|
312471
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_config.php?action=save&var_id=32
|
CWE-352
Origin Validation Error
|
CVE-2024-42617
|
2024-08-21 22:09 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312472
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_editor.php
|
CWE-352
Origin Validation Error
|
CVE-2024-42621
|
2024-08-21 21:50 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312473
|
7.5 |
HIGH
Network
|
floraison
|
fugit
|
fugit contains time tools for flor and the floraison group. The fugit "natural" parser, that turns "every wednesday at 5pm" into "0 17 * * 3", accepted any length of input and went on attempting to p…
|
NVD-CWE-noinfo
|
CVE-2024-43380
|
2024-08-21 21:38 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312474
|
3.1 |
LOW
Network
|
trufflesecurity
|
trufflehog
|
TruffleHog is a secrets scanning tool. Prior to v3.81.9, this vulnerability allows a malicious actor to craft data in a way that, when scanned by specific detectors, could trigger the detector to mak…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-43379
|
2024-08-21 21:37 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312475
|
9.8 |
CRITICAL
Network
|
jielink\+_jsotc2016_project
|
jielink\+_jsotc2016
|
A vulnerability has been found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805 and classified as problematic. Affected by this vulnerability is an unknown functionali…
|
NVD-CWE-Other
|
CVE-2024-7921
|
2024-08-21 21:34 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312476
|
9.8 |
CRITICAL
Network
|
microcks
|
microcks
|
In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access.
|
NVD-CWE-noinfo
|
CVE-2024-44076
|
2024-08-21 21:33 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312477
|
9.8 |
CRITICAL
Network
|
jielink\+_jsotc2016_project
|
jielink\+_jsotc2016
|
A vulnerability, which was classified as problematic, was found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805. Affected is an unknown function of the file /Report/P…
|
NVD-CWE-Other
|
CVE-2024-7920
|
2024-08-21 21:31 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312478
|
9.8 |
CRITICAL
Network
|
-
|
-
|
The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider plugin is vulnerable to PHP Object Injection via de…
|
-
|
CVE-2024-5335
|
2024-08-21 21:30 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312479
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Fix command stats access after free
Command may fail while driver is reloading and can't accept FW commands
till comman…
|
-
|
CVE-2022-48884
|
2024-08-21 21:30 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312480
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5e: IPoIB, Block PKEY interfaces with less rx queues than parent
A user is able to configure an arbitrary number of rx que…
|
-
|
CVE-2022-48883
|
2024-08-21 21:30 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|