1571
|
- |
|
-
|
-
|
A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.7.2, macOS Sequoia 15.2, macOS Ventura 13.7.2. An app may be able to overwrite arbitrary files.
|
-
|
CVE-2024-54520
|
2025-01-29 02:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1572
|
- |
|
-
|
-
|
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.2, tvOS 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sonoma 14.7.2, macOS Sequoia 15.2. A…
|
-
|
CVE-2024-54468
|
2025-01-29 02:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1573
|
- |
|
-
|
-
|
gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.
|
-
|
CVE-2024-50664
|
2025-01-29 02:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1574
|
- |
|
-
|
-
|
KWHotel 0.47 is vulnerable to CSV Formula Injection in the invoice adding function.
|
-
|
CVE-2023-46401
|
2025-01-29 02:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1575
|
- |
|
-
|
-
|
Hyperbridge is a hyper-scalable coprocessor for verifiable, cross-chain interoperability. A critical vulnerability was discovered in the ismp-grandpa crate, that allowed a malicious prover easily con…
|
CWE-347 CWE-670
Improper Verification of Cryptographic Signature Always-Incorrect Control Flow Implementation
|
CVE-2025-24800
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1576
|
- |
|
-
|
-
|
In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local P…
|
CWE-114
Process Control
|
CVE-2025-23385
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1577
|
- |
|
-
|
-
|
Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. The file upload feature allows to upload arbitrary files, including html and svg. Both can contain…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2025-23213
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1578
|
- |
|
-
|
-
|
Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. The external storage feature allows any user to enumerate the name and content of files on the ser…
|
CWE-200
Information Exposure
|
CVE-2025-23212
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1579
|
- |
|
-
|
-
|
Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. A Jinja2 SSTI vulnerability allows any user to execute commands on the server. In the case of the …
|
CWE-1336
Improper Neutralization of Special Elements Used in a Template Engine
|
CVE-2025-23211
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1580
|
- |
|
-
|
-
|
Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. An attacker with an account on an affected CVAT instance is able to run arbitrary code in…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-23045
|
2025-01-29 01:15 |
2025-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|