Page(s) : 1 ... 328 329 330 331 332 333 334 335 336 337 [338] 339 340 341 342 343 344 345 346 347 348 ... | Result(s) : 43290 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
9.8 | 2023-07-05 | CVE-2023-36665 | cve | "protobuf.js (aka protobufjs) 6.10.0 through 7.x before 7.2.5 allows Prototype Pollution, a different vulnerability than CVE-2022-25878. A user-controlled protobuf message can b... |
9.1 | 2023-07-05 | CVE-2023-36934 | cve | In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), a SQL injection vulner... |
9.8 | 2023-07-05 | CVE-2020-25969 | cve | gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest(). |
9.8 | 2023-07-05 | CVE-2021-46890 | cve | Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality, integrity... |
9.8 | 2023-07-05 | CVE-2021-46891 | cve | Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality, integrity... |
9.1 | 2023-07-05 | CVE-2023-3455 | cve | Key management vulnerability on system. Successful exploitation of this vulnerability may affect service availability and integrity. |
9.8 | 2023-07-04 | CVE-2023-3504 | cve | A vulnerability was found in SmartWeb Infotech Job Board 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /settings/account of th... |
9.8 | 2023-07-04 | CVE-2023-3460 | cve | The Ultimate Member WordPress plugin before 2.6.7 does not prevent visitors from creating user accounts with arbitrary capabilities, effectively allowing attackers to create adm... |
9.8 | 2023-07-04 | CVE-2023-21631 | cve | Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. |
9.8 | 2023-07-04 | CVE-2023-30990 | cve | IBM i 7.2, 7.3, 7.4, and 7.5 could allow a remote attacker to execute CL commands as QUSER, caused by an exploitation of DDM architecture. IBM X-Force ID: 254036. |
9.1 | 2023-07-03 | CVE-2023-36817 | cve | `tktchurch/website` contains the codebase for The King's Temple Church website. In version 0.1.0, a Stripe API key was found in the public code repository of the church... |
9.8 | 2023-07-03 | CVE-2020-22151 | cve | Permissions vulnerability in Fuel-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted zip file to the assests parameter of the upload function. |
9.8 | 2023-07-03 | CVE-2020-22153 | cve | File Upload vulnerability in FUEL-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted .php file to the upload parameter in the navigation function. |
9.8 | 2023-07-03 | CVE-2020-22597 | cve | An issue in Jerrscript- project Jerryscrip v. 2.3.0 allows a remote attacker to execute arbitrary code via the ecma_builtin_array_prototype_object_slice parameter. |
9.8 | 2023-07-03 | CVE-2023-36258 | cve | An issue in LangChain before 0.0.236 allows an attacker to execute arbitrary code because Python code with os.system, exec, or eval can be used. |
9.8 | 2023-07-03 | CVE-2023-26258 | cve | Arcserve UDP through 9.0.6034 allows authentication bypass. The method getVersionInfo at WebServiceImpl/services/FlashServiceImpl leaks the AuthUUID token. This token can be use... |
9.8 | 2023-07-03 | CVE-2023-35797 | cve | Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Hive Provider. This issue affects Apache Airflow Apache Hive Provider: before 6.1.1. Before... |
9.8 | 2023-07-01 | CVE-2023-26136 | cve | Versions of the package tough-cookie before 4.1.3 are vulnerable to Prototype Pollution due to improper handling of Cookies when using CookieJar in rejectPublicSuffixes=false mo... |
9.8 | 2023-07-01 | CVE-2023-22814 | cve | An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow an attacker to carry out an impersonation attack. This ... |
9.8 | 2023-07-01 | CVE-2023-28323 | cve | A deserialization of untrusted data exists in EPM 2022 Su3 and all prior versions that allows an unauthenticated user to elevate rights. This exploit could potentially be used i... |
Page(s) : 1 ... 328 329 330 331 332 333 334 335 336 337 [338] 339 340 341 342 343 344 345 346 347 348 ... | Result(s) : 43290 |