Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 494 495 496 497 498 499 500 501 502 503 [504] 505 506 507 508 509 510 511 512 513 514 ... Result(s) : 299537

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2025-04-10 CVE-2025-2469 cve An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.9.6, and 17.10 before 17.10.4. The runtime profiling data of a specific service was acces...
N/A 2025-04-10 CVE-2025-2408 cve An issue has been discovered in GitLab CE/EE affecting all versions from 13.12 before 17.8.7, 17.9 before 17.9.6, and 17.10 before 17.10.4. Under certain conditions users could ...
N/A 2025-04-10 CVE-2025-23386 cve A Incorrect Default Permissions vulnerability in the openSUSE Tumbleweed package gerbera allows the service user gerbera to escalate to root.,This issue affects gerbera on openS...
N/A 2025-04-10 CVE-2025-23378 cve Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.0, contains an exposure of information through directory listing vulnerability. A low privileged attacker with local acces...
N/A 2025-04-10 CVE-2025-23010 cve An Improper Link Resolution Before File Access ('Link Following') vulnerability in SonicWall NetExtender Windows (32 and 64 bit) client which allows an attacker to man...
N/A 2025-04-10 CVE-2025-23009 cve A local privilege escalation vulnerability in SonicWall NetExtender Windows (32 and 64 bit) client which allows an attacker to trigger an arbitrary file deletion.
N/A 2025-04-10 CVE-2025-23008 cve An improper privilege management vulnerability in the SonicWall NetExtender Windows (32 and 64 bit) client allows a low privileged attacker to modify configurations.
N/A 2025-04-10 CVE-2025-22471 cve Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an integer overflow or wraparound vulnerability. An unauthenticated attacker with remote access could potentia...
N/A 2025-04-10 CVE-2025-22375 cve An authentication bypass vulnerability was found in Videx's CyberAudit-Web. Through the exploitation of a logic flaw, an attacker could create a valid session without any c...
N/A 2025-04-10 CVE-2025-22374 cve A Server-Side Request Forgery (SSRF) vulnerability was discovered in the videx-legacy-ssl web service of Videx’s CyberAudit-Web, affecting versions prior to 1.1.3. This vulnerab...
N/A 2025-04-10 CVE-2025-22279 cve Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Crocoblock JetCompareWishlist allows PHP Local...
N/A 2025-04-10 CVE-2025-22232 cve Spring Cloud Config Server may not use Vault token sent by clients using a X-CONFIG-TOKEN header when making requests to Vault. Your application may be affected by this if the f...
N/A 2025-04-10 CVE-2025-1677 cve A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all up to 17.8.7, 17.9 prior to 17.9.6 and 17.10 prior to 17.10.4 A denial of service could occur u...
N/A 2025-04-10 CVE-2025-1073 cve Panasonic IR Control Hub (IR Blaster) versions 1.17 and earlier may allow an attacker with physical access to load unauthorized firmware onto the device.
N/A 2025-04-10 CVE-2025-0539 cve In affected Microsoft Windows versions of Octopus Deploy, the server can be coerced into sending server-side requests that contain authentication material allowing a suitably po...
N/A 2025-04-10 CVE-2025-0362 cve An issue has been discovered in GitLab CE/EE affecting all versions from 7.7 before 17.8.7, 17.9 before 17.9.6, and 17.10 before 17.10.4. Under certain conditions, an attacker c...
9.8 2025-04-10 CVE-2024-58136 cve Yii 2 before 2.0.52 mishandles the attaching of behavior that is defined by an __class array key, a CVE-2024-4990 regression, as exploited in the wild in February through April ...
N/A 2025-04-10 CVE-2024-38865 cve Improper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0p39, 2.3.0p25, and 2.1.0p51 (EOL) allows arbitrary livest...
4.9 2025-04-10 CVE-2024-13909 cve The Accredible Certificates & Open Badges plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 1.4.9 ...
N/A 2025-04-10 CVE-2024-13896 cve The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-supplied input as a regular expression via the wp_geshi_f...
Page(s) : 1 ... 494 495 496 497 498 499 500 501 502 503 [504] 505 506 507 508 509 510 511 512 513 514 ... Result(s) : 299537