CVE Feed

    Dashboard / CVE

    8.4
    High

    CVE-2024-12957

    Last Modified: 15 Apr 2026

    A file handling command vulnerability in certain versions of Armoury Crate may result in arbitrary file deletion. Refer to the '01/23/2025 Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.

    Published: 23 Jan 2025
    7.5
    High

    CVE-2024-13593

    Last Modified: 8 Apr 2026

    The BMLT Meeting Map plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.6.0 via the 'bmlt_meeting_map' shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-53299

    Last Modified: 27 Jun 2025

    The request handling in the core in Apache Wicket 7.0.0 on any platform allows an attacker to create a DOS via multiple requests to server resources. Users are recommended to upgrade to versions 9.19.0 or 10.3.0, which fixes this issue.

    Published: 23 Jan 2025
    9
    Critical

    CVE-2024-52975

    Last Modified: 15 Apr 2026

    An issue was identified in Fleet Server where Fleet policies that could contain sensitive information were logged on INFO and ERROR log levels. The nature of the sensitive information largely depends on the integrations enabled.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-52972

    Last Modified: 30 Sept 2025

    An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted request to /api/metrics/snapshot. This can be carried out by users with read access to the Observability Metrics or Logs features in Kibana.

    Published: 23 Jan 2025
    7.7
    High

    CVE-2024-43707

    Last Modified: 30 Sept 2025

    An issue was identified in Kibana where a user without access to Fleet can view Elastic Agent policies that could contain sensitive information. The nature of the sensitive information depends on the integrations enabled for the Elastic Agent and their respective versions.

    Published: 23 Jan 2025
    4.3
    Medium

    CVE-2024-43710

    Last Modified: 30 Sept 2025

    A server side request forgery vulnerability was identified in Kibana where the /api/fleet/health_check API could be used to send requests to internal endpoints. Due to the nature of the underlying request, only endpoints available over https that return JSON could be accessed. This can be carried out by users with read access to Fleet.

    Published: 23 Jan 2025
    4.3
    Medium

    CVE-2024-13511

    Last Modified: 5 Feb 2025

    The Variation Swatches for WooCommerce plugin, in all versions starting at 1.0.8 up until 1.3.2, contains a vulnerability due to improper nonce verification in its settings reset functionality. The issue exists in the settings_init() function, which processes a reset action based on specific query parameters in the URL. The related delete_settings() function performs a faulty nonce validation check, making the reset operation insecure and susceptible to unauthorized access.

    Published: 23 Jan 2025
    —
    Unknown

    CVE-2025-24300

    Last Modified: 13 Feb 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 23 Jan 2025
    7.1
    High

    CVE-2025-24030

    Last Modified: 4 Sept 2025

    Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway. A user with access to the Kubernetes cluster can use a path traversal attack to execute Envoy Admin interface commands on proxies managed by any version of Envoy Gateway prior to 1.2.6. The admin interface can be used to terminate the Envoy process and extract the Envoy configuration (possibly containing confidential data). Version 1.2.6 fixes the issue. As a workaround, the `EnvoyProxy` API can be used to apply a bootstrap config patch that restricts access strictly to the prometheus stats endpoint. Find below an example of such a bootstrap patch.

    Published: 23 Jan 2025
    5.3
    Medium

    CVE-2024-42187

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by path traversal vulnerability. The application could allow operators to download files from a local repository which is vulnerable to path traversal attacks.

    Published: 23 Jan 2025
    2.8
    Low

    CVE-2024-42186

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by an insecure protocol support. The application can allow improper handling of SSL certificates validation.

    Published: 23 Jan 2025
    6.4
    Medium

    CVE-2023-50309

    Last Modified: 4 Mar 2025

    IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 23 Jan 2025
    4.6
    Medium

    CVE-2023-32340

    Last Modified: 4 Mar 2025

    IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 23 Jan 2025
    2.5
    Low

    CVE-2024-42185

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

    Published: 23 Jan 2025
    2.5
    Low

    CVE-2024-42184

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme.

    Published: 23 Jan 2025
    2.5
    Low

    CVE-2024-42183

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by an arbitrary file download vulnerability. It could allow a malicious operator to download files from arbitrary URLs without any proper validation or allowlist controls.

    Published: 23 Jan 2025
    2.5
    Low

    CVE-2024-42182

    Last Modified: 15 Apr 2026

    BigFix Patch Download Plug-ins are affected by Server-Side Request Forgery (SSRF) vulnerability. It may allow the application to download files from an internally hosted server on localhost.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2024-57947

    Last Modified: 4 Aug 2026

    In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the size of the first field, not the total field size. After each round in the map search step, the result and the fill map are swapped, so if we have a set where f->bsize of the first element is smaller than m->bsize_max, those one-bits are leaked into future rounds result map. This makes pipapo find an incorrect matching results for sets where first field size is not the largest. Followup patch adds a test case to nft_concat_range.sh selftest script. Thanks to Stefano Brivio for pointing out that we need to zero out the remainder explicitly, only correcting memset() argument isn't enough.

    Published: 23 Jan 2025
    6.4
    Medium

    CVE-2025-24530

    Last Modified: 15 Apr 2026

    An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the check tables feature. A crafted table or database name could be used for XSS.

    Published: 23 Jan 2025
    4.3
    Medium

    CVE-2025-0754

    Last Modified: 15 Apr 2026

    The vulnerability was found in OpenShift Service Mesh 2.6.3 and 2.5.6. This issue occurs due to improper sanitization of HTTP headers by Envoy, particularly the x-forwarded-for header. This lack of sanitization can allow attackers to inject malicious payloads into service mesh logs, leading to log injection and spoofing attacks. Such injections can mislead logging mechanisms, enabling attackers to manipulate log entries or execute reflected cross-site scripting (XSS) attacks.

