the set of all APs found during 2.4/5 GHz scanning, then the 6 GHz scan construction will loop forever since the loop variable has type u8, which can never reach the number found when that's bigger than 255, and is stored in a u32 variable. Also move it into the loops to have a smaller scope. Using a u32 there is fine, we limit the number of APs in the scan list and each has a limit on the number of RNR entries due to the frame size. | 5.5 |
2024-11-19 | CVE-2024-53056 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: Fix potential NULL dereference in mtk_crtc_destroy() In mtk_crtc_create(), if the call to mbox_request_channel() fails then we set the "mtk_crtc->cmdq_client.chan" pointer to NULL. | 5.5 |
2024-11-19 | CVE-2024-53058 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net: stmmac: TSO: Fix unbalanced DMA map/unmap for non-paged SKB data In case the non-paged data of a SKB carries protocol header and protocol payload to be transmitted on a certain platform that the DMA AXI address width is configured to 40-bit/48-bit, or the size of the non-paged data is bigger than TSO_MAX_BUFF_SIZE on a certain platform that the DMA AXI address width is configured to 32-bit, then this SKB requires at least two DMA transmit descriptors to serve it. For example, three descriptors are allocated to split one DMA buffer mapped from one piece of non-paged data: dma_desc[N + 0], dma_desc[N + 1], dma_desc[N + 2]. Then three elements of tx_q->tx_skbuff_dma[] will be allocated to hold extra information to be reused in stmmac_tx_clean(): tx_q->tx_skbuff_dma[N + 0], tx_q->tx_skbuff_dma[N + 1], tx_q->tx_skbuff_dma[N + 2]. Now we focus on tx_q->tx_skbuff_dma[entry].buf, which is the DMA buffer address returned by DMA mapping call. | 5.5 |
2024-11-19 | CVE-2024-53060 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: prevent NULL pointer dereference if ATIF is not supported acpi_evaluate_object() may return AE_NOT_FOUND (failure), which would result in dereferencing buffer.pointer (obj) while being NULL. Although this case may be unrealistic for the current code, it is still better to protect against possible bugs. Bail out also when status is AE_NOT_FOUND. This fixes 1 FORWARD_NULL issue reported by Coverity Report: CID 1600951: Null pointer dereferences (FORWARD_NULL) (cherry picked from commit 91c9e221fe2553edf2db71627d8453f083de87a1) | 5.5 |
2024-11-19 | CVE-2024-53063 | Linux | Improper Handling of Exceptional Conditions vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: dvbdev: prevent the risk of out of memory access The dvbdev contains a static variable used to store dvb minors. The behavior of it depends if CONFIG_DVB_DYNAMIC_MINORS is set or not. | 5.5 |
2024-11-19 | CVE-2024-53064 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: idpf: fix idpf_vc_core_init error path In an event where the platform running the device control plane is rebooted, reset is detected on the driver. | 5.5 |
2024-11-19 | CVE-2024-53065 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: mm/slab: fix warning caused by duplicate kmem_cache creation in kmem_buckets_create Commit b035f5a6d852 ("mm: slab: reduce the kmalloc() minimum alignment if DMA bouncing possible") reduced ARCH_KMALLOC_MINALIGN to 8 on arm64. However, with KASAN_HW_TAGS enabled, arch_slab_minalign() becomes 16. This causes kmalloc_caches[*][8] to be aliased to kmalloc_caches[*][16], resulting in kmem_buckets_create() attempting to create a kmem_cache for size 16 twice. | 5.5 |
2024-11-19 | CVE-2024-53066 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: nfs: Fix KMSAN warning in decode_getfattr_attrs() Fix the following KMSAN warning: CPU: 1 UID: 0 PID: 7651 Comm: cp Tainted: G B Tainted: [B]=BAD_PAGE Hardware name: QEMU Standard PC (Q35 + ICH9, 2009) ===================================================== ===================================================== BUG: KMSAN: uninit-value in decode_getfattr_attrs+0x2d6d/0x2f90 decode_getfattr_attrs+0x2d6d/0x2f90 decode_getfattr_generic+0x806/0xb00 nfs4_xdr_dec_getattr+0x1de/0x240 rpcauth_unwrap_resp_decode+0xab/0x100 rpcauth_unwrap_resp+0x95/0xc0 call_decode+0x4ff/0xb50 __rpc_execute+0x57b/0x19d0 rpc_execute+0x368/0x5e0 rpc_run_task+0xcfe/0xee0 nfs4_proc_getattr+0x5b5/0x990 __nfs_revalidate_inode+0x477/0xd00 nfs_access_get_cached+0x1021/0x1cc0 nfs_do_access+0x9f/0xae0 nfs_permission+0x1e4/0x8c0 inode_permission+0x356/0x6c0 link_path_walk+0x958/0x1330 path_lookupat+0xce/0x6b0 filename_lookup+0x23e/0x770 vfs_statx+0xe7/0x970 vfs_fstatat+0x1f2/0x2c0 __se_sys_newfstatat+0x67/0x880 __x64_sys_newfstatat+0xbd/0x120 x64_sys_call+0x1826/0x3cf0 do_syscall_64+0xd0/0x1b0 entry_SYSCALL_64_after_hwframe+0x77/0x7f The KMSAN warning is triggered in decode_getfattr_attrs(), when calling decode_attr_mdsthreshold(). | 5.5 |
