6.4

CVSS3.1

CVE-2024-9072 - GDPR-Extensions-com – Consent Manager <= 1.0.0 - Authenticated (Author+) Stored Cross-Site Scriptin…

The GDPR-Extensions-com – Consent Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-le…

πŸ“… Published: Oct. 10, 2024, 2:06 a.m. πŸ”„ Last Modified: April 8, 2026, 5:19 p.m.

6.4

CVSS3.1

CVE-2024-9457 - WP Builder <= 3.0.7 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload

The WP Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.0.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to in…

πŸ“… Published: Oct. 10, 2024, 2:05 a.m. πŸ”„ Last Modified: April 8, 2026, 4:33 p.m.

5.4

CVSS3.1

CVE-2024-7048 - IDOR in open-webui/open-webui

In version v0.3.8 of open-webui, an improper privilege management vulnerability exists in the API endpoints GET /api/v1/documents/ and POST /rag/api/v1/doc. This vulnerability allows a lower-privileged user to access and overwrite files managed by a higher-privileged admin. By exploiting this vulne…

πŸ“… Published: Oct. 10, 2024, 1:22 a.m. πŸ”„ Last Modified: Oct. 15, 2025, 1:15 p.m.

7.5

CVSS3.1

CVE-2024-35202 -

Bitcoin Core before 25.0 allows remote attackers to cause a denial of service (blocktxn message-handling assertion and node exit) by including transactions in a blocktxn message that are not committed to in a block's merkle root. FillBlock can be called twice for one PartiallyDownloadedBlock instan…

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: May 22, 2025, 4:51 p.m.

8.2

CVSS3.1

CVE-2024-6519 - Qemu: scsi: lsi53c895a: use-after-free local privilege escalation vulnerability

A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can lead to a crash or VM escape.

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: Aug. 8, 2025, 4:13 p.m.

9.1

CVSS3.1

CVE-2024-48949 - elliptic: Missing Validation in Elliptic's EDDSA Signature Verification

The verify function in lib/elliptic/eddsa/index.js in the Elliptic package before 6.5.6 for Node.js omits "sig.S().gte(sig.eddsa.curve.n) || sig.S().isNeg()" validation.

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: Nov. 25, 2025, 4:16 p.m.

0.0

CVE-2024-36051 -

DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2024-38365. Reason: This record is a duplicate of CVE-2024-38365. Notes: All CVE users should reference CVE-2024-38365 instead of this record. All references and descriptions in this record have been removed to prevent accidental usage.

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: Oct. 11, 2024, 9:15 p.m.

7.8

CVSS3.1

CVE-2024-48958 - libarchive: Out-of-bounds access in libarchive's RAR file handling

execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

7.8

CVSS3.1

CVE-2024-48957 - libarchive: Out-of-bounds access in libarchive's archive file handling

execute_filter_audio in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file because src can move beyond dst.

πŸ“… Published: Oct. 10, 2024, midnight πŸ”„ Last Modified: Sept. 29, 2025, 9:35 p.m.

5.5

CVSS3.1

CVE-2024-8264 - Sensitive information in agent log file when detailed logging is enabled with Robot Schedule Enterp…

Fortra's Robot Schedule Enterprise Agent prior to version 3.05 writes FTP username and password information to the agent log file when detailed logging is enabled.

πŸ“… Published: Oct. 9, 2024, 10:44 p.m. πŸ”„ Last Modified: Oct. 17, 2024, 2:06 p.m.
Total resulsts: 349182
Page 8334 of 34,919
Β« previous page Β» next page
Filters