CVE Feed

    Dashboard / CVE

    9.1
    Critical

    CVE-2024-3411

    Last Modified: 15 Apr 2026

    Implementations of IPMI Authenticated sessions does not provide enough randomness to protect from session hijacking, allowing an attacker to use either predictable IPMI Session ID or weak BMC Random Number to bypass security controls using spoofed IPMI packets to manage BMC device.

    Published: 30 Apr 2024
    8.8
    High

    CVE-2024-23463

    Last Modified: 2 Mar 2026

    Anti-tampering protection of the Zscaler Client Connector can be bypassed under certain conditions when running the Repair App functionality. This affects Zscaler Client Connector on Windows prior to 4.2.1

    Published: 30 Apr 2024
    5.5
    Medium

    CVE-2024-2877

    Last Modified: 8 Aug 2025

    Vault Enterprise, when configured with performance standby nodes and a configured audit device, will inadvertently log request headers on the standby node. These logs may have included sensitive HTTP request information in cleartext. This vulnerability, CVE-2024-2877, was fixed in Vault Enterprise 1.15.8.

    Published: 30 Apr 2024
    5
    Medium

    CVE-2023-38002

    Last Modified: 4 Aug 2025

    IBM Storage Scale 5.1.0.0 through 5.1.9.2 could allow an authenticated user to steal or manipulate an active session to gain access to the system. IBM X-Force ID: 260208.

    Published: 30 Apr 2024
    8.8
    High

    CVE-2024-25938

    Last Modified: 4 Nov 2025

    A use-after-free vulnerability exists in the way Foxit Reader 2024.1.0.23997 handles a Barcode widget. A specially crafted JavaScript code inside a malicious PDF document can trigger reuse of a previously freed object, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 30 Apr 2024
    8.8
    High

    CVE-2024-25648

    Last Modified: 16 Dec 2025

    A use-after-free vulnerability exists in the way Foxit Reader 2024.1.0.23997 handles a ComboBox widget. A specially crafted JavaScript code inside a malicious PDF document can trigger reuse of a previously freed object, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 30 Apr 2024
    8.8
    High

    CVE-2024-25575

    Last Modified: 16 Dec 2025

    A type confusion vulnerability vulnerability exists in the way Foxit Reader 2024.1.0.23997 handles a Lock object. A specially crafted Javascript code inside a malicious PDF document can trigger this vulnerability, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 30 Apr 2024
    8
    High

    CVE-2024-2378

    Last Modified: 15 Apr 2026

    A vulnerability exists in the web-authentication component of the SDM600. If exploited an attacker could escalate privileges on af-fected installations.

    Published: 30 Apr 2024
    7.2
    High

    CVE-2024-2617

    Last Modified: 15 Apr 2026

    A vulnerability exists in the RTU500 that allows for authenticated and authorized users to bypass secure update, if secure update feature was not enabled on all CMUs of a RTU500. If a malicious actor successfully exploits this vulnerability, they could use it to update the RTU500 with unsigned firmware.

    Published: 30 Apr 2024
    7.6
    High

    CVE-2024-2377

    Last Modified: 15 Apr 2026

    A vulnerability exists in the too permissive HTTP response header web server settings of the SDM600. An attacker can take advantage of this and possibly carry out privileged actions and access sensitive information.

    Published: 30 Apr 2024
    5.5
    Medium

    CVE-2024-22405

    Last Modified: 15 Apr 2026

    XADMaster is an objective-C library for archive and file unarchiving and extraction. When extracting a specially crafted zip archive XADMaster may not apply quarantine attribute correctly. Such behaviour may circumvent Gatekeeper checks on the system. Only macOS installations are affected. This issue was fixed in XADMaster 1.10.8. It is recommended to upgrade to the latest version. There are no known workarounds for this issue.

    Published: 30 Apr 2024
    7.6
    High

    CVE-2024-4336

    Last Modified: 15 Oct 2025

    Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/tables/add, in multiple parameters. An attacker could retrieve the session details of an authenticated user.

