CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2024-46612

    Last Modified: 28 Apr 2025

    IceCMS v3.4.7 and before was discovered to contain a hardcoded JWT key, allowing an attacker to forge JWT authentication information.

    Published: 24 Sept 2024
    9.8
    Critical

    CVE-2023-26689

    Last Modified: 24 Apr 2025

    An issue discovered in CS-Cart MultiVendor 4.16.1 allows attackers to alter arbitrary user account profiles via crafted post request.

    Published: 24 Sept 2024
    9.8
    Critical

    CVE-2023-26686

    Last Modified: 24 Apr 2025

    File Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via the image upload feature when customizing a shop.

    Published: 24 Sept 2024
    8.8
    High

    CVE-2023-26687

    Last Modified: 24 Apr 2025

    Directory Traversal vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to obtain sensitive information via the product_data parameter in the PDF Add-on.

    Published: 24 Sept 2024
    5.4
    Medium

    CVE-2023-26688

    Last Modified: 24 Apr 2025

    Cross Site Scripting (XSS) vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via the product_data parameter of add/edit product in the administration interface.

    Published: 24 Sept 2024
    8.8
    High

    CVE-2023-26690

    Last Modified: 24 Apr 2025

    File Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via File Manager/Editor component in the vendor or admin menu.

    Published: 24 Sept 2024
    7.2
    High

    CVE-2023-26691

    Last Modified: 24 Apr 2025

    Directory Traversal vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via crafted zip file when installing a new add-on.

    Published: 24 Sept 2024
    9.8
    Critical

    CVE-2024-42797

    Last Modified: 28 Apr 2025

    An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_playlist in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete the valid music playlist entries.

    Published: 24 Sept 2024
    7.6
    High

    CVE-2024-46607

    Last Modified: 28 Apr 2025

    Incorrect access control in IceCMS v3.4.7 and before allows attackers to authenticate by entering any arbitrary values as the username and password via the loginAdmin method in the UserController.java file.

    Published: 24 Sept 2024
    7.5
    High

    CVE-2024-46609

    Last Modified: 28 Apr 2025

    An access control issue in the CheckVip function in UserController.java of IceCMS v3.4.7 and before allows unauthenticated attackers to access and returns all user information, including passwords

    Published: 24 Sept 2024
    7.5
    High

    CVE-2024-46610

    Last Modified: 21 Nov 2024

    An access control issue in IceCMS v3.4.7 and before allows attackers to arbitrarily modify users' information, including username and password, via a crafted POST request sent to the endpoint /User/ChangeUser/s in the ChangeUser function in UserController.java

    Published: 24 Sept 2024
    6.1
    Medium

    CVE-2024-46934

    Last Modified: 25 Mar 2025

    Rocket.Chat 6.12.0, 6.11.2, 6.10.5, 6.9.6, 6.8.6, 6.7.8, and earlier is vulnerable to DOM-based Cross-site Scripting (XSS). Attackers may be able to abuse the UpdateOTRAck method to forge a message that contains an XSS payload.

    Published: 24 Sept 2024
    7.5
    High

    CVE-2024-46935

    Last Modified: 25 Mar 2025

    Rocket.Chat 6.12.0, 6.11.2, 6.10.5, 6.9.6, 6.8.6, 6.7.8, and earlier is vulnerable to denial of service (DoS). Attackers who craft messages with specific characters may crash the workspace due to an issue in the message parser.

    Published: 24 Sept 2024
    5.4
    Medium

    CVE-2024-47048

    Last Modified: 25 Mar 2025

    Rocket.Chat 6.12.0, 6.11.2, 6.10.5, 6.9.6, 6.8.6, 6.7.8, and earlier allows stored XSS in the description and release notes of the marketplace and private apps.

    Published: 24 Sept 2024
    9.6
    Critical

    CVE-2024-7024

    Last Modified: 2 Jan 2025

    Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

    Published: 23 Sept 2024
    8.8
    High

    CVE-2024-7023

    Last Modified: 2 Jan 2025

    Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)

    Published: 23 Sept 2024
    7.8
    High

    CVE-2018-20072

    Last Modified: 25 Mar 2025

    Insufficient data validation in PDF in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform out of bounds memory access via a crafted PDF file. (Chromium security severity: Low)

    Published: 23 Sept 2024
    8.8
    High

    CVE-2021-38023

    Last Modified: 2 Jan 2025

    Use after free in Extensions in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 23 Sept 2024
    4.3
    Medium

    CVE-2023-7282

    Last Modified: 2 Jan 2025

    Inappropriate implementation in Navigation in Google Chrome prior to 113.0.5672.63 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low)

    Published: 23 Sept 2024
    4.3
    Medium

    CVE-2023-7281

    Last Modified: 2 Jan 2025

    Inappropriate implementation in Compositing in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

