2681
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
RDMA/srpt: Support specifying the srpt_service_guid parameter
Make loading ib_srpt with this parameter set work. The current beha…
|
-
|
CVE-2024-26744
|
2024-11-7 06:35 |
2024-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2682
|
- |
|
-
|
-
|
There is an out-of-bounds read vulnerability in some Hikvision NVRs. An authenticated attacker could exploit this vulnerability by sending specially crafted messages to a vulnerable device, causing a…
|
-
|
CVE-2024-29948
|
2024-11-7 06:35 |
2024-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2683
|
- |
|
-
|
-
|
'Yahoo! JAPAN' App for Android v2.3.1 to v3.161.1 and 'Yahoo! JAPAN' App for iOS v3.2.2 to v4.109.0 contain a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary scri…
|
-
|
CVE-2024-28895
|
2024-11-7 06:35 |
2024-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2684
|
- |
|
-
|
-
|
In multiple locations, there is a possible way for apps to access cross-user message data due to a missing permission check. This could lead to local information disclosure with no additional executi…
|
-
|
CVE-2023-40113
|
2024-11-7 06:35 |
2024-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2685
|
6.1 |
MEDIUM
Network
|
shibulijack
|
cj_change_howdy
|
Cross-Site Request Forgery (CSRF) vulnerability in Shibu Lijack a.K.A CyberJack CJ Change Howdy allows Stored XSS.This issue affects CJ Change Howdy: from n/a through 3.3.1.
|
CWE-352
Origin Validation Error
|
CVE-2024-49223
|
2024-11-7 05:55 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2686
|
6.1 |
MEDIUM
Network
|
julianweinert
|
cslider
|
Cross-Site Request Forgery (CSRF) vulnerability in Julian Weinert // cs&m cSlider allows Stored XSS.This issue affects cSlider: from n/a through 2.4.2.
|
CWE-352
Origin Validation Error
|
CVE-2024-49221
|
2024-11-7 05:54 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2687
|
9.8 |
CRITICAL
Network
madirisalmanaashish
|
adding_drop_down_roles_in_registration
|
Incorrect Privilege Assignment vulnerability in Madiri Salman Aashish Adding drop down roles in registration allows Privilege Escalation.This issue affects Adding drop down roles in registration: fro…
|
NVD-CWE-Other
|
CVE-2024-49217
|
2024-11-7 05:53 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2688
|
8.8 |
HIGH
Network
|
themexpo
|
rs-members
|
Incorrect Privilege Assignment vulnerability in themexpo RS-Members allows Privilege Escalation.This issue affects RS-Members: from n/a through 1.0.3.
|
NVD-CWE-Other
|
CVE-2024-49219
|
2024-11-7 05:45 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2689
|
6.1 |
MEDIUM
Network
|
cookie-scanner
|
cookie_scanner
|
Cross-Site Request Forgery (CSRF) vulnerability in Cookie Scanner – Nikel Schubert Cookie Scanner allows Stored XSS.This issue affects Cookie Scanner: from n/a through 1.1.
|
CWE-352
Origin Validation Error
|
CVE-2024-49220
|
2024-11-7 05:41 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2690
|
6.1 |
MEDIUM
Network
|
arifnezami
|
better_author_bio
|
Cross-Site Request Forgery (CSRF) vulnerability in Arif Nezami Better Author Bio allows Cross-Site Scripting (XSS).This issue affects Better Author Bio: from n/a through 2.7.10.11.
|
CWE-352
Origin Validation Error
|
CVE-2024-49229
|
2024-11-7 05:40 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|