CVE Feed

    Dashboard / CVE

    8.6
    High

    CVE-2024-3826

    Last Modified: 15 Apr 2026

    In versions of Akana in versions prior to and including 2022.1.3 validation is broken when using the SAML Single Sign-On (SSO) functionality.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-4467

    Last Modified: 15 Apr 2026

    A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

    Published: 2 Jul 2024
    6.5
    Medium

    CVE-2024-32498

    Last Modified: 4 Nov 2025

    An issue was discovered in OpenStack Cinder through 24.0.0, Glance before 28.0.2, and Nova before 29.0.3. Arbitrary file access can occur via custom QCOW2 external data. By supplying a crafted QCOW2 image that references a specific data file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data. All Cinder and Nova deployments are affected; only Glance deployments with image conversion enabled are affected.

    Published: 2 Jul 2024
    8.4
    High

    CVE-2024-4897

    Last Modified: 9 Jul 2025

    parisneo/lollms-webui, in its latest version, is vulnerable to remote code execution due to an insecure dependency on llama-cpp-python version llama_cpp_python-0.2.61+cpuavx2-cp311-cp311-manylinux_2_31_x86_64. The vulnerability arises from the application's 'binding_zoo' feature, which allows attackers to upload and interact with a malicious model file hosted on hugging-face, leading to remote code execution. The issue is linked to a known vulnerability in llama-cpp-python, CVE-2024-34359, which has not been patched in lollms-webui as of commit b454f40a. The vulnerability is exploitable through the application's handling of model files in the 'bindings_zoo' feature, specifically when processing gguf format model files.

    Published: 2 Jul 2024
    6.8
    Medium

    CVE-2024-32932

    Last Modified: 15 Apr 2026

    Under certain circumstances the web interface users credentials may be recovered by an authenticated user.

    Published: 2 Jul 2024
    6.8
    Medium

    CVE-2024-32757

    Last Modified: 15 Apr 2026

    Under certain circumstances unnecessary user details are provided within system logs

    Published: 2 Jul 2024
    6.8
    Medium

    CVE-2024-32756

    Last Modified: 15 Apr 2026

    Under certain circumstances the Linux users credentials may be recovered by an authenticated user.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-38519

    Last Modified: 15 Apr 2026

    `yt-dlp` and `youtube-dl` are command-line audio/video downloaders. Prior to the fixed versions, `yt-dlp` and `youtube-dl` do not limit the extensions of downloaded files, which could lead to arbitrary filenames being created in the download folder (and path traversal on Windows). Since `yt-dlp` and `youtube-dl` also read config from the working directory (and on Windows executables will be executed from the `yt-dlp` or `youtube-dl` directory), this could lead to arbitrary code being executed. `yt-dlp` version 2024.07.01 fixes this issue by whitelisting the allowed extensions. `youtube-dl` fixes this issue in commit `d42a222` on the `master` branch and in nightly builds tagged 2024-07-03 or later. This might mean some very uncommon extensions might not get downloaded, however it will also limit the possible exploitation surface. In addition to upgrading, have `.%(ext)s` at the end of the output template and make sure the user trusts the websites that they are downloading from. Also, make sure to never download to a directory within PATH or other sensitive locations like one's user directory, `system32`, or other binaries locations. For users who are not able to upgrade, keep the default output template (`-o "%(title)s [%(id)s].%(ext)s`); make sure the extension of the media to download is a common video/audio/sub/... one; try to avoid the generic extractor; and/or use `--ignore-config --config-location ...` to not load config from common locations.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-34122

    Last Modified: 21 Nov 2024

    Acrobat for Edge versions 126.0.2592.68 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 2 Jul 2024
    9.8
    Critical

    CVE-2024-36404

    Last Modified: 15 Apr 2026

    GeoTools is an open source Java library that provides tools for geospatial data. Prior to versions 31.2, 30.4, and 29.6, Remote Code Execution (RCE) is possible if an application uses certain GeoTools functionality to evaluate XPath expressions supplied by user input. Versions 31.2, 30.4, and 29.6 contain a fix for this issue. As a workaround, GeoTools can operate with reduced functionality by removing the `gt-complex` jar from one's application. As an example of the impact, application schema `datastore` would not function without the ability to use XPath expressions to query complex content. Alternatively, one may utilize a drop-in replacement GeoTools jar from SourceForge for versions 31.1, 30.3, 30.2, 29.2, 28.2, 27.5, 27.4, 26.7, 26.4, 25.2, and 24.0. These jars are for download only and are not available from maven central, intended to quickly provide a fix to affected applications.

    Published: 2 Jul 2024
    9.1
    Critical

    CVE-2024-32755

    Last Modified: 15 Apr 2026

    Under certain circumstances the web interface will accept characters unrelated to the expected input.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6441

    Last Modified: 15 Apr 2026

    A vulnerability was found in ORIPA up to 1.72. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file src/main/java/oripa/persistence/doc/loader/LoaderXML.java. The manipulation leads to deserialization. The attack can be launched remotely. Upgrading to version 1.80 is able to address this issue. It is recommended to upgrade the affected component. The identifier VDB-270169 was assigned to this vulnerability.