2024-11-19 | CVE-2024-53067 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Start the RTC update work later The RTC update work involves runtime resuming the UFS controller. | 5.5 |
2024-11-19 | CVE-2024-53069 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: fix a NULL-pointer dereference Some SCM calls can be invoked with __scm being NULL (the driver may not have been and will not be probed as there's no SCM entry in device-tree). Make sure we don't dereference a NULL pointer. | 5.5 |
2024-11-19 | CVE-2024-53070 | Linux | Unspecified vulnerability in Linux Kernel 6.11.5 In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: fix fault at system suspend if device was already runtime suspended If the device was already runtime suspended then during system suspend we cannot access the device registers else it will crash. Also we cannot access any registers after dwc3_core_exit() on some platforms so move the dwc3_enable_susphy() call to the top. | 5.5 |
2024-11-19 | CVE-2024-53071 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Be stricter about IO mapping flags The current panthor_device_mmap_io() implementation has two issues: 1. | 5.5 |
2024-11-19 | CVE-2024-53072 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Detect when STB is not available Loading the amd_pmc module as: amd_pmc enable_stb=1 ...can result in the following messages in the kernel ring buffer: amd_pmc AMDI0009:00: SMU cmd failed. | 5.5 |
2024-11-19 | CVE-2024-53073 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy() calls cleanup_async_copy(), which already decrements nn->pending_async_copies. | 5.5 |
2024-11-19 | CVE-2024-53074 | Linux | Missing Release of Resource after Effective Lifetime vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: don't leak a link on AP removal Release the link mapping resource in AP removal. | 5.5 |
2024-11-19 | CVE-2024-53075 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: riscv: Prevent a bad reference count on CPU nodes When populating cache leaves we previously fetched the CPU device node at the very beginning. | 5.5 |
2024-11-19 | CVE-2024-53076 | Linux | Memory Leak vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: iio: gts-helper: Fix memory leaks for the error path of iio_gts_build_avail_scale_table() If per_time_scales[i] or per_time_gains[i] kcalloc fails in the for loop of iio_gts_build_avail_scale_table(), the err_free_out will fail to call kfree() each time when i is reduced to 0, so all the per_time_scales[0] and per_time_gains[0] will not be freed, which will cause memory leaks. Fix it by checking if i >= 0. | 5.5 |
2024-11-19 | CVE-2024-53077 | Linux | Memory Leak vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: rpcrdma: Always release the rpcrdma_device's xa_array Dai pointed out that the xa_init_flags() in rpcrdma_add_one() needs to have a matching xa_destroy() in rpcrdma_remove_one() to release underlying memory that the xarray might have accrued during operation. | 5.5 |
2024-11-19 | CVE-2024-53078 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/tegra: Fix NULL vs IS_ERR() check in probe() The iommu_paging_domain_alloc() function doesn't return NULL pointers, it returns error pointers. | 5.5 |
2024-11-19 | CVE-2024-53079 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: mm/thp: fix deferred split unqueue naming and locking Recent changes are putting more pressure on THP deferred split queues: under load revealing long-standing races, causing list_del corruptions, "Bad page state"s and worse (I keep BUGs in both of those, so usually don't get to see how badly they end up without). | 5.5 |
2024-11-19 | CVE-2024-53080 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Lock XArray when getting entries for the VM Similar to commit cac075706f29 ("drm/panthor: Fix race when converting group handle to group object") we need to use the XArray's internal locking when retrieving a vm pointer from there. v2: Removed part of the patch that was trying to protect fetching the heap pointer from XArray, as that operation is protected by the @pool->lock. | 5.5 |
