5.5

CVSS3.1

CVE-2024-50176 - remoteproc: k3-r5: Fix error handling when power-up failed

In the Linux kernel, the following vulnerability has been resolved: remoteproc: k3-r5: Fix error handling when power-up failed By simply bailing out, the driver was violating its rule and internal assumptions that either both or no rproc should be initialized. E.g., this could cause the first cor…

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

9.3

CVSS3.1

CVE-2024-50966 -

dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=addAdmin.

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: May 28, 2025, 8:50 p.m.

7.8

CVSS3.1

CVE-2024-50203 - bpf, arm64: Fix address emission with tag-based KASAN enabled

In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix address emission with tag-based KASAN enabled When BPF_TRAMP_F_CALL_ORIG is enabled, the address of a bpf_tramp_image struct on the stack is passed during the size calculation pass and an address on the heap is pa…

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: May 22, 2025, 1:15 p.m.

4.7

CVSS3.1

CVE-2024-51157 -

07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component http://erp.07fly.net:80/oa/OaSchedule/add.html.

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: April 18, 2025, 2:27 a.m.

9.1

CVSS3.1

CVE-2024-50811 -

hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\apps\\tool\\apis\\bd_push.py does not securely filter user input through push_urls() and get_urls().

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 5:15 p.m.

9.8

CVSS3.1

CVE-2024-35426 -

vmir e8117 was discovered to contain a stack overflow via the init_local_vars function at /src/vmir_wasm_parser.c.

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: June 5, 2025, 3:35 p.m.

5.5

CVSS3.1

CVE-2024-50207 - ring-buffer: Fix reader locking when changing the sub buffer order

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix reader locking when changing the sub buffer order The function ring_buffer_subbuf_order_set() updates each ring_buffer_per_cpu and installs new sub buffers that match the requested page order. This operation may …

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:16 p.m.

7.5

CVSS3.1

CVE-2024-27532 -

wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) 06df58f is vulnerable to NULL Pointer Dereference in function `block_type_get_result_types.

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Sept. 29, 2025, 2:41 p.m.

9.8

CVSS3.1

CVE-2023-27195 -

Trimble TM4Web 22.2.0 allows unauthenticated attackers to access /inc/tm_ajax.msw?func=UserfromUUID&uuid= to retrieve the last registration access code and use this access code to register a valid account. via a PUT /inc/tm_ajax.msw request. If the access code was used to create an Administrator ac…

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 7:52 a.m.

7.8

CVSS3.1

CVE-2024-50209 - RDMA/bnxt_re: Add a check for memory allocation

In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add a check for memory allocation __alloc_pbl() can return error when memory allocation fails. Driver is not checking the status on one of the instances.

πŸ“… Published: Nov. 8, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.
Total resulsts: 343183
Page 7383 of 34,319
Β« previous page Β» next page
Filters