Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 [1023] 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 ... Result(s) : 300707

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2025-02-06 CVE-2022-40490 cve Tiny File Manager v2.4.7 and below was discovered to contain a Cross Site Scripting (XSS) vulnerability. This vulnerability allows attackers to execute arbitrary code via a craf...
N/A 2025-02-06 CVE-2022-40916 cve Tiny File Manager v2.4.7 and below is vulnerable to session fixation.
N/A 2025-02-06 CVE-2024-13614 cve Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Light Agent, Kaspersky Endpoint Security for Windows, Kaspers...
N/A 2025-02-06 CVE-2024-39033 cve In Newgensoft OmniDocs 11.0_SP1_03_006, Insecure Direct Object Reference (IDOR) in the getuserproperty function allows user's configuration and PII to be stolen.
N/A 2025-02-06 CVE-2024-39272 cve A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an a...
N/A 2025-02-06 CVE-2024-43779 cve An information disclosure vulnerability exists in the Vault API functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to reading vaul...
N/A 2025-02-06 CVE-2024-57427 cve PHPJabbers Cinema Booking System v2.0 is vulnerable to reflected cross-site scripting (XSS). Multiple endpoints improperly handle user input, allowing malicious scripts to execu...
N/A 2025-02-06 CVE-2024-57428 cve A stored cross-site scripting (XSS) vulnerability in PHPJabbers Cinema Booking System v2.0 exists due to unsanitized input in file upload fields (event_img, seat_maps) and seat ...
N/A 2025-02-06 CVE-2024-57429 cve A cross-site request forgery (CSRF) vulnerability in the pjActionUpdate function of PHPJabbers Cinema Booking System v2.0 allows remote attackers to escalate privileges by trick...
N/A 2025-02-06 CVE-2024-57430 cve An SQL injection vulnerability in the pjActionGetUser function of PHPJabbers Cinema Booking System v2.0 allows attackers to manipulate database queries via the column parameter....
N/A 2025-02-06 CVE-2024-57599 cve Cross Site Scripting vulnerability in DouPHP v.1.8 Release 20231203 allows attackers to execute arbitrary code via a crafted payload injected into the description parameter in /...
5.3 2025-02-06 CVE-2025-1078 cve A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and classified as critical. This vulnerability affects the function shouldAcceptNewC...
N/A 2025-02-06 CVE-2025-22866 cve Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le archit...
N/A 2025-02-06 CVE-2024-36553 cve Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h is vulnerable to MITM attack.
N/A 2025-02-06 CVE-2024-36554 cve Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me KW-60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b allow a ma...
N/A 2025-02-06 CVE-2024-36555 cve Built-in SMS-configuration command in Forever KidsWatch Call Me KW50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me 2 KW-60 R36CW_YDE_S4_A29_2_V1...
N/A 2025-02-06 CVE-2024-36556 cve Forever KidsWatch Call Me KW50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h, and Forever KidsWatch Call Me 2 KW60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b have a Ha...
N/A 2025-02-06 CVE-2024-36557 cve The device ID is based on IMEI in Forever KidsWatch Call Me KW50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h and Forever KidsWatch Call Me 2 KW60 R36CW_YDE_S4_A29_2_V1.0_20...
N/A 2025-02-06 CVE-2024-36558 cve Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h suffers from Cleartext Transmission of Sensitive Information due to lack of encryption in device...
N/A 2025-02-06 CVE-2024-57610 cve A rate limiting issue in Sylius v2.0.2 allows a remote attacker to perform unrestricted brute-force attacks on user accounts, significantly increasing the risk of account compro...
Page(s) : 1 ... 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 [1023] 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 ... Result(s) : 300707