2024-11-19 | CVE-2024-53081 | Linux | Integer Underflow (Wrap or Wraparound) vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: ar0521: don't overflow when checking PLL values The PLL checks are comparing 64 bit integers with 32 bit ones, as reported by Coverity. | 5.5 |
2024-11-19 | CVE-2024-53083 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: usb: typec: qcom-pmic: init value of hdr_len/txbuf_len earlier If the read of USB_PDPHY_RX_ACKNOWLEDGE_REG failed, then hdr_len and txbuf_len are uninitialized. | 5.5 |
2024-11-19 | CVE-2024-53084 | Linux | Memory Leak vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Break an object reference loop When remaining resources are being cleaned up on driver close, outstanding VM mappings may result in resources being leaked, due to an object reference loop, as shown below, with each object (or set of objects) referencing the object below it: PVR GEM Object GPU scheduler "finished" fence GPU scheduler “scheduled” fence PVR driver “done” fence PVR Context PVR VM Context PVR VM Mappings PVR GEM Object The reference that the PVR VM Context has on the VM mappings is a soft one, in the sense that the freeing of outstanding VM mappings is done as part of VM context destruction; no reference counts are involved, as is the case for all the other references in the loop. To break the reference loop during cleanup, free the outstanding VM mappings before destroying the PVR Context associated with the VM context. | 5.5 |
2024-11-19 | CVE-2024-53085 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: tpm: Lock TPM chip in tpm_pm_suspend() first Setting TPM_CHIP_FLAG_SUSPENDED in the end of tpm_pm_suspend() can be racy according, as this leaves window for tpm_hwrng_read() to be called while the operation is in progress. | 5.5 |
2024-11-19 | CVE-2024-53086 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/xe: Drop VM dma-resv lock on xe_sync_in_fence_get failure in exec IOCTL Upon failure all locks need to be dropped before returning to the user. (cherry picked from commit 7d1a4258e602ffdce529f56686925034c1b3b095) | 5.5 |
2024-11-19 | CVE-2024-53087 | Linux | Memory Leak vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix possible exec queue leak in exec IOCTL In a couple of places after an exec queue is looked up the exec IOCTL returns on input errors without dropping the exec queue ref. | 5.5 |
2024-11-19 | CVE-2024-11098 | The SVG Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 1.1.24 due to insufficient input sanitization and output escaping. | 5.5 | |
2024-11-19 | CVE-2024-50265 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ocfs2: remove entry once instead of null-ptr-dereference in ocfs2_xa_remove() Syzkaller is able to provoke null-ptr-dereference in ocfs2_xa_remove(): [ 57.319872] (a.out,1161,7):ocfs2_xa_remove:2028 ERROR: status = -12 [ 57.320420] (a.out,1161,7):ocfs2_xa_cleanup_value_truncate:1999 ERROR: Partial truncate while removing xattr overlay.upper. | 5.5 |
2024-11-19 | CVE-2024-50266 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: clk: qcom: videocc-sm8350: use HW_CTRL_TRIGGER for vcodec GDSCs A recent change in the venus driver results in a stuck clock on the Lenovo ThinkPad X13s, for example, when streaming video in firefox: video_cc_mvs0_clk status stuck at 'off' WARNING: CPU: 6 PID: 2885 at drivers/clk/qcom/clk-branch.c:87 clk_branch_wait+0x144/0x15c ... Call trace: clk_branch_wait+0x144/0x15c clk_branch2_enable+0x30/0x40 clk_core_enable+0xd8/0x29c clk_enable+0x2c/0x4c vcodec_clks_enable.isra.0+0x94/0xd8 [venus_core] coreid_power_v4+0x464/0x628 [venus_core] vdec_start_streaming+0xc4/0x510 [venus_dec] vb2_start_streaming+0x6c/0x180 [videobuf2_common] vb2_core_streamon+0x120/0x1dc [videobuf2_common] vb2_streamon+0x1c/0x6c [videobuf2_v4l2] v4l2_m2m_ioctl_streamon+0x30/0x80 [v4l2_mem2mem] v4l_streamon+0x24/0x30 [videodev] using the out-of-tree sm8350/sc8280xp venus support. | 5.5 |
2024-11-19 | CVE-2024-50270 | Linux | Integer Overflow or Wraparound vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: avoid overflow in damon_feed_loop_next_input() damon_feed_loop_next_input() is inefficient and fragile to overflows. | 5.5 |
