7.5
    High

    CVE-2024-39719

    Last Modified: 13 May 2025

    An issue was discovered in Ollama through 0.3.14. File existence disclosure can occur via api/create. When calling the CreateModel route with a path parameter that does not exist, it reflects the "File does not exist" error message to the attacker, providing a primitive for file existence on the server.

    Published:31 Oct 2024
    7.2
    High

    CVE-2024-39717

    Last Modified: 30 Oct 2025

    The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin. (Tenant level users do not have this privilege). The “Change Favicon” (Favorite Icon) option can be mis-used to upload a malicious file ending with .png extension to masquerade as image file. This is possible only after a user with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin has successfully authenticated and logged in.

    Published:22 Aug 2024
    8.6
    High

    CVE-2024-39713

    Last Modified: 6 Sept 2024

    A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.

    Published:5 Aug 2024
    10
    Critical

    CVE-2024-39700

    Last Modified: 4 Sept 2025

    JupyterLab extension template is a `copier` template for JupyterLab extensions. Repositories created using this template with `test` option include `update-integration-tests.yml` workflow which has an RCE vulnerability. Extension authors hosting their code on GitHub are urged to upgrade the template to the latest version. Users who made changes to `update-integration-tests.yml`, accept overwriting of this file and re-apply your changes later. Users may wish to temporarily disable GitHub Actions while working on the upgrade. We recommend rebasing all open pull requests from untrusted users as actions may run using the version from the `main` branch at the time when the pull request was created. Users who are upgrading from template version prior to 4.3.0 may wish to leave out proposed changes to the release workflow for now as it requires additional configuration.

    Published:16 Jul 2024
    7.5
    High

    CVE-2024-39689

    Last Modified: 15 Feb 2025

    Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi starting in 2021.5.30 and prior to 2024.7.4 recognized root certificates from `GLOBALTRUST`. Certifi 2024.7.04 removes root certificates from `GLOBALTRUST` from the root store. These are in the process of being removed from Mozilla's trust store. `GLOBALTRUST`'s root certificates are being removed pursuant to an investigation which identified "long-running and unresolved compliance issues."

    Published:3 Jul 2024
    7.5
    High

    CVE-2024-39614

    Last Modified: 4 Nov 2025

    An issue was discovered in Django 5.0 before 5.0.7 and 4.2 before 4.2.14. get_supported_language_variant() was subject to a potential denial-of-service attack when used with very long strings containing specific characters.

    Published:9 Jul 2024
    9.8
    Critical

    CVE-2024-39309

    Last Modified: 15 Apr 2026

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. A vulnerability in versions prior to 6.5.7 and 7.1.0 allows SQL injection when Parse Server is configured to use the PostgreSQL database. The algorithm to detect SQL injection has been improved in versions 6.5.7 and 7.1.0. No known workarounds are available.

    Published:1 Jul 2024
    Low

    CVE-2024-39306

    Last Modified: 19 Aug 2024

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-39304. Reason: This candidate is a duplicate of CVE-2024-39304. Notes: All CVE users should reference CVE-2024-39304 instead of this candidate. This CVE was issued to a vulnerability that is dependent on CVE-2024-39304. According to rule 4.2.15 of the CVE CNA rules, "CNAs MUST NOT assign a different CVE ID to a Vulnerability that is fully interdependent with another Vulnerability. The Vulnerabilities are effectively the same single Vulnerability and MUST use one CVE ID."

    Published:21 Jun 2024
    8.8
    High

    CVE-2024-39304

    Last Modified: 13 Apr 2025

    ChurchCRM is an open-source church management system. Versions of the application prior to 5.9.2 are vulnerable to an authenticated SQL injection due to an improper sanitization of user input. Authentication is required, but no elevated privileges are necessary. This allows attackers to inject SQL statements directly into the database query due to inadequate sanitization of the EID parameter in in a GET request to `/GetText.php`. Version 5.9.2 patches the issue.

    Source:Sanan Qasimzada
    Published:26 Jul 2024
    9.8
    Critical

    CVE-2024-39250

    Last Modified: 8 Jul 2025

    EfroTech Timetrax v8.3 was discovered to contain an unauthenticated SQL injection vulnerability via the q parameter in the search web interface.

