9.8
    Critical

    CVE-2024-41276

    Last Modified: 15 Apr 2026

    A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism. The application requires users to input a 6-digit PIN code sent to their email for authorization after entering their login credentials. However, the request limiting mechanism can be easily bypassed, enabling attackers to perform a brute force attack to guess the correct PIN and gain unauthorized access to the application.

    Published:1 Oct 2024
    8.4
    High

    CVE-2024-41127

    Last Modified: 11 Sept 2024

    Monkeytype is a minimalistic and customizable typing test. Monkeytype is vulnerable to Poisoned Pipeline Execution through Code Injection in its ci-failure-comment.yml GitHub Workflow, enabling attackers to gain pull-requests write access. The ci-failure-comment.yml workflow is triggered when the Monkey CI workflow completes. When it runs, it will download an artifact uploaded by the triggering workflow and assign the contents of ./pr_num/pr_num.txt artifact to the steps.pr_num_reader.outputs.content WorkFlow variable. It is not validated that the variable is actually a number and later it is interpolated into a JS script allowing an attacker to change the code to be executed. This issue leads to pull-requests write access. This vulnerability is fixed in 24.30.0.

    Published:2 Aug 2024
    10
    Critical

    CVE-2024-41110

    Last Modified: 15 Apr 2026

    Moby is an open-source project created by Docker for software containerization. A security vulnerability has been detected in certain versions of Docker Engine, which could allow an attacker to bypass authorization plugins (AuthZ) under specific circumstances. The base likelihood of this being exploited is low. Using a specially-crafted API request, an Engine API client could make the daemon forward the request or response to an authorization plugin without the body. In certain circumstances, the authorization plugin may allow a request which it would have otherwise denied if the body had been forwarded to it. A security issue was discovered In 2018, where an attacker could bypass AuthZ plugins using a specially crafted API request. This could lead to unauthorized actions, including privilege escalation. Although this issue was fixed in Docker Engine v18.09.1 in January 2019, the fix was not carried forward to later major versions, resulting in a regression. Anyone who depends on authorization plugins that introspect the request and/or response body to make access control decisions is potentially impacted. Docker EE v19.03.x and all versions of Mirantis Container Runtime are not vulnerable. docker-ce v27.1.1 containes patches to fix the vulnerability. Patches have also been merged into the master, 19.03, 20.0, 23.0, 24.0, 25.0, 26.0, and 26.1 release branches. If one is unable to upgrade immediately, avoid using AuthZ plugins and/or restrict access to the Docker API to trusted parties, following the principle of least privilege.

    Published:23 Jul 2024
    8.1
    High

    CVE-2024-41107

    Last Modified: 19 Mar 2025

    The CloudStack SAML authentication (disabled by default) does not enforce signature check. In CloudStack environments where SAML authentication is enabled, an attacker that initiates CloudStack SAML single sign-on authentication can bypass SAML authentication by submitting a spoofed SAML response with no signature and known or guessed username and other user details of a SAML-enabled CloudStack user-account. In such environments, this can result in a complete compromise of the resources owned and/or accessible by a SAML enabled user-account. Affected users are recommended to disable the SAML authentication plugin by setting the "saml2.enabled" global setting to "false", or upgrade to version 4.18.2.2, 4.19.1.0 or later, which addresses this issue.

    Published:19 Jul 2024
    7.5
    High

    CVE-2024-40898

    Last Modified: 21 Nov 2024

    SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue. 

    Published:18 Jul 2024
    7.1
    High

    CVE-2024-40892

    Last Modified: 15 Apr 2026

    A weak credential vulnerability exists in Firewalla Box Software versions before 1.979. This vulnerability allows a physically close attacker to use the license UUID for authentication and provision SSH credentials over the Bluetooth Low-Energy (BTLE) interface. Once an attacker gains access to the LAN, they could log into the SSH interface using the provisioned credentials. The license UUID can be acquired through plain-text Bluetooth sniffing, reading the QR code on the bottom of the device, or brute-forcing the UUID (though this is less likely).