2024-11-19 | CVE-2024-50271 | Linux | Allocation of Resources Without Limits or Throttling vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: signal: restore the override_rlimit logic Prior to commit d64696905554 ("Reimplement RLIMIT_SIGPENDING on top of ucounts") UCOUNT_RLIMIT_SIGPENDING rlimit was not enforced for a class of signals. | 5.5 |
2024-11-19 | CVE-2024-50272 | Linux | Infinite Loop vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: filemap: Fix bounds checking in filemap_read() If the caller supplies an iocb->ki_pos value that is close to the filesystem upper limit, and an iterator with a count that causes us to overflow that limit, then filemap_read() enters an infinite loop. This behaviour was discovered when testing xfstests generic/525 with the "localio" optimisation for loopback NFS mounts. | 5.5 |
2024-11-19 | CVE-2024-50273 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: reinitialize delayed ref list after deleting it from the list At insert_delayed_ref() if we need to update the action of an existing ref to BTRFS_DROP_DELAYED_REF, we delete the ref from its ref head's ref_add_list using list_del(), which leaves the ref's add_list member not reinitialized, as list_del() sets the next and prev members of the list to LIST_POISON1 and LIST_POISON2, respectively. If later we end up calling drop_delayed_ref() against the ref, which can happen during merging or when destroying delayed refs due to a transaction abort, we can trigger a crash since at drop_delayed_ref() we call list_empty() against the ref's add_list, which returns false since the list was not reinitialized after the list_del() and as a consequence we call list_del() again at drop_delayed_ref(). | 5.5 |
2024-11-19 | CVE-2024-50281 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation When sealing or unsealing a key blob we currently do not wait for the AEAD cipher operation to finish and simply return after submitting the request. | 5.5 |
2024-11-19 | CVE-2024-50284 | Linux | Improper Check for Unusual or Exceptional Conditions vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix the missing xa_store error check xa_store() can fail, it return xa_err(-EINVAL) if the entry cannot be stored in an XArray, or xa_err(-ENOMEM) if memory allocation failed, so check error for xa_store() to fix it. | 5.5 |
2024-11-19 | CVE-2024-50285 | Linux | Allocation of Resources Without Limits or Throttling vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: ksmbd: check outstanding simultaneous SMB operations If Client send simultaneous SMB operations to ksmbd, It exhausts too much memory through the "ksmbd_work_cache”. | 5.5 |
2024-11-19 | CVE-2024-50287 | Linux | Divide By Zero vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: v4l2-tpg: prevent the risk of a division by zero As reported by Coverity, the logic at tpg_precalculate_line() blindly rescales the buffer even when scaled_witdh is equal to zero. | 5.5 |
2024-11-19 | CVE-2024-50288 | Linux | Out-of-bounds Write vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: vivid: fix buffer overwrite when using > 32 buffers The maximum number of buffers that can be requested was increased to 64 for the video capture queue. | 5.5 |
2024-11-19 | CVE-2024-50291 | Linux | Improper Validation of Array Index vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: add missing buffer index check dvb_vb2_expbuf() didn't check if the given buffer index was for a valid buffer. | 5.5 |
2024-11-19 | CVE-2024-50296 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix kernel crash when uninstalling driver When the driver is uninstalled and the VF is disabled concurrently, a kernel crash occurs. | 5.5 |
2024-11-19 | CVE-2024-50298 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net: enetc: allocate vf_state during PF probes In the previous implementation, vf_state is allocated memory only when VF is enabled. | 5.5 |
2024-11-19 | CVE-2024-50299 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: sctp: properly validate chunk size in sctp_sf_ootb() A size validation fix similar to that in Commit 50619dbf8db7 ("sctp: add size validation when walking chunks") is also required in sctp_sf_ootb() to address a crash reported by syzbot: BUG: KMSAN: uninit-value in sctp_sf_ootb+0x7f5/0xce0 net/sctp/sm_statefuns.c:3712 sctp_sf_ootb+0x7f5/0xce0 net/sctp/sm_statefuns.c:3712 sctp_do_sm+0x181/0x93d0 net/sctp/sm_sideeffect.c:1166 sctp_endpoint_bh_rcv+0xc38/0xf90 net/sctp/endpointola.c:407 sctp_inq_push+0x2ef/0x380 net/sctp/inqueue.c:88 sctp_rcv+0x3831/0x3b20 net/sctp/input.c:243 sctp4_rcv+0x42/0x50 net/sctp/protocol.c:1159 ip_protocol_deliver_rcu+0xb51/0x13d0 net/ipv4/ip_input.c:205 ip_local_deliver_finish+0x336/0x500 net/ipv4/ip_input.c:233 | 5.5 |
