6.1

CVSS3.1

CVE-2024-10836 - Flixita <= 1.0.82 - Reflected Cross-Site Scripting via id Parameter

The Flixita theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the β€˜id’ parameter in all versions up to, and including, 1.0.82 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pag…

πŸ“… Published: Dec. 6, 2024, 3:25 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.2

CVSS4.0

CVE-2024-11149 - OpenBSD vmm GDTR limits

In OpenBSD 7.4 before errata 014, vmm(4) did not restore GDTR limits properly on Intel (VMX) CPUs.

πŸ“… Published: Dec. 6, 2024, 1:56 a.m. πŸ”„ Last Modified: Sept. 23, 2025, 12:07 p.m.

4.3

CVSS3.1

CVE-2024-49041 - Microsoft Edge (Chromium-based) Spoofing Vulnerability

Microsoft Edge (Chromium-based) Spoofing Vulnerability

πŸ“… Published: Dec. 6, 2024, 1:09 a.m. πŸ”„ Last Modified: May 13, 2025, 3:25 p.m.

7.5

CVSS3.1

CVE-2024-44856 -

Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_smac_planner().

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Dec. 13, 2024, 8:30 p.m.

7.8

CVSS3.1

CVE-2024-53141 - netfilter: ipset: add missing range check in bitmap_ip_uadt

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: add missing range check in bitmap_ip_uadt When tb[IPSET_ATTR_IP_TO] is not present but tb[IPSET_ATTR_CIDR] exists, the values of ip and ip_to are slightly swapped. Therefore, the range check for ip should be don…

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:17 p.m.

6.1

CVSS3.1

CVE-2024-50677 -

A cross-site scripting (XSS) vulnerability in OroPlatform CMS v5.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search parameter.

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: June 13, 2025, 12:35 a.m.

9.1

CVSS3.1

CVE-2024-38923 -

Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter`/amcl odom_frame_id` .

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Dec. 17, 2024, 8:28 p.m.

7.5

CVSS3.1

CVE-2024-44853 -

Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component computeControl().

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Dec. 13, 2024, 8:33 p.m.

7.1

CVSS3.1

CVE-2024-41648 -

Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_regulated_pure_pursuit_controller.

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Dec. 13, 2024, 8:26 p.m.

9.8

CVSS3.1

CVE-2024-38921 -

Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter`/amcl z_rand ` .

πŸ“… Published: Dec. 6, 2024, midnight πŸ”„ Last Modified: Dec. 17, 2024, 8:29 p.m.
Total resulsts: 349182
Page 7607 of 34,919
Β« previous page Β» next page
Filters