    Published:12 Aug 2024
    8.8
    High

    CVE-2024-40891

    Last Modified: 27 Oct 2025

    **UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attacker to execute operating system (OS) commands on an affected device via Telnet.

    Published:4 Feb 2025
    5.5
    Medium

    CVE-2024-40842

    Last Modified: 2 Apr 2026

    An issue was addressed with improved validation of environment variables. This issue is fixed in macOS Sequoia 15. An app may be able to access user-sensitive data.

    Published:16 Sept 2024
    7.5
    High

    CVE-2024-40815

    Last Modified: 2 Apr 2026

    A race condition was addressed with additional validation. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, watchOS 10.6. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.

    Published:29 Jul 2024
    5.3
    Medium

    CVE-2024-40725

    Last Modified: 14 Mar 2025

    A partial fix for  CVE-2024-39884 in the core of Apache HTTP Server 2.4.61 ignores some use of the legacy content-type based configuration of handlers. "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.62, which fixes this issue.

    Published:18 Jul 2024
    9.8
    Critical

    CVE-2024-40711

    Last Modified: 30 Oct 2025

    A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).

    Published:7 Sept 2024
    7.7
    High

    CVE-2024-40676

    Last Modified: 22 Apr 2025

    In checkKeyIntent of AccountManagerService.java, there is a possible way to bypass intent security check and install an unknown app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published:28 Jan 2025
    7.8
    High

    CVE-2024-40662

    Last Modified: 17 Dec 2024

    In scheme of Uri.java, there is a possible way to craft a malformed Uri object due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published:11 Sept 2024
    4.6
    Medium

    CVE-2024-40635

    Last Modified: 2 Oct 2025

    containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where containers launched with a User set as a `UID:GID` larger than the maximum 32-bit signed integer can cause an overflow condition where the container ultimately runs as root (UID 0). This could cause unexpected behavior for environments that require containers to run as a non-root user. This bug has been fixed in containerd 1.6.38, 1.7.27, and 2.04. As a workaround, ensure that only trusted images are used and that only trusted users have permissions to import images.

    Published:17 Mar 2025
    6.5
    Medium

    CVE-2024-40617

    Last Modified: 21 Nov 2024

    Path traversal vulnerability exists in FUJITSU Network Edgiot GW1500 (M2M-GW for FENICS). If a remote authenticated attacker with User Class privilege sends a specially crafted request to the affected product, access restricted files containing sensitive information may be accessed. As a result, Administrator Class privileges of the product may be hijacked.

    Published:17 Jul 2024
    6.3
    Medium

    CVE-2024-40586

    Last Modified: 16 Jul 2025

    An Improper Access Control vulnerability [CWE-284] in FortiClient Windows version 7.4.0, version 7.2.6 and below, version 7.0.13 and below may allow a local user to escalate his privileges via FortiSSLVPNd service pipe.

    Published:11 Feb 2025
    7.3
    High

    CVE-2024-40512

    Last Modified: 23 Apr 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMReporting.asmx function.

    Published:27 Sept 2024
    7.3
    High

    CVE-2024-40511

    Last Modified: 23 Apr 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMServerAdmin.asmx function.

    Published:27 Sept 2024
    8.2
    High

    CVE-2024-40510

    Last Modified: 14 Mar 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMCommon.asmx function.

    Published:27 Sept 2024
    7.3
    High

    CVE-2024-40509

    Last Modified: 29 Sept 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMFinDev.asmx function.

    Published:27 Sept 2024
    7.3
    High

    CVE-2024-40508

    Last Modified: 23 Apr 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMConference.asmx function.

    Published:26 Sept 2024
    7.3
    High

    CVE-2024-40507

    Last Modified: 23 Apr 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMPersonnel.asmx function.

    Published:26 Sept 2024
    7.3
    High

    CVE-2024-40506

    Last Modified: 23 Apr 2025

    Cross Site Scripting vulnerability in openPetra v.2023.02 allows a remote attacker to obtain sensitive information via the serverMHospitality.asmx function.