2024-11-19 | CVE-2024-50300 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: regulator: rtq2208: Fix uninitialized use of regulator_config Fix rtq2208 driver uninitialized use to cause kernel error. | 5.5 |
2024-11-19 | CVE-2024-50302 | Linux | Use of Uninitialized Resource vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since the report buffer is used by all kinds of drivers in various ways, let's zero-initialize it during allocation to make sure that it can't be ever used to leak kernel memory via specially-crafted report. | 5.5 |
2024-11-18 | CVE-2024-11308 | Trcore | Unspecified vulnerability in Trcore DVC The DVC from TRCore encrypts files using a hardcoded key. | 5.5 |
2024-11-21 | CVE-2024-7016 | Smarttek | Unspecified vulnerability in Smarttek Smart Doctor Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Smarttek Informatics Smart Doctor allows Stored XSS.This issue affects Smart Doctor: through 21.11.2024. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | 5.4 |
2024-11-21 | CVE-2024-11385 | Shafayat | Cross-site Scripting vulnerability in Shafayat Pure CSS Circle Progress BAR The Pure CSS Circle Progress bar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'circle_progress' shortcode in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-11-21 | CVE-2024-11388 | Tahmid UL | Cross-site Scripting vulnerability in Tahmid-Ul Dino Game The Dino Game – Embed Google Chrome Dinosaur Game in WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dino-game' shortcode in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-11-21 | CVE-2024-9442 | F4Dev | Cross-site Scripting vulnerability in F4Dev F4 Improvements The F4 Improvements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.9.0 due to insufficient input sanitization and output escaping. | 5.4 |
2024-11-21 | CVE-2024-9851 | Lightspeedwp | Cross-site Scripting vulnerability in Lightspeedwp LSX Tour Operator The LSX Tour Operator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.4.9 due to insufficient input sanitization and output escaping. | 5.4 |
2024-11-20 | CVE-2024-10872 | Motopress | Cross-site Scripting vulnerability in Motopress Getwid The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `template-post-custom-field` block in all versions up to, and including, 2.0.12 due to insufficient input sanitization and output escaping. | 5.4 |
2024-11-20 | CVE-2024-10665 | The Yaad Sarig Payment Gateway For WC plugin for WordPress is vulnerable to unauthorized modification & access of data due to a missing capability check on the yaadpay_view_log_callback() and yaadpay_delete_log_callback() functions in all versions up to, and including, 2.2.4. | 5.4 | |
2024-11-19 | CVE-2024-30424 | Wpzoom | Cross-site Scripting vulnerability in Wpzoom Beaver Builder Addons Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPZOOM Beaver Builder Addons by WPZOOM allows Stored XSS.This issue affects Beaver Builder Addons by WPZOOM: from n/a through 1.3.4. | 5.4 |
2024-11-19 | CVE-2024-52762 | Ganglia | Cross-site Scripting vulnerability in Ganglia Ganglia-Web 3.7.3/3.7.4/3.7.5 A cross-site scripting (XSS) vulnerability in the component /master/header.php of Ganglia-web v3.73 to v3.76 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the "tz" parameter. | 5.4 |
2024-11-19 | CVE-2024-52763 | Ganglia | Cross-site Scripting vulnerability in Ganglia Ganglia-Web 3.7.3/3.7.4/3.7.5 A cross-site scripting (XSS) vulnerability in the component /graph_all_periods.php of Ganglia-web v3.73 to v3.75 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the "g" parameter. | 5.4 |
2024-11-18 | CVE-2020-26067 | A vulnerability in the web-based interface of Cisco Webex Teams could allow an authenticated, remote attacker to conduct cross-site scripting attacks. The vulnerability is due to improper validation of usernames. | 5.4 | |
2024-11-18 | CVE-2024-52419 | Maheshwaghmare | Cross-site Scripting vulnerability in Maheshwaghmare Copy Anything to Clipboard Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Clipboard Team Copy Anything to Clipboard allows Stored XSS.This issue affects Copy Anything to Clipboard: from n/a through 4.0.3. | 5.4 |
