1441
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
mtd: spinand: winbond: Fix 512GW, 01GW, 01JW and 02JW ECC information
These four chips:
* W25N512GW
* W25N01GW
* W25N01JW
* W25N0…
|
NVD-CWE-noinfo
|
CVE-2024-56771
|
2025-01-11 02:28 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1442
|
7.8 |
HIGH
Local
|
qualcomm
|
fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware qcm4490_firmware qcs4490_firmware snapdragon_8_gen_3_mobile_firmware snapdragon_8\+_gen_1_mobile_firmwa…
|
Memory corruption while processing IPA statistics, when there are no active clients registered.
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-21464
|
2025-01-11 02:22 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1443
|
5.5 |
MEDIUM
Local
|
qualcomm
|
qam8255p_firmware qam8295p_firmware qam8650p_firmware qam8775p_firmware qamsrv1h_firmware qca6595_firmware qca6595au_firmware qca6696_firmware qca6698aq_firmware sa8255p_fi…
|
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-23366
|
2025-01-11 02:20 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1444
|
- |
|
-
|
-
|
Vaultwarden v1.32.5 was discovered to contain an authenticated reflected cross-site scripting (XSS) vulnerability via the component /api/core/mod.rs.
|
-
|
CVE-2024-55226
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1445
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Entity Form Steps allows Cross-Site Scripting (XSS).This issue affects Entity Form Steps: …
|
-
|
CVE-2024-13305
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1446
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal OAuth & OpenID Connect Single Sign On – SSO (OAuth/OIDC Client) allows Cross-Site Scriptin…
|
-
|
CVE-2024-13301
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1447
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Tarte au Citron allows Cross-Site Scripting (XSS).This issue affects Tarte au Citron: from…
|
-
|
CVE-2024-13298
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1448
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Tooltip allows Cross-Site Scripting (XSS).This issue affects Tooltip: from 0.0.0 before 1.…
|
-
|
CVE-2024-13292
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1449
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Cookiebot + GTM allows Cross-Site Scripting (XSS).This issue affects Cookiebot + GTM: from…
|
-
|
CVE-2024-13289
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1450
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Views SVG Animation allows Cross-Site Scripting (XSS).This issue affects Views SVG Animati…
|
-
|
CVE-2024-13287
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|