CVE Feed

    Dashboard / CVE

    6.4
    Medium

    CVE-2024-4360

    Last Modified: 8 Apr 2026

    The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 5.7.6 due to insufficient input sanitization and output escaping on user supplied attributes like 'title_tag'. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 9 Aug 2024
    5.1
    Medium

    CVE-2024-4350

    Last Modified: 25 Sept 2025

    Concrete CMS versions 9.0.0 to 9.3.2 and below 8.5.18 are vulnerable to Stored XSS in RSS Displayer when user input is stored and later embedded into responses. A rogue administrator could inject malicious code into fields due to insufficient input validation. The Concrete CMS security team gave this vulnerability a CVSS v4 score of 5.1 with vector https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Thanks, m3dium for reporting. (CNA updated this risk rank on 17 Jan 2025 by lowering the AC based on CVSS 4.0 documentation that access privileges should not be considered for AC)

    Published: 9 Aug 2024
    4.6
    Medium

    CVE-2024-7512

    Last Modified: 17 Jan 2025

    Concrete CMS versions 9.0.0 through 9.3.2 are affected by a stored XSS vulnerability in Board instances. A rogue administrator could inject malicious code. The Concrete CMS security team gave this vulnerability a CVSS 4.0 Score of 4.6 with vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N. Versions below 9 are not affected. Thanks, m3dium for reporting. (CNA updated AC score to L based on CVSS 4.0 documentation)

    Published: 9 Aug 2024
    9.1
    Critical

    CVE-2024-3279

    Last Modified: 15 Oct 2025

    An improper access control vulnerability exists in the mintplex-labs/anything-llm application, specifically within the import endpoint. This vulnerability allows an anonymous attacker, without an account in the application, to import their own database file, leading to the deletion or spoofing of the existing `anythingllm.db` file. By exploiting this vulnerability, attackers can serve malicious data to users or collect information about them. The vulnerability stems from the application's failure to properly restrict access to the data-import functionality, allowing unauthorized database manipulation.

    Published: 9 Aug 2024
    7.5
    High

    CVE-2024-39338

    Last Modified: 23 Aug 2024

    axios 1.7.2 allows SSRF via unexpected behavior where requests for path relative URLs get processed as protocol relative URLs.

    Published: 9 Aug 2024
    5.4
    Medium

    CVE-2024-40478

    Last Modified: 13 Mar 2025

    A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1.0, which allows remote attackers to execute arbitrary code via "rname" and "email" parameter fields

    Published: 9 Aug 2024
    7.5
    High

    CVE-2024-37826

    Last Modified: 6 Jun 2025

    A NULL pointer dereference in vercot Serva v4.6.0 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-38989

    Last Modified: 15 Apr 2026

    izatop bunt v0.29.19 was discovered to contain a prototype pollution via the component /esm/qs.js. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-40472

    Last Modified: 15 Aug 2024

    Sourcecodester Daily Calories Monitoring Tool v1.0 is vulnerable to SQL Injection via "delete-calorie.php."

    Published: 9 Aug 2024
    8.1
    High

    CVE-2024-40479

    Last Modified: 19 Nov 2025

    A SQL injection vulnerability in "/admin/quizquestion.php" in Kashipara Online Exam System v1.0 allows remote attackers to execute arbitrary SQL commands via the "eid" parameter.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-40480

    Last Modified: 14 Mar 2025

    A Broken Access Control vulnerability was found in /admin/update.php and /admin/dashboard.php in Kashipara Online Exam System v1.0, which allows remote unauthenticated attackers to view administrator dashboard and delete valid user accounts via the direct URL access.

    Published: 9 Aug 2024
    6.5
    Medium

    CVE-2024-41332

    Last Modified: 21 Aug 2024

    Incorrect access control in the delete_category function of Sourcecodester Computer Laboratory Management System v1.0 allows authenticated attackers with low-level privileges to arbitrarily delete categories.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-41577

    Last Modified: 15 Apr 2026

    An arbitrary file upload vulnerability in the Ueditor component of productinfoquick v1.0 allows attackers to execute arbitrary code via uploading a crafted PNG file.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-41570

    Last Modified: 29 Aug 2024

    An Unauthenticated Server-Side Request Forgery (SSRF) in demon callback handling in Havoc 2 0.7 allows attackers to send arbitrary network traffic originating from the team server.