2024-11-18 | CVE-2024-52422 | Terryl | Cross-site Scripting vulnerability in Terryl WP Githuber MD 1.16.2 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Terry Lin WP Githuber MD allows Stored XSS.This issue affects WP Githuber MD: from n/a through 1.16.3. | 5.4 |
2024-11-18 | CVE-2024-52423 | Themify | Cross-site Scripting vulnerability in Themify Builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themify Themify Builder allows Stored XSS.This issue affects Themify Builder: from n/a through 7.6.3. | 5.4 |
2024-11-18 | CVE-2024-52425 | Urchenko | Cross-site Scripting vulnerability in Urchenko Drozd Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Urchenko Drozd – Addons for Elementor allows Stored XSS.This issue affects Drozd – Addons for Elementor: from n/a through 1.1.1. | 5.4 |
2024-11-18 | CVE-2024-52426 | Linear | Cross-site Scripting vulnerability in Linear Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Linear Oy Linear linear allows DOM-Based XSS.This issue affects Linear: from n/a through 2.7.11. | 5.4 |
2024-11-18 | CVE-2024-41968 | A low privileged remote attacker may modify the docker settings setup of the device, leading to a limited DoS. | 5.4 | |
2024-11-23 | CVE-2024-41761 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. | 5.3 | |
2024-11-21 | CVE-2024-52615 | A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. | 5.3 | |
2024-11-21 | CVE-2024-52616 | A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. | 5.3 | |
2024-11-21 | CVE-2024-11334 | Nes360 | Missing Authorization vulnerability in Nes360 MY Contador Lesr The My Contador lesr plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the exportar_registros() function in all versions up to, and including, 2.0. | 5.3 |
2024-11-18 | CVE-2024-42387 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space. | 5.3 |
2024-11-18 | CVE-2024-42388 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space. | 5.3 |
2024-11-18 | CVE-2024-42389 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space. | 5.3 |
2024-11-18 | CVE-2024-42390 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space. | 5.3 |
2024-11-18 | CVE-2024-42391 | Cesanta | Unspecified vulnerability in Cesanta Mongoose Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space. | 5.3 |
2024-11-22 | CVE-2024-41781 | IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 through FW1050.20, and FW1060.00 through FW1060.10 functionality can be compromised if an attacker gains service access to the HMC. | 5.1 | |
2024-11-21 | CVE-2024-52755 | Dlink | Out-of-bounds Write vulnerability in Dlink Di-8003 Firmware 16.07.16A1 D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter in the ipsec_road_asp function. | 4.9 |
2024-11-20 | CVE-2024-52754 | Dlink | Out-of-bounds Write vulnerability in Dlink Di-8003 Firmware 16.07.16A1 D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the fn parameter in the tgfile_htm function. | 4.9 |
2024-11-20 | CVE-2024-52757 | Dlink | Out-of-bounds Write vulnerability in Dlink Di-8003 Firmware 16.07.16A1 D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the notify parameter in the arp_sys_asp function. | 4.9 |
2024-11-21 | CVE-2024-9768 | Strategy11 | Cross-site Scripting vulnerability in Strategy11 Formidable Forms The Formidable Forms WordPress plugin before 6.14.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). | 4.8 |
2024-11-19 | CVE-2023-27609 | Hyscaler | Cross-site Scripting vulnerability in Hyscaler WP Roles AT Registration Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NetTantra WP Roles at Registration allows Stored XSS.This issue affects WP Roles at Registration: from n/a through 0.23. | 4.8 |
2024-11-18 | CVE-2024-11319 | Django CMS | Unspecified vulnerability in Django-Cms Django CMS Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in django CMS Association django-cms allows Cross-Site Scripting (XSS).This issue affects django-cms: 3.11.7, 3.11.8, 4.1.2, 4.1.3. | 4.8 |
2024-11-22 | CVE-2023-51640 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. | 4.7 |
2024-11-22 | CVE-2023-51643 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. | 4.7 |
2024-11-22 | CVE-2023-51645 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. | 4.7 |
2024-11-22 | CVE-2023-51646 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. | 4.7 |
