3.1

CVSS3.1

CVE-2024-6762 - Jetty PushSessionCacheFilter can cause remote DoS attacks

Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the serverโ€™s memory.

๐Ÿ“… Published: Oct. 14, 2024, 3:07 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

3.7

CVSS3.1

CVE-2024-6763 - Jetty URI parsing of invalid authority

Eclipse Jetty is a lightweight, highly scalable, Java-based web server and Servlet engine . It includes a utility class, HttpURI, for URI/URL parsing. The HttpURI class does insufficient validation on the authority segment of a URI. However the behaviour of HttpURI differs from the common browseโ€ฆ

๐Ÿ“… Published: Oct. 14, 2024, 3:06 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 3:04 p.m.

5.3

CVSS3.1

CVE-2024-9823 - Jetty DOS vulnerability on DosFilter

There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote denial-of-service (DoS) attack on the server using DosFilter. By repeatedly sending crafted requests, attackers can trigger OutofMemory errors and exhaust the server's memory finaโ€ฆ

๐Ÿ“… Published: Oct. 14, 2024, 3:03 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

8.8

CVSS4.0

CVE-2024-7847 - RSLogixโ„ข 5 and RSLogix 500ยฎ Remote Code Execution Via VBA Embedded Script

VULNERABILITY DETAILS Rockwell Automation used the latest versions of the CVSS scoring system to assess the following vulnerabilities. The following vulnerabilities were reported to us by Sharon Brizinov of Claroty Research - Team82. A feature in the affected products enables users to prepare a โ€ฆ

๐Ÿ“… Published: Oct. 14, 2024, 1:47 p.m. ๐Ÿ”„ Last Modified: Sept. 29, 2025, 5:27 p.m.

6.5

CVSS3.1

CVE-2024-9936 - firefox: Undefined behavior in selection node cache

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash. This vulnerability affects Firefox < 131.0.3.

๐Ÿ“… Published: Oct. 14, 2024, 1:41 p.m. ๐Ÿ”„ Last Modified: March 31, 2025, 5:42 p.m.

6.3

CVSS4.0

CVE-2024-8602 - XML Eternal Entity Attack in the Software Library taxstatement.jar

When the XML is read from the codes in the PDF and parsed using a DocumentBuilder, the default settings of the DocumentBuilder allow for an XXE (XML External Entity) attack. Further information on this can be found on the website of the Open Worldwide Application Security Project (OWASP). An attackโ€ฆ

๐Ÿ“… Published: Oct. 14, 2024, 1:10 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2024-9139 - OS Command Injection in Restricted Command

The affected product permits OS command injection through improperly restricted commands, potentially allowing attackers to execute arbitrary code.

๐Ÿ“… Published: Oct. 14, 2024, 8:20 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-43701 - GPU DDK - PowerVR: TLB invalidate UAF of dma_buf imported into multiple GPU devices

Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory from the GPU.

๐Ÿ“… Published: Oct. 14, 2024, 8:17 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.7

CVSS3.1

CVE-2024-46911 - Apache Roller: Weakness in CSRF protection allows privilege escalation

Cross-site Resource Forgery (CSRF), Privilege escalation vulnerability in Apache Roller. On multi-blog/user Roller websites, by default weblog owners are trusted to publish arbitrary weblog content and this combined with a deficiency in Roller's CSRF protections allowed an escalation of privileges โ€ฆ

๐Ÿ“… Published: Oct. 14, 2024, 8:13 a.m. ๐Ÿ”„ Last Modified: May 27, 2025, 7:37 p.m.

8.8

CVSS4.0

CVE-2024-9137 - Moxa Service Missing Authentication for Critical Function

The affected product lacks an authentication check when sending commands to the server via the Moxa service. This vulnerability allows an attacker to execute specified commands, potentially leading to unauthorized downloads or uploads of configuration files and system compromise.

๐Ÿ“… Published: Oct. 14, 2024, 8:09 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 8300 of 34,919
ยซ previous page ยป next page
Filters