    Published: 23 Jan 2025
    6.4
    Medium

    CVE-2025-24529

    Last Modified: 15 Apr 2026

    An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the Insert tab.

    Published: 23 Jan 2025
    7.5
    High

    CVE-2024-57722

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a allocation-size-too-big bug via the component plutovg_surface_create.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2024-55194

    Last Modified: 29 Jan 2025

    OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.

    Published: 23 Jan 2025
    10
    Critical

    CVE-2024-55971

    Last Modified: 15 Apr 2026

    SQL Injection vulnerability in the default configuration of the Logitime WebClock application <= 5.43.0 allows an unauthenticated user to run arbitrary code on the backend database server.

    Published: 23 Jan 2025
    6.1
    Medium

    CVE-2024-57326

    Last Modified: 27 Jun 2025

    A Reflected Cross-Site Scripting (XSS) vulnerability exists in the search.php file of the Online Pizza Delivery System 1.0. The vulnerability allows an attacker to execute arbitrary JavaScript code in the browser via unsanitized input passed through the search parameter.

    Published: 23 Jan 2025
    6.1
    Medium

    CVE-2024-57386

    Last Modified: 31 Jan 2025

    Cross Site Scripting vulnerability in Wallos v.2.41.0 allows a remote attacker to execute arbitrary code via the profile picture function.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2023-46400

    Last Modified: 7 Feb 2025

    KWHotel 0.47 is vulnerable to CSV Formula Injection in the add guest function.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2023-46401

    Last Modified: 4 Feb 2025

    KWHotel 0.47 is vulnerable to CSV Formula Injection in the invoice adding function.

    Published: 23 Jan 2025
    7.8
    High

    CVE-2024-50664

    Last Modified: 11 Feb 2025

    gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.

    Published: 23 Jan 2025
    5.5
    Medium

    CVE-2024-50665

    Last Modified: 11 Feb 2025

    gpac 2.4 contains a SEGV at src/isomedia/drm_sample.c:1562:96 in isom_cenc_get_sai_by_saiz_saio in MP4Box.

    Published: 23 Jan 2025
    7.5
    High

    CVE-2024-53379

    Last Modified: 15 Apr 2026

    Heap buffer overflow in the server site handshake implementation in Real Time Logic LLC's SharkSSL version (from 05/05/24) commit 64808a5e12c83b38f85c943dee0112e428dc2a43 allows a remote attacker to trigger a Denial-of-Service via a malformed Client-Hello message.

    Published: 23 Jan 2025
    7.8
    High

    CVE-2024-53588

    Last Modified: 15 Apr 2026

    A DLL hijacking vulnerability in iTop VPN v16.0 allows attackers to execute arbitrary code via placing a crafted DLL file into the path \ProgramData\iTop VPN\Downloader\vpn6.

    Published: 23 Jan 2025
    9.1
    Critical

    CVE-2024-53923

    Last Modified: 6 Jun 2025

    An issue was discovered in Centreon Web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x before 23.04.24. A user with high privileges is able to achieve SQL injection in the form to upload media.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-57724

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a segmentation violation via the component gray_record_cell.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2024-55192

    Last Modified: 5 Feb 2025

    OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2024-55193

    Last Modified: 29 Jan 2025

    OpenImageIO v3.1.0.0dev was discovered to contain a segmentation violation via the component /OpenImageIO/string_view.h.

    Published: 23 Jan 2025
    7.5
    High

    CVE-2024-55195

    Last Modified: 15 Apr 2026

    An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.

    Published: 23 Jan 2025
    9.1
    Critical

    CVE-2024-55573

    Last Modified: 6 Jun 2025

    An issue was discovered in Centreon centreon-web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x before 23.04.24. A user with high privileges is able to inject SQL into the form used to create virtual metrics.

    Published: 23 Jan 2025
    9.8
    Critical

    CVE-2024-57328

    Last Modified: 29 Jan 2025

    A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

    Published: 23 Jan 2025
    5.4
    Medium

    CVE-2024-57329

    Last Modified: 14 Aug 2025

    HortusFox v3.9 contains a stored XSS vulnerability in the "Add Plant" function. The name input field does not sanitize or escape user inputs, allowing attackers to inject and execute arbitrary JavaScript payloads.

    Published: 23 Jan 2025
    6.1
    Medium

    CVE-2024-57556

    Last Modified: 5 Feb 2025

    Cross Site Scripting vulnerability in nbubna store v.2.14.2 and before allows a remote attacker to execute arbitrary code via the store.deep.js component

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-57723

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a segmentation violation via the component composition_source_over.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-57719

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a segmentation violation via the component blend_transformed_tiled_argb.isra.0.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-57720

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_blend.

    Published: 23 Jan 2025
    6.5
    Medium

    CVE-2024-57721

    Last Modified: 15 Apr 2025

    lunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_path_add_path.

    Published: 23 Jan 2025
    6.4
    Medium

    CVE-2024-12477

    Last Modified: 8 Apr 2026

    The Avada Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.11.11 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 22 Jan 2025
    7.5
    High

    CVE-2025-0612

    Last Modified: 18 Apr 2025

    Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 22 Jan 2025
    8.2
    High

    CVE-2025-0611

    Last Modified: 18 Apr 2025

    Object corruption in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 22 Jan 2025
    6
    Medium

    CVE-2024-9310

    Last Modified: 15 Apr 2026

    By utilizing software-defined radios and a custom low-latency processing pipeline, RF signals with spoofed location data can be transmitted to aircraft targets. This can lead to the appearance of fake aircraft on displays and potentially trigger undesired Resolution Advisories (RAs).

    Published: 22 Jan 2025