2024-11-22 | CVE-2023-51647 | Alltena | Unspecified vulnerability in Alltena Allegra Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. | 4.7 |
2024-11-19 | CVE-2024-53088 | Linux | Race Condition vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: i40e: fix race condition by adding filter's intermediate sync state Fix a race condition in the i40e driver that leads to MAC/VLAN filters becoming corrupted and leaking. | 4.7 |
2024-11-19 | CVE-2024-50277 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: dm: fix a crash if blk_alloc_disk fails If blk_alloc_disk fails, the variable md->disk is set to an error value. cleanup_mapped_device will see that md->disk is non-NULL and it will attempt to access it, causing a crash on this statement "md->disk->private_data = NULL;". | 4.7 |
2024-11-19 | CVE-2024-50297 | Linux | Race Condition vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net: xilinx: axienet: Enqueue Tx packets in dql before dmaengine starts Enqueue packets in dql after dma engine starts causes race condition. Tx transfer starts once dma engine is started and may execute dql dequeue in completion before it gets queued. | 4.7 |
2024-11-18 | CVE-2020-3538 | A vulnerability in a certain REST API endpoint of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, remote attacker to perform a path traversal attack on an affected device. The vulnerability is due to insufficient path restriction enforcement. | 4.6 | |
2024-11-19 | CVE-2024-53052 | Linux | Improper Locking vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: io_uring/rw: fix missing NOWAIT check for O_DIRECT start write When io_uring starts a write, it'll call kiocb_start_write() to bump the super block rwsem, preventing any freezes from happening while that write is in-flight. | 4.4 |
2024-11-23 | CVE-2024-11265 | The Increase Maximum Upload File Size | Increase Execution Time plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.1.3. | 4.3 | |
2024-11-23 | CVE-2024-10606 | The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wpte_onboard_save_function_callback() function in all versions up to, and including, 6.2.1. | 4.3 | |
2024-11-23 | CVE-2024-10216 | The WP User Manager – User Profile Builder & Membership plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'add_sidebar' and 'remove_sidebar' functions in all versions up to, and including, 2.9.11. | 4.3 | |
2024-11-23 | CVE-2024-10537 | The WP User Manager – User Profile Builder & Membership plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the validate_user_meta_key() function in all versions up to, and including, 2.9.11. | 4.3 | |
2024-11-23 | CVE-2024-10868 | The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.1.9 via the Advanced Tabs widget due to insufficient restrictions on which posts can be included. | 4.3 | |
2024-11-23 | CVE-2024-9223 | The WPDash Notes plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'wp_ajax_post_it_list_comment' function in all versions up to, and including, 1.3.5. | 4.3 | |
2024-11-22 | CVE-2024-9758 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF AcroForm Annotation Out-Of-Bounds Read Information Disclosure Vulnerability. | 4.3 |
2024-11-22 | CVE-2024-10666 | The Easy Twitter Feed – Twitter feeds plugin for WP plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.6 via the [etf] shortcode. | 4.3 | |
2024-11-22 | CVE-2024-11355 | The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_setting() function in all versions up to, and including, 3.3. | 4.3 | |
2024-11-21 | CVE-2024-10316 | The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.4 in includes/templates/content-switcher.php. | 4.3 | |
2024-11-21 | CVE-2024-10528 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to unauthorized profile picture updates due to a missing capability check on the wp_ajax_um_resize_image() and ajax_resize_image() functions in all versions up to, and including, 2.8.9. | 4.3 | |
2024-11-21 | CVE-2024-10532 | The Bard Extra plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the bardxtra_import_xml() function in all versions up to, and including, 1.2.7. | 4.3 | |
2024-11-21 | CVE-2024-10671 | The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.1.4 via the [btn_block] shortcode due to insufficient restrictions on which posts can be included. | 4.3 | |
