Page(s) : 1 ... 89 90 91 92 93 94 95 96 97 98 [99] 100 101 102 103 104 105 106 107 108 109 ... | Result(s) : 43228 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
9.8 | 2024-10-29 | CVE-2024-51567 | cve | upgrademysqlstatus in databases/views.py in CyberPanel (aka Cyber Panel) before 5b08cd6 allows remote attackers to bypass authentication and execute arbitrary commands via /data... |
10 | 2024-10-29 | CVE-2024-8923 | cve | ServiceNow has addressed an input validation vulnerability that was identified in the Now Platform. This vulnerability could enable an unauthenticated user to remotely execute c... |
9.8 | 2024-10-29 | CVE-2024-50459 | cve | Missing Authorization vulnerability in HM Plugin WordPress Stripe Donation and Payment Plugin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue ... |
9.8 | 2024-10-29 | CVE-2024-50550 | cve | Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from n/a through 6.5.1. |
9.1 | 2024-10-29 | CVE-2024-5823 | cve | A file overwrite vulnerability exists in gaizhenbiao/chuanhuchatgpt versions |
9.8 | 2024-10-29 | CVE-2024-5982 | cve | A path traversal vulnerability exists in the latest version of gaizhenbiao/chuanhuchatgpt. The vulnerability arises from unsanitized input handling in multiple features, includi... |
9 | 2024-10-29 | CVE-2024-6581 | cve | A vulnerability in the discussion image upload function of the Lollms application, version v9.9, allows for the uploading of SVG files. Due to incomplete filtering in the saniti... |
9.8 | 2024-10-29 | CVE-2024-6868 | cve | mudler/LocalAI version 2.17.1 allows for arbitrary file write due to improper handling of automatic archive extraction. When model configurations specify additional files as arc... |
9.8 | 2024-10-29 | CVE-2024-7042 | cve | A vulnerability in the GraphCypherQAChain class of langchain-ai/langchainjs versions 0.2.5 and all versions with this class allows for prompt injection, leading to SQL injection... |
9.1 | 2024-10-29 | CVE-2024-7475 | cve | An improper access control vulnerability in lunary-ai/lunary version 1.3.2 allows an attacker to update the SAML configuration without authorization. This vulnerability can lead... |
9.1 | 2024-10-29 | CVE-2024-7774 | cve | A path traversal vulnerability exists in the `getFullPath` method of langchain-ai/langchainjs version 0.2.5. This vulnerability allows attackers to save files anywhere in the fi... |
9.8 | 2024-10-29 | CVE-2024-8309 | cve | A vulnerability in the GraphCypherQAChain class of langchain-ai/langchain version 0.2.5 allows for SQL injection through prompt injection. This vulnerability can lead to unautho... |
9.8 | 2024-10-29 | CVE-2024-45656 | cve | IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060... |
9.1 | 2024-10-28 | CVE-2024-44217 | cve | A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in iOS 18 and iPadOS 18. Password autofill may fill in passwords ... |
9.6 | 2024-10-28 | CVE-2024-40867 | cve | A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of W... |
9.8 | 2024-10-28 | CVE-2024-50495 | cve | Unrestricted Upload of File with Dangerous Type vulnerability in WidgiLabs Plugin Propagator allows Upload a Web Shell to a Web Server.This issue affects Plugin Propagator: from... |
10 | 2024-10-28 | CVE-2024-50496 | cve | Unrestricted Upload of File with Dangerous Type vulnerability in Web and Print Design AR For WordPress allows Upload a Web Shell to a Web Server.This issue affects AR For WordPr... |
9.8 | 2024-10-28 | CVE-2024-50450 | cve | Improper Control of Generation of Code ('Code Injection') vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Code Injection.This issue... |
9.8 | 2024-10-28 | CVE-2024-50477 | cve | Authentication Bypass Using an Alternate Path or Channel vulnerability in Stacks Stacks Mobile App Builder stacks-mobile-app-builder allows Authentication Bypass.This issue affe... |
9.8 | 2024-10-28 | CVE-2024-50486 | cve | Authentication Bypass Using an Alternate Path or Channel vulnerability in Acnoo Acnoo Flutter API allows Authentication Bypass.This issue affects Acnoo Flutter API: from n/a thr... |
Page(s) : 1 ... 89 90 91 92 93 94 95 96 97 98 [99] 100 101 102 103 104 105 106 107 108 109 ... | Result(s) : 43228 |