    Published: 9 Aug 2024
    4.8
    Medium

    CVE-2024-42367

    Last Modified: 19 Aug 2025

    aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In versions on the 3.10 branch prior to version 3.10.2, static routes which contain files with compressed variants (`.gz` or `.br` extension) are vulnerable to path traversal outside the root directory if those variants are symbolic links. The server protects static routes from path traversal outside the root directory when `follow_symlinks=False` (default). It does this by resolving the requested URL to an absolute path and then checking that path relative to the root. However, these checks are not performed when looking for compressed variants in the `FileResponse` class, and symbolic links are then automatically followed when performing the `Path.stat()` and `Path.open()` to send the file. Version 3.10.2 contains a patch for the issue.

    Published: 9 Aug 2024
    9.8
    Critical

    CVE-2024-41476

    Last Modified: 17 Oct 2025

    AMTT Hotel Broadband Operation System (HiBOS) V3.0.3.151204 and before is vulnerable to SQL Injection via /manager/card/card_detail.php.

    Published: 9 Aug 2024
    7.5
    High

    CVE-2023-31315

    Last Modified: 15 Apr 2026

    Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

    Published: 9 Aug 2024
    7.8
    High

    CVE-2023-50809

    Last Modified: 15 Apr 2026

    In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an information element during negotiation of a WPA2 four-way handshake. This lack of validation leads to a stack buffer overflow. This can result in remote code execution within the kernel. This affects Amp, Arc, Arc SL, Beam, Beam Gen 2, Beam SL, and Five.

    Published: 9 Aug 2024
    6
    Medium

    CVE-2023-50810

    Last Modified: 15 Apr 2026

    In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware that allow persistent arbitrary code execution with Linux kernel privileges. A failure to correctly handle the return value of the setenv command can be used to override the kernel command-line parameters and ultimately bypass the Secure Boot implementation. This affects PLAY5 gen 2, PLAYBASE, PLAY:1, One, One SL, and Amp.

    Published: 9 Aug 2024
    6.5
    Medium

    CVE-2024-37283

    Last Modified: 29 Sept 2025

    An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is set to info, where no leak occurs.

    Published: 8 Aug 2024
    —
    Unknown

    CVE-2024-7633

    Last Modified: 12 Aug 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 8 Aug 2024
    5.1
    Medium

    CVE-2024-7616

    Last Modified: 13 Aug 2024

    A vulnerability was found in Edimax IC-6220DC and IC-5150W up to 3.06. It has been rated as critical. Affected by this issue is the function cgiFormString of the file ipcam_cgi. The manipulation of the argument host leads to command injection. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Aug 2024
    8.7
    High

    CVE-2024-7615

    Last Modified: 21 Aug 2024

    A vulnerability was found in Tenda FH1206 1.2.0.8. It has been declared as critical. Affected by this vulnerability is the function fromSafeClientFilter/fromSafeMacFilter/fromSafeUrlFilter. The manipulation leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Aug 2024
    8.7
    High

    CVE-2024-7614

    Last Modified: 21 Aug 2024

    A vulnerability was found in Tenda FH1206 1.2.0.8(8155). It has been classified as critical. Affected is the function fromqossetting of the file /goform/qossetting. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Aug 2024
    6.1
    Medium

    CVE-2024-0115

    Last Modified: 26 Dec 2024

    NVIDIA CV-CUDA for Ubuntu 20.04, Ubuntu 22.04, and Jetpack contains a vulnerability in Python APIs where a user may cause an uncontrolled resource consumption issue by a long running CV-CUDA Python process. A successful exploit of this vulnerability may lead to denial of service and data loss.