    Published:26 Sept 2024
    9.8
    Critical

    CVE-2024-40498

    Last Modified: 15 Apr 2026

    SQL Injection vulnerability in PuneethReddyHC Online Shopping sysstem advanced v.1.0 allows an attacker to execute arbitrary code via the register.php

    Published:5 Aug 2024
    7.1
    High

    CVE-2024-40492

    Last Modified: 9 Jul 2025

    Cross Site Scripting vulnerability in Heartbeat Chat v.15.2.1 allows a remote attacker to execute arbitrary code via the setname function.

    Published:17 Jul 2024
    9.1
    Critical

    CVE-2024-40457

    Last Modified: 15 Apr 2026

    No-IP Dynamic Update Client (DUC) v3.x uses cleartext credentials that may occur on a command line or in a file. NOTE: the vendor's position is that cleartext in /etc/default/noip-duc is recommended and is the intentional behavior.

    Published:12 Sept 2024
    9.8
    Critical

    CVE-2024-40453

    Last Modified: 23 Aug 2024

    squirrellyjs squirrelly v9.0.0 and fixed in v.9.0.1 was discovered to contain a code injection vulnerability via the component options.varName.

    Published:21 Aug 2024
    7.3
    High

    CVE-2024-40445

    Last Modified: 23 Jun 2025

    A directory traversal vulnerability in forkosh Mime TeX before version 1.77 allows attackers on Windows systems to read or append arbitrary files by manipulating crafted input paths.

    Published:22 Apr 2025
    4.3
    Medium

    CVE-2024-40443

    Last Modified: 16 Apr 2025

    SQL Injection vulnerability in Simple Laboratory Management System using PHP and MySQL v.1.0 allows a remote attacker to cause a denial of service via the delete_users function in the Useres.php

    Published:13 Nov 2024
    6.5
    Medium

    CVE-2024-40432

    Last Modified: 15 Apr 2026

    A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SFFDISK_DEVICE_COMMAND control of the SD card reader driver allows a privileged attacker to crash the OS.

    Published:23 Oct 2024
    8.8
    High

    CVE-2024-40431

    Last Modified: 15 Apr 2026

    A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SCSI_PASS_THROUGH control of the SD card reader driver allows an attacker to write to predictable kernel memory locations, even as a low-privileged user.

    Published:23 Oct 2024
    9.1
    Critical

    CVE-2024-40422

    Last Modified: 4 Aug 2024

    The snapshot_path parameter in the /api/get-browser-snapshot endpoint in stitionai devika v1 is susceptible to a path traversal attack. An attacker can manipulate the snapshot_path parameter to traverse directories and access sensitive files on the server. This can potentially lead to unauthorized access to critical system files and compromise the confidentiality and integrity of the system.

    Source:Alperen Ergel
    Published:24 Jul 2024
    8.2
    High

    CVE-2024-40348

    Last Modified: 8 Jul 2025

    An issue in the component /api/swaggerui/static of Bazaar v1.4.3 allows unauthenticated attackers to execute a directory traversal.

    Published:20 Jul 2024
    9.8
    Critical

    CVE-2024-40324

    Last Modified: 21 Nov 2024

    A CRLF injection vulnerability in E-Staff v5.1 allows attackers to insert Carriage Return (CR) and Line Feed (LF) characters into input fields, leading to HTTP response splitting and header manipulation.

    Published:25 Jul 2024
    7.2
    High

    CVE-2024-40318

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in Webkul Qloapps v1.6.0.0 allows attackers to execute arbitrary code via uploading a crafted file.

    Published:25 Jul 2024
    Unknown

    CVE-2024-40275

    https://github.com/burjoy/CVE-2024-40275_Scanner

    8.8
    High

    CVE-2024-40119

    Last Modified: 15 Apr 2026

    Nepstech Wifi Router xpon (terminal) model NTPL-Xpon1GFEVN v.1.0 Firmware V2.0.1 contains a Cross-Site Request Forgery (CSRF) vulnerability in the password change function, which allows remote attackers to change the admin password without the user's consent, leading to a potential account takeover.

    Published:17 Jul 2024
    4.8
    Medium

    CVE-2024-40111

    Last Modified: 21 Apr 2025

    A persistent (stored) cross-site scripting (XSS) vulnerability has been identified in Automad 2.0.0-alpha.4. This vulnerability enables an attacker to inject malicious JavaScript code into the template body. The injected code is stored within the flat file CMS and is executed in the browser of any user visiting the forum.