    Published: 30 Apr 2024
    7.6
    High

    CVE-2024-4337

    Last Modified: 15 Oct 2025

    Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/nav/add, in multiple parameters. This vulnerability allows an attacker to retrieve the session details of an authenticated user.

    Published: 30 Apr 2024
    8.3
    High

    CVE-2024-2663

    Last Modified: 15 Apr 2026

    The ZD YouTube FLV Player plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.2.6 via the $_GET['image'] parameter. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

    Published: 30 Apr 2024
    8.1
    High

    CVE-2024-4185

    Last Modified: 15 Apr 2026

    The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Email Verification and Authentication Bypass in all versions up to, and including, 2.7.4 via the use of insufficiently random activation code. This makes it possible for unauthenticated attackers to bypass the email verification, and if both the "Login the user automatically after the account is verified" and "Verify account for current users" options are checked, then it potentially makes it possible for attackers to bypass authentication for other users.

    Published: 30 Apr 2024
    4.3
    Medium

    CVE-2024-3072

    Last Modified: 15 Apr 2026

    The ACF Front End Editor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_texts() function in all versions up to, and including, 2.0.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to update arbitrary post title, content, and ACF data.

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-1895

    Last Modified: 8 Apr 2026

    The Event Monster – Event Management, Tickets Booking, Upcoming Event plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3.9 via deserialization via shortcode of untrusted input from a custom meta value. This makes it possible for authenticated attackers, with contributor access and above, to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.

    Published: 30 Apr 2024
    7.6
    High

    CVE-2024-4225

    Last Modified: 15 Apr 2026

    Multiple security vulnerabilities has been discovered in web interface of NetGuardian DIN Remote Telemetry Unit (RTU), by DPS Telecom. Attackers can exploit those security vulnerabilities to perform critical actions such as escalate user's privilege, steal user's credential, Cross Site Scripting (XSS) and Cross-Site Request Forgery (CSRF).

    Published: 30 Apr 2024
    6.5
    Medium

    CVE-2024-1371

    Last Modified: 15 Apr 2026

    The LeadConnector plugin for WordPress is vulnerable to unauthorized modification & loss of data due to a missing capability check on the lc_public_api_proxy() function in all versions up to, and including, 1.7. This makes it possible for unauthenticated attackers to delete arbitrary posts. CVE-2024-34378 is likely a duplicate of this issue.

    Published: 30 Apr 2024
    6.4
    Medium

    CVE-2024-0216

    Last Modified: 15 Apr 2026

    The Google Doc Embedder plugin for WordPress is vulnerable to Server Side Request Forgery via the 'gview' shortcode in versions up to, and including, 2.6.4. This can allow authenticated attackers with contributor-level permissions or above to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

    Published: 30 Apr 2024
    3.5
    Low

    CVE-2024-4226

    Last Modified: 27 Jun 2025

    It was identified that in certain versions of Octopus Server, that a user created with no permissions could view all users, user roles and permissions. This functionality was removed in versions of Octopus Server after the fixed versions listed.

    Published: 30 Apr 2024
    3.5
    Low

    CVE-2024-4327

    Last Modified: 15 Apr 2026

    A vulnerability was found in Apryse WebViewer up to 10.8.0. It has been classified as problematic. This affects an unknown part of the component PDF Document Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 10.9 is able to address this issue. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-262419. NOTE: The vendor was contacted early about this disclosure and explains that the documentation recommends a strict Content Security Policy and the issue was fixed in release 10.9.

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-4340

    Last Modified: 15 Apr 2026

    Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.

    Published: 30 Apr 2024
    6.3
    Medium

    CVE-2024-34149

    Last Modified: 15 Apr 2026

    In Bitcoin Core through 27.0 and Bitcoin Knots before 25.1.knots20231115, tapscript lacks a policy size limit check, a different issue than CVE-2023-50428. NOTE: some parties oppose this new limit check (for example, because they agree with the objective but disagree with the technical mechanism, or because they have a different objective).

