2.5

CVSS3.1

CVE-2024-42182 - HCL BigFix Patch Download Plug-ins are affected by Server-Side Request Forgery (SSRF) vulnerability

BigFix Patch Download Plug-ins are affected by Server-Side Request Forgery (SSRF) vulnerability. It may allow the application to download files from an internally hosted server on localhost.

๐Ÿ“… Published: Jan. 23, 2025, 1:05 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-50664 -

gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 11, 2025, 8:57 p.m.

6.5

CVSS3.1

CVE-2024-57724 -

lunasvg v3.0.0 was discovered to contain a segmentation violation via the component gray_record_cell.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2025, 5:09 p.m.

9.8

CVSS3.1

CVE-2024-55192 -

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 5, 2025, 3:15 p.m.

6.4

CVSS3.1

CVE-2025-24529 -

An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the Insert tab.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-57722 -

lunasvg v3.0.0 was discovered to contain a allocation-size-too-big bug via the component plutovg_surface_create.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2025, 5:12 p.m.

6.4

CVSS3.1

CVE-2025-24530 -

An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the check tables feature. A crafted table or database name could be used for XSS.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

10

CVSS3.1

CVE-2024-55971 -

SQL Injection vulnerability in the default configuration of the Logitime WebClock application <= 5.43.0 allows an unauthenticated user to run arbitrary code on the backend database server.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-57328 -

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 29, 2025, 1:52 p.m.

9.8

CVSS3.1

CVE-2024-55194 -

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 29, 2025, 3:19 p.m.
Total resulsts: 349182
Page 6992 of 34,919
ยซ previous page ยป next page
Filters