7.5

CVSS3.1

CVE-2023-46565 - gobgp: buffer overflow via handlingError() function in pkg/server/fsm.go

Buffer Overflow vulnerability in osrg gobgp commit 419c50dfac578daa4d11256904d0dc182f1a9b22 allows a remote attacker to cause a denial of service via the handlingError function in pkg/server/fsm.go.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-31820 -

An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker to execute arbitrary code via the getLangFolderForEdit method of the Languages.php component.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: Sept. 23, 2025, 1:22 a.m.

7.5

CVSS3.1

CVE-2024-34050 -

Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return uint64(b[2])<<16 | uint64(b[1])<<8 | uint64(b[0])" in reader.go.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: June 27, 2025, 3:31 p.m.

7.1

CVSS3.1

CVE-2023-52723 -

In KDE libksieve before 23.03.80, kmanagesieve/session.cpp places a cleartext password in server logs because a username variable is accidentally given a password value.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2023-50434 -

emdns_resolve_raw in emdns.c in emdns through fbd1eef calls strlen with an input that may not be '\0' terminated, leading to a stack-based buffer over-read. This can be triggered by a remote adversary that can send DNS requests to the emdns server. The impact could vary depending on the system libr…

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-33269 -

SQL Injection vulnerability in Prestaddons flashsales 1.9.7 and before allows an attacker to run arbitrary SQL commands via the FsModel::getFlashSales method.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-33903 -

In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians or bicycles, in part because the collision sensor function is not exposed to the Blueprint library.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.6

CVSS3.1

CVE-2024-33905 -

In Telegram WebK before 2.0.0 (488), a crafted Mini Web App allows XSS via the postMessage web_app_open_link event type.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8

CVSS3.1

CVE-2024-33438 -

File Upload vulnerability in CubeCart before 6.5.5 allows an authenticated user to execute arbitrary code via a crafted .phar file.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 16, 2025, 6:44 p.m.

4.4

CVSS3.1

CVE-2024-33401 -

Cross Site Scripting vulnerability in DedeCMS v.5.7.113 allows a remote attacker to run arbitrary code via the mnum parameter.

πŸ“… Published: April 29, 2024, midnight πŸ”„ Last Modified: April 1, 2025, 3:12 p.m.
Total resulsts: 349182
Page 10141 of 34,919
Β« previous page Β» next page
Filters