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-33309

    Last Modified: 15 Apr 2026

    An issue in TVS Motor Company Limited TVS Connet Android v.4.5.1 and iOS v.5.0.0 allows a remote attacker to obtain sensitive information via an insecure API endpoint. NOTE: this is disputed as discussed in the msn-official/CVE-Evidence repository.

    Published: 30 Apr 2024
    9.1
    Critical

    CVE-2024-33308

    Last Modified: 15 Apr 2026

    An issue in TVS Motor Company Limited TVS Connet Android v.4.5.1 and iOS v.5.0.0 allows a remote attacker to escalate privileges via the Emergency Contact Feature. NOTE: this is disputed as discussed in the msn-official/CVE-Evidence repository.

    Published: 30 Apr 2024
    9.8
    Critical

    CVE-2024-33275

    Last Modified: 15 Apr 2026

    SQL injection vulnerability in Webbax supernewsletter v.1.4.21 and before allows a remote attacker to escalate privileges via the Super Newsletter module in the product_search.php components.

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-33274

    Last Modified: 15 Apr 2026

    Directory Traversal vulnerability in FME Modules customfields v.2.2.7 and before allows a remote attacker to obtain sensitive information via the Custom Checkout Fields, Add Custom Fields to Checkout parameter of the ajax.php

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-33270

    Last Modified: 15 Apr 2026

    An issue in FME Modules fileuploads v.2.0.3 and before and fixed in v2.0.4 allows a remote attacker to obtain sensitive information via the uploadfiles.php component.

    Published: 30 Apr 2024
    6.1
    Medium

    CVE-2024-33103

    Last Modified: 15 Apr 2026

    An arbitrary file upload vulnerability in the Media Manager component of DokuWiki 2024-02-06a allows attackers to execute arbitrary code by uploading a crafted SVG file. NOTE: as noted in the 4267 issue reference, there is a position that exploitability can only occur with a misconfiguration of the product.

    Published: 30 Apr 2024
    8.4
    High

    CVE-2024-31837

    Last Modified: 15 Apr 2026

    DMitry (Deepmagic Information Gathering Tool) 1.3a has a format-string vulnerability, with a threat model similar to CVE-2017-7938.

    Published: 30 Apr 2024
    4.3
    Medium

    CVE-2024-29040

    Last Modified: 15 Apr 2026

    This repository hosts source code implementing the Trusted Computing Group's (TCG) TPM2 Software Stack (TSS). The JSON Quote Info returned by Fapi_Quote has to be deserialized by Fapi_VerifyQuote to the TPM Structure `TPMS_ATTEST`. For the field `TPM2_GENERATED magic` of this structure any number can be used in the JSON structure. The verifier can receive a state which does not represent the actual, possibly malicious state of the device under test. The malicious device might get access to data it shouldn't, or can use services it shouldn't be able to. This issue has been patched in version 4.1.0.

    Published: 30 Apr 2024
    7.2
    High

    CVE-2024-28269

    Last Modified: 15 Apr 2026

    ReCrystallize Server 5.10.0.0 allows administrators to upload files to the server. The file upload is not restricted, leading to the ability to upload of malicious files. This could result in a Remote Code Execution.

    Published: 30 Apr 2024
    7.8
    High

    CVE-2024-23774

    Last Modified: 15 Apr 2026

    An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An unquoted Windows search path vulnerability exists in the KSchedulerSvc.exe and AMPTools.exe components. This allows local attackers to execute code of their choice with NT Authority\SYSTEM privileges.

    Published: 30 Apr 2024
    6.5
    Medium

    CVE-2023-50915

    Last Modified: 15 Apr 2026

    An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite and corrupt critical system files via a combination of an NTFS Junction and an RPC Object Manager symbolic link and could result in a denial of service.