    Published:23 Aug 2024
    9.8
    Critical

    CVE-2024-40110

    Last Modified: 23 Apr 2025

    Sourcecodester Poultry Farm Management System v1.0 contains an Unauthenticated Remote Code Execution (RCE) vulnerability via the productimage parameter at /farm/product.php.

    Published:12 Jul 2024
    5.3
    Medium

    CVE-2024-40094

    Last Modified: 15 Apr 2026

    GraphQL Java (aka graphql-java) before 21.5 does not properly consider ExecutableNormalizedFields (ENFs) as part of preventing denial of service via introspection queries. 20.9 and 19.11 are also fixed versions.

    Published:30 Jul 2024
    Unknown

    CVE-2024-40080

    https://github.com/perras/CVE-2024-40080

    9.9
    Critical

    CVE-2024-39943

    Last Modified: 21 Nov 2024

    rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have Upload permissions). This occurs because a shell is used to execute df (i.e., with execSync instead of spawnSync in child_process in Node.js).

    Published:4 Jul 2024
    9.9
    Critical

    CVE-2024-39930

    Last Modified: 2 Jul 2025

    The built-in SSH server of Gogs through 0.13.0 allows argument injection in internal/ssh/ssh.go, leading to remote code execution. Authenticated attackers can exploit this by opening an SSH connection and sending a malicious --split-string env request if the built-in SSH server is activated. Windows installations are unaffected.

    Source:cybersploit
    Published:4 Jul 2024
    5.4
    Medium

    CVE-2024-39929

    Last Modified: 10 Jul 2025

    Exim through 4.97.1 misparses a multiline RFC 2231 header filename, and thus remote attackers can bypass a $mime_filename extension-blocking protection mechanism, and potentially deliver executable attachments to the mailboxes of end users.

    Published:4 Jul 2024
    8.8
    High

    CVE-2024-39924

    Last Modified: 10 Jul 2025

    An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been identified in the authentication and authorization process of the endpoint responsible for altering the metadata of an emergency access. It permits an attacker with granted emergency access to escalate their privileges by changing the access level and modifying the wait time. Consequently, the attacker can gain full control over the vault (when only intended to have read access) while bypassing the necessary wait period.

    Published:13 Sept 2024
    9.8
    Critical

    CVE-2024-39914

    Last Modified: 29 Sept 2025

    FOG is a cloning/imaging/rescue suite/inventory management system. Prior to 1.5.10.34, packages/web/lib/fog/reportmaker.class.php in FOG was affected by a command injection via the filename parameter to /fog/management/export.php. This vulnerability is fixed in 1.5.10.34.

    Published:12 Jul 2024
    4.3
    Medium

    CVE-2024-39908

    Last Modified: 3 Nov 2025

    REXML is an XML toolkit for Ruby. The REXML gem before 3.3.1 has some DoS vulnerabilities when it parses an XML that has many specific characters such as `<`, `0` and `%>`. If you need to parse untrusted XMLs, you many be impacted to these vulnerabilities. The REXML gem 3.3.2 or later include the patches to fix these vulnerabilities. Users are advised to upgrade. Users unable to upgrade should avoid parsing untrusted XML strings.

    Published:16 Jul 2024
    9.8
    Critical

    CVE-2024-39844

    Last Modified: 15 Apr 2026

    In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.

    Published:3 Jul 2024
    8.8
    High

    CVE-2024-39840

    Last Modified: 15 Apr 2026

    Factorio before 1.1.101 allows a crafted server to execute arbitrary code on clients via a custom map that leverages the ability of certain Lua base module functions to execute bytecode and generate fake objects.

    Published:29 Jun 2024
    7.5
    High

    CVE-2024-39722

    Last Modified: 13 May 2025

    An issue was discovered in Ollama before 0.1.46. It exposes which files exist on the server on which it is deployed via path traversal in the api/push route.

    Published:31 Oct 2024
    Items Per Page