2024-11-21 | CVE-2024-10696 | The UltraAddons – Elementor Addons (Header Footer Builder, Custom Font, Custom CSS,Woo Widget, Menu Builder, Anywhere Elementor Shortcode) plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.1.8 via the show_template due to missing validation on a user controlled key. | 4.3 | |
2024-11-21 | CVE-2024-10782 | The Theme Builder For Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.2 via the 'elementor-template' shortcode due to insufficient restrictions on which posts can be included. | 4.3 | |
2024-11-21 | CVE-2024-10796 | The If-So Dynamic Content Personalization plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.9.2.1 via the 'ifso-show-post' shortcode due to insufficient restrictions on which posts can be included. | 4.3 | |
2024-11-21 | CVE-2024-11354 | Codelizar | Missing Authorization vulnerability in Codelizar Ultimate Youtube Video & Shorts Player With Vimeo The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the del_ytsingvid() function in all versions up to, and including, 3.3. | 4.3 |
2024-11-21 | CVE-2024-9542 | Wowdevs | Information Exposure vulnerability in Wowdevs SKY Addons for Elementor The Sky Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.1 via the render function in modules/content-switcher/widgets/content-switcher.php. | 4.3 |
2024-11-20 | CVE-2024-11486 | Code4Berry | Unspecified vulnerability in Code4Berry Decoration Management System 1.0 A vulnerability, which was classified as problematic, was found in Code4Berry Decoration Management System 1.0. | 4.3 |
2024-11-20 | CVE-2024-10365 | Posimyth | Unspecified vulnerability in Posimyth the Plus Addons for Elementor The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.0.3 via the render function in modules/widgets/tp_carousel_anything.php, modules/widgets/tp_page_scroll.php, and other widgets. | 4.3 |
2024-11-19 | CVE-2024-37070 | IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to obtain sensitive information that could aid in further attacks against the system. | 4.3 | |
2024-11-18 | CVE-2021-1410 | A vulnerability in the distribution list feature of Cisco Webex Meetings could allow an authenticated, remote attacker to modify a distribution list that belongs to another user of their organization. The vulnerability is due to insufficient authorization enforcement for requests to update distribution lists. | 4.3 | |
2024-11-18 | CVE-2021-1425 | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Content Security Management Appliance (SMA) could allow an authenticated, remote attacker to access sensitive information on an affected device. The vulnerability exists because confidential information is being included in HTTP requests that are exchanged between the user and the device. | 4.3 | |
2024-11-18 | CVE-2024-48896 | Moodle | Information Exposure Through an Error Message vulnerability in Moodle A vulnerability was found in Moodle. | 4.3 |
2024-11-18 | CVE-2024-48897 | Moodle | Incorrect Authorization vulnerability in Moodle A vulnerability was found in Moodle. | 4.3 |
2024-11-18 | CVE-2024-48898 | Moodle | Missing Authorization vulnerability in Moodle A vulnerability was found in Moodle. | 4.3 |
2024-11-18 | CVE-2024-48901 | Moodle | Incorrect Authorization vulnerability in Moodle A vulnerability was found in Moodle. | 4.3 |
2024-11-21 | CVE-2024-11197 | The Lock User Account plugin for WordPress is vulnerable to user lock bypass in all versions up to, and including, 1.0.5. | 4.2 |
10 Low Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-11-22 | CVE-2024-9749 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9752 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9753 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9754 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9757 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9759 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF GIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9760 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PNG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9761 | Tungstenautomation | Unspecified vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9762 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |
2024-11-22 | CVE-2024-9763 | Tungstenautomation | Out-of-bounds Read vulnerability in Tungstenautomation Power PDF Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. | 3.3 |