7.5

CVSS3.1

CVE-2024-57084 -

A prototype pollution in the function lib.parse of dot-properties v1.0.1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: Feb. 7, 2025, 4:15 p.m.

7.5

CVSS3.1

CVE-2024-57081 -

A prototype pollution in the lib.fromQuery function of underscore-contrib v0.3.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: March 19, 2025, 7:15 p.m.

7.5

CVSS3.1

CVE-2024-57068 -

A prototype pollution in the lib.mutateMergeDeep function of @tanstack/form-core v0.35.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: Feb. 6, 2025, 4:15 p.m.

7.5

CVSS3.1

CVE-2024-57072 -

A prototype pollution in the lib.requireFromString function of module-from-string v3.3.1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: Feb. 6, 2025, 4:15 p.m.

6.5

CVSS3.1

CVE-2024-57598 -

A floating point exception (divide-by-zero) vulnerability was discovered in Bento4 1.6.0-641 in function AP4_TfraAtom() of Ap4TfraAtom.cpp which allows a remote attacker to cause a denial of service vulnerability.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: May 15, 2025, 9:15 p.m.

7.5

CVSS3.1

CVE-2024-57079 -

A prototype pollution in the lib.deepMerge function of @zag-js/core v0.50.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 9:15 p.m.

7.5

CVSS3.1

CVE-2024-57069 -

A prototype pollution in the lib function of expand-object v0.4.2 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: Feb. 6, 2025, 5:15 p.m.

8.1

CVSS3.1

CVE-2025-25246 -

NETGEAR XR1000 before 1.0.0.74, XR1000v2 before 1.1.0.22, and XR500 before 2.3.2.134 allow remote code execution by unauthenticated users.

πŸ“… Published: Feb. 5, 2025, midnight πŸ”„ Last Modified: July 12, 2025, 3:26 p.m.

5.4

CVSS3.1

CVE-2024-53962 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

πŸ“… Published: Feb. 4, 2025, 11:40 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 8:51 p.m.

5.4

CVSS3.1

CVE-2024-53963 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by a low privileged attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted UR…

πŸ“… Published: Feb. 4, 2025, 11:40 p.m. πŸ”„ Last Modified: Feb. 11, 2025, 4:05 p.m.
Total resulsts: 343749
Page 6303 of 34,375
Β« previous page Β» next page
Filters