    Published:22 Jul 2024
    5.4
    Medium

    CVE-2024-39248

    Last Modified: 18 Mar 2025

    A cross-site scripting (XSS) vulnerability in SimpCMS v0.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Title field at /admin.php.

    Published:3 Jul 2024
    5.3
    Medium

    CVE-2024-39211

    Last Modified: 15 Apr 2026

    Kaiten 57.128.8 allows remote attackers to enumerate user accounts via a crafted POST request, because a login response contains a user_email field only if the user account exists.

    Published:4 Jul 2024
    7.5
    High

    CVE-2024-39210

    Last Modified: 21 Nov 2024

    Best House Rental Management System v1.0 was discovered to contain an arbitrary file read vulnerability via the Page parameter at index.php. This vulnerability allows attackers to read arbitrary PHP files and access other sensitive information within the application.

    Published:5 Jul 2024
    9.8
    Critical

    CVE-2024-39205

    Last Modified: 15 Apr 2026

    An issue in pyload-ng v0.5.0b3.dev85 running under python3.11 or below allows attackers to execute arbitrary code via a crafted HTTP request.

    Published:28 Oct 2024
    6.1
    Medium

    CVE-2024-39203

    Last Modified: 13 Mar 2025

    A cross-site scripting (XSS) vulnerability in the Backend Theme Management module of Z-BlogPHP v1.7.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Published:8 Jul 2024
    Unknown

    CVE-2024-39199

    https://github.com/phtcloud-dev/CVE-2024-39199

    5.4
    Medium

    CVE-2024-39143

    Last Modified: 13 Apr 2025

    A stored cross-site scripting (XSS) vulnerability exists in ResidenceCMS 2.10.1 that allows a low-privilege user to create malicious property content with HTML inside which acts as a stored XSS payload.

    Source:Jeremia Geraldi Sihombing
    Published:2 Jul 2024
    5.4
    Medium

    CVE-2024-39123

    Last Modified: 9 Jul 2025

    In janeczku Calibre-Web 0.6.0 to 0.6.21, the edit_book_comments function is vulnerable to Cross Site Scripting (XSS) due to improper sanitization performed by the clean_string function. The vulnerability arises from the way the clean_string function handles HTML sanitization.

    Published:19 Jul 2024
    6.1
    Medium

    CVE-2024-39090

    Last Modified: 5 Apr 2025

    The PHPGurukul Online Shopping Portal Project version 2.0 contains a vulnerability that allows Cross-Site Request Forgery (CSRF) to lead to Stored Cross-Site Scripting (XSS). An attacker can exploit this vulnerability to execute arbitrary JavaScript code in the context of a user's session, potentially leading to account takeover.

    Published:18 Jul 2024
    4.2
    Medium

    CVE-2024-39081

    Last Modified: 17 Mar 2025

    An issue in SMART TYRE CAR & BIKE v4.2.0 allows attackers to perform a man-in-the-middle attack via Bluetooth communications.

    Published:18 Sept 2024
    7.8
    High

    CVE-2024-39069

    Last Modified: 15 Apr 2026

    An issue in ifood Order Manager v3.35.5 'Gestor de Peddios.exe' allows attackers to execute arbitrary code via a DLL hijacking attack.

    Published:9 Jul 2024
    5.4
    Medium

    CVE-2024-39031

    Last Modified: 5 Jun 2025

    In Silverpeas Core <= 6.3.5, in Mes Agendas, a user can create new events and add them to their calendar. Additionally, users can invite others from the same domain, including administrators, to these events. A standard user can inject an XSS payload into the "Titre" and "Description" fields when creating an event and then add the administrator or any user to the event. When the invited user (victim) views their own profile, the payload will be executed on their side, even if they do not click on the event.

    Published:9 Jul 2024
    8.8
    High

    CVE-2024-39024

    Last Modified: 7 Aug 2026

    In Packetfence 13.2.0, the WebGui interface setting allows authenticated remote code execution.