    Published: 23 Sept 2024
    4.3
    Medium

    CVE-2024-7022

    Last Modified: 2 Jan 2025

    Uninitialized Use in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)

    Published: 23 Sept 2024
    4.3
    Medium

    CVE-2024-7020

    Last Modified: 2 Jan 2025

    Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

    Published: 23 Sept 2024
    4.3
    Medium

    CVE-2024-7019

    Last Modified: 2 Jan 2025

    Inappropriate implementation in UI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

    Published: 23 Sept 2024
    7.8
    High

    CVE-2024-7018

    Last Modified: 2 Jan 2025

    Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)

    Published: 23 Sept 2024
    6.2
    Medium

    CVE-2024-8263

    Last Modified: 30 Sept 2024

    An improper privilege management vulnerability allowed arbitrary workflows to be committed using an improperly scoped PAT through the use of nested tags. This vulnerability affected all versions of GitHub Enterprise Server and was fixed in version 3.10.17, 3.11.15, 3.12.9, 3.13.4, and 3.14.1. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 23 Sept 2024
    5.8
    Medium

    CVE-2024-8770

    Last Modified: 27 Sept 2024

    A Cross-Site Scripting (XSS) vulnerability was identified in the repository transfer feature of GitHub Enterprise Server, which allows attackers to steal sensitive user information via social engineering. This vulnerability affected all versions of GitHub Enterprise Server and was fixed in version 3.10.17, 3.11.15, 3.12.9, 3.13.4, and 3.14.1. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 23 Sept 2024
    8.7
    High

    CVE-2024-43201

    Last Modified: 28 Feb 2025

    The Planet Fitness Workouts iOS and Android mobile apps fail to properly validate TLS certificates, allowing an attacker with appropriate network access to obtain session tokens and sensitive information. Planet Fitness first addressed this vulnerability in version 9.8.12 (released on 2024-07-25) and more recently in version 9.9.13 (released on 2025-02-11).

    Published: 23 Sept 2024
    9.9
    Critical

    CVE-2024-9014

    Last Modified: 22 Sept 2025

    pgAdmin versions 8.11 and earlier are vulnerable to a security flaw in OAuth2 authentication. This vulnerability allows an attacker to potentially obtain the client ID and secret, leading to unauthorized access to user data.

    Published: 23 Sept 2024
    6.1
    Medium

    CVE-2024-47069

    Last Modified: 30 Sept 2024

    Oveleon Cookie Bar is a cookie bar is for the Contao Open Source CMS and allows a visitor to define cookie & privacy settings for the website. Prior to versions 1.16.3 and 2.1.3, the `block/locale` endpoint does not properly sanitize the user-controlled `locale` input before including it in the backend's HTTP response, thereby causing reflected cross-site scripting. Versions 1.16.3 and 2.1.3 contain a patch for the vulnerability.

    Published: 23 Sept 2024
    6.1
    Medium

    CVE-2024-47068

    Last Modified: 29 Oct 2024

    Rollup is a module bundler for JavaScript. Versions prior to 2.79.2, 3.29.5, and 4.22.4 are susceptible to a DOM Clobbering vulnerability when bundling scripts with properties from `import.meta` (e.g., `import.meta.url`) in `cjs`/`umd`/`iife` format. The DOM Clobbering gadget can lead to cross-site scripting (XSS) in web pages where scriptless attacker-controlled HTML elements (e.g., an `img` tag with an unsanitized `name` attribute) are present. Versions 2.79.2, 3.29.5, and 4.22.4 contain a patch for the vulnerability.

    Published: 23 Sept 2024
    9
    Critical

    CVE-2024-47066

    Last Modified: 30 Sept 2024

    Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.19.13, server-side request forgery protection implemented in `src/app/api/proxy/route.ts` does not consider redirect and could be bypassed when attacker provides an external malicious URL which redirects to internal resources like a private network or loopback address. Version 1.19.13 contains an improved fix for the issue.

    Published: 23 Sept 2024
    9.8
    Critical

    CVE-2024-46997

    Last Modified: 7 Oct 2024

    DataEase is an open source data visualization analysis tool. Prior to version 2.10.1, an attacker can achieve remote command execution by adding a carefully constructed h2 data source connection string. The vulnerability has been fixed in v2.10.1.

    Published: 23 Sept 2024
    7.5
    High

    CVE-2024-46985

    Last Modified: 27 Sept 2024

    DataEase is an open source data visualization analysis tool. Prior to version 2.10.1, there is an XML external entity injection vulnerability in the static resource upload interface of DataEase. An attacker can construct a payload to implement intranet detection and file reading. The vulnerability has been fixed in v2.10.1.