    Published: 30 Apr 2024
    5.3
    Medium

    CVE-2023-50059

    Last Modified: 15 Apr 2026

    An issue ingalxe.com Galxe platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentication process of Galxe, the signed message lacks a nonce (random number)

    Published: 30 Apr 2024
    7.6
    High

    CVE-2023-50053

    Last Modified: 15 Apr 2026

    An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentication process of Foundation, the signed message lacks a nonce (random number)

    Published: 30 Apr 2024
    9.8
    Critical

    CVE-2023-49473

    Last Modified: 15 Apr 2026

    Shenzhen JF6000 Cloud Media Collaboration Processing Platform firmware version V1.2.0 and software version V2.0.0 build 6245 is vulnerable to Incorrect Access Control.

    Published: 30 Apr 2024
    7.5
    High

    CVE-2023-45385

    Last Modified: 15 Apr 2026

    ProQuality pqprintshippinglabels before v.4.15.0 is vulnerable to Directory Traversal via the pqprintshippinglabels module.

    Published: 30 Apr 2024
    5.9
    Medium

    CVE-2020-5200

    Last Modified: 15 Apr 2026

    Minerbabe through V4.16 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io.

    Published: 30 Apr 2024
    7.1
    High

    CVE-2020-27478

    Last Modified: 15 Apr 2026

    Cross Site Scripting vulnerability found in Simplcommerce v.40734964b0811f3cbaf64b6dac261683d256f961 thru 3103357200c70b4767986544e01b19dbf11505a7 allows a remote attacker to execute arbitrary code via a crafted script to the search bar feature.

    Published: 30 Apr 2024
    5.7
    Medium

    CVE-2019-19754

    Last Modified: 15 Apr 2026

    HiveOS through 0.6-102@191212 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io. NOTE: as of 2019-09-26, the vendor indicated that they would consider fixing this.

    Published: 30 Apr 2024
    9.8
    Critical

    CVE-2019-19752

    Last Modified: 15 Apr 2026

    nvOC through 3.2 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io. NOTE: as of 2019-12-01, the vendor indicated plans to fix this in the next image build.

    Published: 30 Apr 2024
    6.8
    Medium

    CVE-2024-4369

    Last Modified: 15 Apr 2026

    An information disclosure flaw was found in OpenShift's internal image registry operator. The AZURE_CLIENT_SECRET can be exposed through an environment variable defined in the pod definition, but is limited to Azure environments. An attacker controlling an account that has high enough permissions to obtain pod information from the openshift-image-registry namespace could use this obtained client secret to perform actions as the registry operator's Azure service account.

    Published: 30 Apr 2024
    —
    Unknown

    CVE-2023-36268

    Last Modified: 20 Sept 2024

    DoS issues, or unexploitable crashes, are out of scope for vulnerabilities.

    Published: 30 Apr 2024
    7.5
    High

    CVE-2024-33383

    Last Modified: 10 Oct 2025

    Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to obtain sensitive information via a crafted GET request using the filePath parameter.

    Published: 30 Apr 2024
    9
    Critical

    CVE-2024-29039

    Last Modified: 4 Nov 2025

    tpm2 is the source repository for the Trusted Platform Module (TPM2.0) tools. This vulnerability allows attackers to manipulate tpm2_checkquote outputs by altering the TPML_PCR_SELECTION in the PCR input file. As a result, digest values are incorrectly mapped to PCR slots and banks, providing a misleading picture of the TPM state. This issue has been patched in version 5.7.

    Published: 30 Apr 2024
    4.3
    Medium

    CVE-2024-29038

    Last Modified: 4 Nov 2025

    tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.

    Published: 30 Apr 2024
    7.4
    High

    CVE-2024-33831

    Last Modified: 15 Apr 2026

    A stored cross-site scripting (XSS) vulnerability in the Advanced Expectation - Response module of yapi v1.10.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the body field.

    Published: 30 Apr 2024
    6.3
    Medium

    CVE-2024-33832

    Last Modified: 15 Apr 2026

    OneNav v0.9.35-20240318 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /index.php?c=api&method=get_link_info.

    Published: 30 Apr 2024