    Published: 2 Jul 2024
    6.4
    Medium

    CVE-2024-6264

    Last Modified: 8 Apr 2026

    The Post Meta Data Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘$meta_key’ parameter in all versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6099

    Last Modified: 8 Apr 2026

    The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthenticated bypass to user registration in versions up to, and including, 4.2.6.8.1. This is due to missing checks in the 'check_validate_fields' function in the checkout. This makes it possible for unauthenticated attackers to register as the default role on the site, even if registration is disabled.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6088

    Last Modified: 8 Apr 2026

    The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized user registration due to a missing capability check on the 'register' function in all versions up to, and including, 4.2.6.8.1. This makes it possible for unauthenticated attackers to bypass disabled user registration to create a new account with the default role.

    Published: 2 Jul 2024
    6.4
    Medium

    CVE-2024-4268

    Last Modified: 8 Apr 2026

    The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's blocks in all versions up to, and including, 3.1.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. CVE-2024-37457 may be a duplicate of this issue.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6440

    Last Modified: 21 Nov 2024

    A vulnerability was found in SourceCodester Home Owners Collection Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /classes/Master.php?f=delete_category. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-270168.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6439

    Last Modified: 21 Nov 2024

    A vulnerability was found in SourceCodester Home Owners Collection Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /classes/Users.php?f=save. The manipulation of the argument img leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-270167.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-6438

    Last Modified: 21 Nov 2024

    A vulnerability has been found in Hitout Carsale 1.0 and classified as critical. This vulnerability affects unknown code of the file OrderController.java. The manipulation of the argument orderBy leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-270166 is the identifier assigned to this vulnerability.

    Published: 2 Jul 2024
    4.3
    Medium

    CVE-2024-6012

    Last Modified: 8 Apr 2026

    The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'embed-create-page' and 'embed-insert-pages' functions in all versions up to, and including, 3.2.12. This makes it possible for authenticated attackers, with Subscriber-level access and above, to create arbitrary posts and append arbitrary content to existing posts.

    Published: 2 Jul 2024
    4.4
    Medium

    CVE-2024-6011

    Last Modified: 8 Apr 2026

    The Cost Calculator Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘textarea.description’ parameter in all versions up to, and including, 3.2.12 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 2 Jul 2024
    5.9
    Medium

    CVE-2024-34601

    Last Modified: 3 Jan 2025

    Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launch unexported activities of GalaxyStore.

    Published: 2 Jul 2024
    4.4
    Medium

    CVE-2024-34600

    Last Modified: 21 Nov 2024

    Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copy image files to external storage.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-34599

    Last Modified: 21 Nov 2024

    Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Tips' privilege.

    Published: 2 Jul 2024
    4.4
    Medium

    CVE-2024-34597

    Last Modified: 21 Nov 2024

    Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.9
    Medium

    CVE-2024-34596

    Last Modified: 21 Nov 2024

    Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for members set by the owner.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-34595

    Last Modified: 21 Nov 2024

    Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

    Published: 2 Jul 2024
    5.5
    Medium

    CVE-2024-34594

    Last Modified: 21 Nov 2024

    Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read kernel memory address.

    Published: 2 Jul 2024
    7.5
    High

    CVE-2024-34593

    Last Modified: 21 Nov 2024

    Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-34592

    Last Modified: 21 Nov 2024

    Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-34591

    Last Modified: 21 Nov 2024

    Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-34590

    Last Modified: 21 Nov 2024

    Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-34589

    Last Modified: 21 Nov 2024

    Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.3
    Medium

    CVE-2024-34588

    Last Modified: 21 Nov 2024

    Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to trigger temporary denial of service. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    7.5
    High

    CVE-2024-34587

    Last Modified: 21 Nov 2024

    Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    5.9
    Medium

    CVE-2024-34586

    Last Modified: 21 Nov 2024

    Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-34585

    Last Modified: 21 Nov 2024

    Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

    Published: 2 Jul 2024
    —
    Unknown

    CVE-2024-34584

    Last Modified: 4 Jul 2024

    ** REJECT ** DO NOT USE THIS CVE RECORD. Reason: An additional patch is required.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-34583

    Last Modified: 21 Nov 2024

    Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifier.

    Published: 2 Jul 2024
    5.9
    Medium

    CVE-2024-20901

    Last Modified: 21 Nov 2024

    Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds memory.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-20900

    Last Modified: 21 Nov 2024

    Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-20899

    Last Modified: 21 Nov 2024

    Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-20898

    Last Modified: 21 Nov 2024

    Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

    Published: 2 Jul 2024
    4
    Medium

    CVE-2024-20897

    Last Modified: 21 Nov 2024

    Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

    Published: 2 Jul 2024
    5.5
    Medium

    CVE-2024-20896

    Last Modified: 21 Nov 2024

    Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

    Published: 2 Jul 2024
    7.7
    High

    CVE-2024-20895

    Last Modified: 21 Nov 2024

    Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.

    Published: 2 Jul 2024
    4.3
    Medium

    CVE-2024-20894

    Last Modified: 21 Nov 2024

    Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers to bypass authentication under certain condition. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    6.1
    Medium

    CVE-2024-20893

    Last Modified: 21 Nov 2024

    Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption.

    Published: 2 Jul 2024
    6.5
    Medium

    CVE-2024-20892

    Last Modified: 21 Nov 2024

    Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute privileged behaviors. User interaction is required for triggering this vulnerability.

    Published: 2 Jul 2024
    7.8
    High

    CVE-2024-20891

    Last Modified: 21 Nov 2024

    Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

    Published: 2 Jul 2024