4.3

CVSS3.1

CVE-2023-4509 -

It is possible for an API key to be logged in clear text in the audit log file after an invalid login attempt.

πŸ“… Published: April 17, 2024, 11:10 p.m. πŸ”„ Last Modified: July 2, 2025, 6:09 p.m.

8.1

CVSS3.1

CVE-2023-4235 - Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decod…

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver_report() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound…

πŸ“… Published: April 17, 2024, 10:54 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

8.1

CVSS3.1

CVE-2023-4234 - Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decod…

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_submit_report() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound …

πŸ“… Published: April 17, 2024, 10:53 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

8.1

CVSS3.1

CVE-2023-4233 - Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the sms_d…

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the sms_decode_address_field() function during the SMS PDU decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS.

πŸ“… Published: April 17, 2024, 10:50 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

8.1

CVSS3.1

CVE-2023-4232 - Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decod…

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_status_report() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound …

πŸ“… Published: April 17, 2024, 10:49 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

5

CVSS3.1

CVE-2024-29955 - Insertion of Sensitive Information into Brocade SANnav Log File

A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted key in PostgreSQL startup logs. This could provide attackers with an additional, less-protected path to acquiring the encryption key.

πŸ“… Published: April 17, 2024, 10:11 p.m. πŸ”„ Last Modified: Feb. 4, 2025, 4:03 p.m.

5.5

CVSS3.1

CVE-2024-29952 - Clear text storage of sensistive information by manipulating command variables

A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, and SSL key store passwords in unencrypted logs by manipulating command variables.

πŸ“… Published: April 17, 2024, 9:43 p.m. πŸ”„ Last Modified: Feb. 4, 2025, 4:02 p.m.

6.1

CVSS3.1

CVE-2024-32472 - excalidraw vulnerable to a Stored XSS in excalidraw's web embed component

excalidraw is an open source virtual hand-drawn style whiteboard. A stored XSS vulnerability in Excalidraw's web embeddable component. This allows arbitrary JavaScript to be run in the context of the domain where the editor is hosted. There were two vectors. One rendering untrusted string as iframe…

πŸ“… Published: April 17, 2024, 9:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.3

CVSS3.1

CVE-2024-0257 - RoboDK Heap-based Buffer Overflow

RoboDK v5.5.4 is vulnerable to heap-based buffer overflow while processing a specific project file. The resulting memory corruption may crash the application.

πŸ“… Published: April 17, 2024, 7:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-3817 - HashiCorp go-getter Vulnerable to Argument Injection When Fetching Remote Default Git Branches

HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches. This vulnerability does not affect the go-getter/v2 branch and package.

πŸ“… Published: April 17, 2024, 7:37 p.m. πŸ”„ Last Modified: Dec. 11, 2025, 8:03 p.m.
Total resulsts: 349182
Page 10226 of 34,919
Β« previous page Β» next page
Filters