241
|
- |
|
-
|
-
|
Off-by-one error in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the image …
New
|
-
|
CVE-2024-48854
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
242
|
- |
|
-
|
-
|
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When Git asks for credentials vi…
New
|
CWE-116 CWE-147 CWE-150
Improper Encoding or Escaping of Output Improper Neutralization of Escape, Meta, or Control Sequences
|
CVE-2024-50349
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
243
|
- |
|
-
|
-
|
Git Credential Manager (GCM) is a secure Git credential helper built on .NET that runs on Windows, macOS, and Linux. The Git credential protocol is text-based over standard input/output, and consists…
New
|
CWE-200
Information Exposure
|
CVE-2024-50338
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
244
|
- |
|
-
|
-
|
Open source machine learning framework. A vulnerability has been identified in Rasa that enables an attacker who has the ability to load a maliciously crafted model remotely into a Rasa instance to a…
New
|
CWE-94 CWE-502
Code Injection Deserialization of Untrusted Data
|
CVE-2024-49375
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
245
|
- |
|
-
|
-
|
.NET Elevation of Privilege Vulnerability
New
|
CWE-379
Creation of Temporary File in Directory with Incorrect Permissions
|
CVE-2025-21173
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
246
|
6.5 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in the HAL Console in the Wildfly component, which does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output used as a web page that is ser…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-23366
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
247
|
- |
|
-
|
-
|
Authenticated command injection vulnerability in the command line interface of a network management service. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary…
New
|
-
|
CVE-2025-23052
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
248
|
- |
|
-
|
-
|
An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated user to…
New
|
-
|
CVE-2025-23051
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
249
|
- |
|
-
|
-
|
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. NOTE: The Realtime WYSIWYG Editor extension was **experimental**, and thus **not recommended**…
New
|
CWE-862
Missing Authorization
|
CVE-2025-23025
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
250
|
8.8 |
HIGH
Network
|
-
|
-
|
Windows Telephony Service Remote Code Execution Vulnerability
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2025-21417
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|