    Published: 8 Aug 2024
    7.5
    High

    CVE-2024-0113

    Last Modified: 26 Dec 2024

    NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support, where an attacker can cause a CGI path traversal by a specially crafted URI. A successful exploit of this vulnerability might lead to escalation of privileges and information disclosure.

    Published: 8 Aug 2024
    3.8
    Low

    CVE-2024-5445

    Last Modified: 15 Apr 2026

    Ecosystem Agent version 4 < 4.1.5.2597 and Ecosystem Agent version 5 < 5.1.4.2473 did not properly validate SSL/TLS certificates, which could allow a malicious actor to perform a Man-in-the-Middle and intercept traffic between the agent and N-able servers from a privileged network position.

    Published: 8 Aug 2024
    8.7
    High

    CVE-2024-7613

    Last Modified: 21 Aug 2024

    A vulnerability was found in Tenda FH1206 1.2.0.8(8155) and classified as critical. This issue affects the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer. The manipulation of the argument dips leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Aug 2024
    6.5
    Medium

    CVE-2024-38200

    Last Modified: 10 Jul 2025

    Microsoft Office Spoofing Vulnerability

    Published: 8 Aug 2024
    6.5
    Medium

    CVE-2024-38219

    Last Modified: 10 Jul 2025

    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

    Published: 8 Aug 2024
    8.4
    High

    CVE-2024-38218

    Last Modified: 10 Jul 2025

    Microsoft Edge (HTML-based) Memory Corruption Vulnerability

    Published: 8 Aug 2024
    6.9
    Medium

    CVE-2024-7272

    Last Modified: 13 Aug 2024

    A vulnerability, which was classified as critical, was found in FFmpeg up to 5.1.5. This affects the function fill_audiodata of the file /libswresample/swresample.c. The manipulation leads to heap-based buffer overflow. It is possible to initiate the attack remotely. This issue was fixed in version 6.0 by 9903ba28c28ab18dc7b7b6fb8571cc8b5caae1a6 but a backport for 5.1 was forgotten. The exploit has been disclosed to the public and may be used. Upgrading to version 5.1.6 and 6.0 9903ba28c28ab18dc7b7b6fb8571cc8b5caae1a6 is able to address this issue. It is recommended to upgrade the affected component.

    Published: 8 Aug 2024
    6.1
    Medium

    CVE-2024-42001

    Last Modified: 21 Aug 2024

    An improper authentication vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior enables an unauthenticated remote attacker to bypass authentication via a specially crafted direct request when another user has an active session.

    Published: 8 Aug 2024
    10
    Critical

    CVE-2024-39791

    Last Modified: 21 Aug 2024

    Stack-based buffer overflow vulnerabilities affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to execute arbitrary code.

    Published: 8 Aug 2024
    9.4
    Critical

    CVE-2024-39815

    Last Modified: 21 Aug 2024

    Improper check or handling of exceptional conditions vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to cause a denial of service. A specially-crafted HTTP request to pre-authentication resources can crash the service.

    Published: 8 Aug 2024
    9.4
    Critical

    CVE-2024-37023

    Last Modified: 21 Aug 2024

    Multiple OS command injection vulnerabilities affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an authenticated remote attacker to execute arbitrary OS commands via various endpoint parameters.

    Published: 8 Aug 2024
    8.7
    High

    CVE-2024-41936

    Last Modified: 21 Aug 2024

    A directory traversal vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to read arbitrary files and bypass authentication.

    Published: 8 Aug 2024
    8.8
    High

    CVE-2024-29082

    Last Modified: 21 Aug 2024

    Improper access control vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication and factory reset the device via unprotected goform endpoints.

    Published: 8 Aug 2024
    8.7
    High

    CVE-2024-41161

    Last Modified: 20 Aug 2024

    Use of hard-coded credentials vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication using hard-coded administrator credentials. These accounts cannot be disabled.

    Published: 8 Aug 2024
    6.9
    Medium

    CVE-2024-42408

    Last Modified: 29 Aug 2024

    The InfoScan client download page can be intercepted with a proxy, to expose filenames located on the system, which could lead to additional information exposure.