    Published: 23 Sept 2024
    6.8
    Medium

    CVE-2024-23922

    Last Modified: 30 Sept 2024

    Sony XAV-AX5500 Insufficient Firmware Update Validation Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Sony XAV-AX5500 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of software updates. The issue results from the lack of proper validation of software update packages. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-22939

    Published: 23 Sept 2024
    6.8
    Medium

    CVE-2024-23972

    Last Modified: 30 Sept 2024

    Sony XAV-AX5500 USB Configuration Descriptor Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Sony XAV-AX5500 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the USB host driver. A crafted USB configuration descriptor can trigger an overflow of a fixed-length buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-23185

    Published: 23 Sept 2024
    8.8
    High

    CVE-2024-23934

    Last Modified: 15 Apr 2026

    Sony XAV-AX5500 WMV/ASF Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sony XAV-AX5500 devices. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of WMV/ASF files. A crafted Extended Content Description Object in a WMV media file can trigger an overflow of a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the device. . Was ZDI-CAN-22994.

    Published: 23 Sept 2024
    6.8
    Medium

    CVE-2024-23933

    Last Modified: 15 Apr 2026

    Sony XAV-AX5500 CarPlay TLV Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Sony XAV-AX5500 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the Apple CarPlay protocol. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-23238

    Published: 23 Sept 2024
    9.1
    Critical

    CVE-2024-0005

    Last Modified: 27 Sept 2024

    A condition exists in FlashArray and FlashBlade Purity whereby a malicious user could execute arbitrary commands remotely through a specifically crafted SNMP configuration.

    Published: 23 Sept 2024
    9.1
    Critical

    CVE-2024-0004

    Last Modified: 27 Sept 2024

    A condition exists in FlashArray Purity whereby an user with array admin role can execute arbitrary commands remotely to escalate privilege on the array.

    Published: 23 Sept 2024
    9.1
    Critical

    CVE-2024-0003

    Last Modified: 27 Sept 2024

    A condition exists in FlashArray Purity whereby a malicious user could use a remote administrative service to create an account on the array allowing privileged access.

    Published: 23 Sept 2024
    10
    Critical

    CVE-2024-0002

    Last Modified: 27 Sept 2024

    A condition exists in FlashArray Purity whereby an attacker can employ a privileged account allowing remote access to the array.

    Published: 23 Sept 2024
    10
    Critical

    CVE-2024-0001

    Last Modified: 27 Sept 2024

    A condition exists in FlashArray Purity whereby a local account intended for initial array configuration remains active potentially allowing a malicious actor to gain elevated privileges.

    Published: 23 Sept 2024
    8.8
    High

    CVE-2024-7835

    Last Modified: 3 Jun 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Exnet Informatics Software Ferry Reservation System allows Reflected XSS. This issue affects Ferry Reservation System: before 240805-002.

    Published: 23 Sept 2024
    9.3
    Critical

    CVE-2024-7735

    Last Modified: 3 Jun 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Exnet Informatics Software Ferry Reservation System allows SQL Injection. This issue affects Ferry Reservation System: before 240805-002.

    Published: 23 Sept 2024
    5.9
    Medium

    CVE-2024-46544

    Last Modified: 10 Jul 2025

    Incorrect Default Permissions vulnerability in Apache Tomcat Connectors allows local users to view and modify shared memory containing mod_jk configuration which may lead to information disclosure and/or denial of service. This issue affects Apache Tomcat Connectors: from 1.2.9-beta through 1.2.49. Only mod_jk on Unix like systems is affected. Neither the ISAPI redirector nor mod_jk on Windows is affected. Users are recommended to upgrade to version 1.2.50, which fixes the issue.

    Published: 23 Sept 2024
    4.7
    Medium

    CVE-2024-8903

    Last Modified: 15 Apr 2026

    Local active protection service settings manipulation due to unnecessary privileges assignment. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows, macOS) before build 38565.

    Published: 23 Sept 2024
    6.4
    Medium

    CVE-2024-45348

    Last Modified: 27 Mar 2025

    Xiaomi Router AX9000 has a post-authorization command injection vulnerability. This vulnerability is caused by the lack of validation of user input, and an attacker can exploit this vulnerability to execute arbitrary code.

    Published: 23 Sept 2024
    9.2
    Critical

    CVE-2024-8606

    Last Modified: 30 Sept 2024

    Bypass of two factor authentication in RestAPI in Checkmk < 2.3.0p16 and < 2.2.0p34 allows authenticated users to bypass two factor authentication

    Published: 23 Sept 2024
    4.8
    Medium

    CVE-2024-8758

    Last Modified: 7 Oct 2024

    The Quiz and Survey Master (QSM) WordPress plugin before 9.1.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 23 Sept 2024
    5.4
    Medium

    CVE-2024-7846

    Last Modified: 16 May 2025

    YITH WooCommerce Ajax Search is vulnerable to a XSS vulnerability due to insufficient sanitization of user supplied block attributes. This makes it possible for Contributors+ attackers to inject arbitrary scripts.

    Published: 23 Sept 2024