    Published:6 Aug 2026
    6.5
    Medium

    CVE-2024-38998

    Last Modified: 28 Jan 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published:1 Jul 2024
    9.8
    Critical

    CVE-2024-38944

    Last Modified: 13 Apr 2025

    An issue in Intelight X-1L Traffic controller Maxtime v.1.9.6 allows a remote attacker to execute arbitrary code via the /cgi-bin/generateForm.cgi?formID=142 component.

    Source:Andrew Lemon/Red Threat
    Published:22 Jul 2024
    8.1
    High

    CVE-2024-38856

    Last Modified: 23 Oct 2025

    Incorrect Authorization vulnerability in Apache OFBiz. This issue affects Apache OFBiz: through 18.12.14. Users are recommended to upgrade to version 18.12.15, which fixes the issue. Unauthenticated endpoints could allow execution of screen rendering code of screens if some preconditions are met (such as when the screen definitions don't explicitly check user's permissions because they rely on the configuration of their endpoints).

    Published:5 Aug 2024
    5.3
    Medium

    CVE-2024-38828

    Last Modified: 15 Apr 2026

    Spring MVC controller methods with an @RequestBody byte[] method parameter are vulnerable to a DoS attack.

    Published:18 Nov 2024
    9.1
    Critical

    CVE-2024-38821

    Last Modified: 15 Apr 2026

    Spring WebFlux applications that have Spring Security authorization rules on static resources can be bypassed under certain circumstances. For this to impact an application, all of the following must be true: * It must be a WebFlux application * It must be using Spring's static resources support * It must have a non-permitAll authorization rule applied to the static resources support

    Published:28 Oct 2024
    3.1
    Low

    CVE-2024-38820

    Last Modified: 29 Nov 2024

    The fix for CVE-2022-22968 made disallowedFields patterns in DataBinder case insensitive. However, String.toLowerCase() has some Locale dependent exceptions that could potentially result in fields not protected as expected.

    Published:18 Oct 2024
    7.5
    High

    CVE-2024-38819

    Last Modified: 15 Apr 2026

    Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.

    Published:17 Oct 2024
    7.5
    High

    CVE-2024-38816

    Last Modified: 15 Apr 2026

    Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running. Specifically, an application is vulnerable when both of the following are true: * the web application uses RouterFunctions to serve static resources * resource handling is explicitly configured with a FileSystemResource location However, malicious requests are blocked and rejected when any of the following is true: * the Spring Security HTTP Firewall https://docs.spring.io/spring-security/reference/servlet/exploits/firewall.html  is in use * the application runs on Tomcat or Jetty

    Published:13 Sept 2024
    8.5
    High

    CVE-2024-38793

    Last Modified: 13 Sept 2024

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.

    Published:29 Aug 2024
    Low

    CVE-2024-38537

    Last Modified: 2 Sept 2025

    Fides is an open-source privacy engineering platform. `fides.js`, a client-side script used to interact with the consent management features of Fides, used the `polyfill.io` domain in a very limited edge case, when it detected a legacy browser such as IE11 that did not support the fetch standard. Therefore it was possible for users of legacy, pre-2017 browsers who navigate to a page serving `fides.js` to download and execute malicious scripts from the `polyfill.io` domain when the domain was compromised and serving malware. No exploitation of `fides.js` via `polyfill.io` has been identified as of time of publication. The vulnerability has been patched in Fides version `2.39.1`. Users are advised to upgrade to this version or later to secure their systems against this threat. On Thursday, June 27, 2024, Cloudflare and Namecheap intervened at a domain level to ensure `polyfill.io` and its subdomains could not resolve to the compromised service, rendering this vulnerability unexploitable. Prior to the domain level intervention, there were no server-side workarounds and the confidentiality, integrity, and availability impacts of this vulnerability were high. Clients could ensure they were not affected by using a modern browser that supported the fetch standard.

    Published:2 Jul 2024
    Low

    CVE-2024-38526

    Last Modified: 15 Apr 2026

    pdoc provides API Documentation for Python Projects. Documentation generated with `pdoc --math` linked to JavaScript files from polyfill.io. The polyfill.io CDN has been sold and now serves malicious code. This issue has been fixed in pdoc 14.5.1.

