Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 27 28 29 30 31 32 33 34 35 36 [37] 38 39 40 41 42 43 44 45 46 47 ... Result(s) : 271792

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2024-04-16 CVE-2024-3367 cve Argument injection in websphere_mq agent plugin in Checkmk 2.0.0, 2.1.0,
N/A 2024-04-16 CVE-2024-3067 cve The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 2.4.2 due to insuf...
N/A 2024-04-16 CVE-2024-3243 cve The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized email sending due to a missing capability check on the send_test_email() function in all ...
N/A 2024-04-16 CVE-2024-3672 cve The BA Book Everything plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'all-items' shortcode in all versions up to, and includi...
N/A 2024-04-16 CVE-2024-3869 cve The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'woocommerce_json_search_cou...
N/A 2024-04-16 CVE-2024-22262 cve Applications that use UriComponentsBuilder to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed URL may b...
N/A 2024-04-16 CVE-2024-32557 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Exclusive Addons Exclusive Addons Elementor allows Stored XSS.Thi...
N/A 2024-04-16 CVE-2024-32625 cve In OffloadAMRWriter, a scalar field is not initialized so will contain an arbitrary value left over from earlier computations
N/A 2024-04-16 CVE-2024-32631 cve Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.
N/A 2024-04-16 CVE-2024-32632 cve A value in ATCMD will be misinterpreted by printf, causing incorrect output and possibly out-of-bounds memory access
N/A 2024-04-16 CVE-2024-32633 cve An unsigned value can never be negative, so eMMC full disk test will always evaluate the same way.
N/A 2024-04-16 CVE-2024-32634 cve In huge memory get unmapped area check, code can never be reached because of a logical contradiction.
N/A 2024-04-16 CVE-2024-3871 cve The Delta Electronics DVW-W02W2-E2 devices expose a web administration interface to users. This interface implements multiple features that are affected by command injections an...
N/A 2024-04-16 CVE-2024-3872 cve Mattermost Mobile app versions 2.13.0 and earlier use a regular expression with polynomial complexity to parse certain deeplinks, which allows an unauthenticated remote attacker...
N/A 2024-04-16 CVE-2024-0404 cve A mass assignment vulnerability exists in the `/api/invite/:code` endpoint of the mintplex-labs/anything-llm repository, allowing unauthorized creation of high-privileged accoun...
N/A 2024-04-16 CVE-2024-0549 cve mintplex-labs/anything-llm is vulnerable to a relative path traversal attack, allowing unauthorized attackers with a default role account to delete files and folders within the ...
N/A 2024-04-16 CVE-2024-1135 cve Gunicorn fails to properly validate Transfer-Encoding headers, leading to HTTP Request Smuggling (HRS) vulnerabilities. By crafting requests with conflicting Transfer-Encoding h...
N/A 2024-04-16 CVE-2024-1183 cve An SSRF (Server-Side Request Forgery) vulnerability exists in the gradio-app/gradio repository, allowing attackers to scan and identify open ports within an internal network. By...
N/A 2024-04-16 CVE-2024-1456 cve An S3 bucket takeover vulnerability was identified in the h2oai/h2o-3 repository. The issue involves the S3 bucket 'http://s3.amazonaws.com/h2o-training', which was fo...
N/A 2024-04-16 CVE-2024-1483 cve A path traversal vulnerability exists in mlflow/mlflow version 2.9.2, allowing attackers to access arbitrary files on the server. By crafting a series of HTTP POST requests with...
Page(s) : 1 ... 27 28 29 30 31 32 33 34 35 36 [37] 38 39 40 41 42 43 44 45 46 47 ... Result(s) : 271792