    Published: 8 Aug 2024
    6.9
    Medium

    CVE-2024-39287

    Last Modified: 29 Aug 2024

    Dorsett Controls Central Server update server has potential information leaks with an unprotected file that contains passwords and API keys.

    Published: 8 Aug 2024
    6.9
    Medium

    CVE-2024-42493

    Last Modified: 29 Aug 2024

    Dorsett Controls InfoScan is vulnerable due to a leak of possible sensitive information through the response headers and the rendered JavaScript prior to user login.

    Published: 8 Aug 2024
    7.8
    High

    CVE-2024-0107

    Last Modified: 4 Nov 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

    Published: 8 Aug 2024
    9
    Critical

    CVE-2024-42366

    Last Modified: 29 Aug 2024

    VRCX is an assistant/companion application for VRChat. In versions prior to 2024.03.23, a CefSharp browser with over-permission and cross-site scripting via overlay notification can be combined to result in remote command execution. These vulnerabilities are patched in VRCX 2023.12.24. In addition to the patch, VRCX maintainers worked with the VRC team and blocked the older version of VRCX on the VRC's API side. Users who use the older version of VRCX must update their installation to continue using VRCX.

    Published: 8 Aug 2024
    4.6
    Medium

    CVE-2024-7394

    Last Modified: 25 Sept 2025

    Concrete CMS versions 9 through 9.3.2 and below 8.5.18 are vulnerable to Stored XSS in getAttributeSetName(). A rogue administrator could inject malicious code. The Concrete CMS team gave this a CVSS v4.0 rank of 4.6 with vector https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:A/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N. Thanks, m3dium for reporting. (CNA updated this risk rank on 20 Jan 2025 by lowering the AC based on CVSS 4.0 documentation that access privileges should not be considered for AC)

    Published: 8 Aug 2024
    4.2
    Medium

    CVE-2024-7480

    Last Modified: 1 Oct 2025

    An Improper access control vulnerability was found in Avaya Aura System Manager which could allow a command-line interface (CLI) user with administrative privileges to read arbitrary files on the system. Affected versions include 10.1.x.x and 10.2.x.x. Versions prior to 10.1 are end of manufacturer support.

    Published: 8 Aug 2024
    6.5
    Medium

    CVE-2024-7477

    Last Modified: 11 Sept 2024

    A SQL injection vulnerability was found which could allow a command line interface (CLI) user with administrative privileges to execute arbitrary queries against the Avaya Aura System Manager database.  Affected versions include 10.1.x.x and 10.2.x.x. Versions prior to 10.1 are end of manufacturer support.

    Published: 8 Aug 2024
    —
    Unknown

    CVE-2024-7619

    Last Modified: 3 Sept 2024

    Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that there was not reasonable evidence to determine the existence of a vulnerability.

    Published: 8 Aug 2024
    9.5
    Critical

    CVE-2024-7490

    Last Modified: 29 Sept 2025

    Improper Input Validation vulnerability in Microchip Techology Advanced Software Framework example DHCP server can cause remote code execution through a buffer overflow. This vulnerability is associated with program files tinydhcpserver.C and program routines lwip_dhcp_find_option. This issue affects Advanced Software Framework: through 3.52.0.2574. ASF is no longer being supported. Apply provided workaround or migrate to an actively maintained framework.

    Published: 8 Aug 2024
    7.3
    High

    CVE-2024-42357

    Last Modified: 12 Aug 2024

    Shopware is an open commerce platform. Prior to versions 6.6.5.1 and 6.5.8.13, the Shopware application API contains a search functionality which enables users to search through information stored within their Shopware instance. The searches performed by this function can be aggregated using the parameters in the `aggregations` object. The `name` field in this `aggregations` object is vulnerable SQL-injection and can be exploited using SQL parameters. Update to Shopware 6.6.5.1 or 6.5.8.13 to receive a patch. For older versions of 6.1, 6.2, 6.3, and 6.4, corresponding security measures are also available via a plugin.

    Published: 8 Aug 2024