    Published:25 Jun 2024
    9.8
    Critical

    CVE-2024-38476

    Last Modified: 3 Nov 2025

    Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend applications whose response headers are malicious or exploitable. Users are recommended to upgrade to version 2.4.60, which fixes this issue.

    Published:1 Jul 2024
    9.1
    Critical

    CVE-2024-38475

    Last Modified: 17 Nov 2025

    Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure. Substitutions in server context that use a backreferences or variables as the first segment of the substitution are affected.  Some unsafe RewiteRules will be broken by this change and the rewrite flag "UnsafePrefixStat" can be used to opt back in once ensuring the substitution is appropriately constrained.

    Published:1 Jul 2024
    8.1
    High

    CVE-2024-38473

    Last Modified: 1 Jul 2025

    Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are recommended to upgrade to version 2.4.60, which fixes this issue.

    Published:1 Jul 2024
    7.5
    High

    CVE-2024-38472

    Last Modified: 1 Jul 2025

    SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.

    Published:1 Jul 2024
    8.4
    High

    CVE-2024-38399

    Last Modified: 16 Oct 2024

    Memory corruption while processing user packets to generate page faults.

    Published:7 Oct 2024
    9.8
    Critical

    CVE-2024-38396

    Last Modified: 20 Jun 2025

    An issue was discovered in iTerm2 3.5.x before 3.5.2. Unfiltered use of an escape sequence to report a window title, in combination with the built-in tmux integration feature (enabled by default), allows an attacker to inject arbitrary code into the terminal, a different vulnerability than CVE-2024-38395.

    Published:16 Jun 2024
    10
    Critical

    CVE-2024-38366

    Last Modified: 21 Nov 2024

    trunk.cocoapods.org is the authentication server for the CoacoaPods dependency manager. The part of trunk which verifies whether a user has a real email address on signup used a rfc-822 library which executes a shell command to validate the email domain MX records validity. It works via an DNS MX. This lookup could be manipulated to also execute a command on the trunk server, effectively giving root access to the server and the infrastructure. This issue was patched server-side with commit 001cc3a430e75a16307f5fd6cdff1363ad2f40f3 in September 2023. This RCE triggered a full user-session reset, as an attacker could have used this method to write to any Podspec in trunk.

    Published:1 Jul 2024
    7.3
    High

    CVE-2024-38355

    Last Modified: 15 Apr 2026

    Socket.IO is an open source, real-time, bidirectional, event-based, communication framework. A specially crafted Socket.IO packet can trigger an uncaught exception on the Socket.IO server, thus killing the Node.js process. This issue is fixed by commit `15af22fc22` which has been included in `[email protected]` (released in May 2023). The fix was backported in the 2.x branch as well with commit `d30630ba10`. Users are advised to upgrade. Users unable to upgrade may attach a listener for the "error" event to catch these errors.

    Published:19 Jun 2024
    6.5
    Medium

    CVE-2024-38200

    Last Modified: 13 Apr 2025

    Microsoft Office Spoofing Vulnerability

    Source:Metin Yunus Kandemir
    Published:8 Aug 2024
    7.8
    High

    CVE-2024-38193

    Last Modified: 9 May 2025

    Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

    Source:Milad karimi
    Published:13 Aug 2024
    8.8
    High

    CVE-2024-38144

    Last Modified: 10 Jul 2025

    Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability

    Published:13 Aug 2024
    4.2
    Medium

    CVE-2024-38143

    Last Modified: 10 Jul 2025

    Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability

    Published:13 Aug 2024
    7.8
    High

    CVE-2024-38127

    Last Modified: 10 Jul 2025

    Windows Hyper-V Elevation of Privilege Vulnerability

    Published:13 Aug 2024
    9
    Critical

    CVE-2024-38124

    Last Modified: 9 Jun 2026

    Windows Netlogon Elevation of Privilege Vulnerability

    Published:8 Oct 2024
    7.5
    High

    CVE-2024-38112

    Last Modified: 10 Feb 2026

    Windows MSHTML Platform Spoofing Vulnerability

    Published:9 Jul 2024
    7.8
    High

    CVE-2024-38080

    Last Modified: 10 Feb 2026

    Windows Hyper-V Elevation of Privilege Vulnerability

    Published:9 Jul 2024
    Items Per Page