9.8

CVSS3.1

CVE-2024-39685 - fishaudio/Bert-VITS2 Command Injection in webui_preprocess.py resample function

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in a command executed with subprocess.run(cmd, shell=True) in the resample function, which leads to arbitrary command execution. This affects fishaudio/Bert-VITS2 2.3 and earlier.

πŸ“… Published: July 22, 2024, 3:13 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

3.5

CVSS3.1

CVE-2024-41829 -

In JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space Application connection

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

2.6

CVSS3.1

CVE-2024-41828 -

In JetBrains TeamCity before 2024.07 comparison of authorization tokens took non-constant time

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

7.4

CVSS3.1

CVE-2024-41827 -

In JetBrains TeamCity before 2024.07 access tokens could continue working after deletion or expiration

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

3.5

CVSS3.1

CVE-2024-41826 -

In JetBrains TeamCity before 2024.07 stored XSS was possible on Show Connection page

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

4.6

CVSS3.1

CVE-2024-41825 -

In JetBrains TeamCity before 2024.07 stored XSS was possible on the Code Inspection tab

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

6.4

CVSS3.1

CVE-2024-41824 -

In JetBrains TeamCity before 2024.07 parameters of the "password" type could leak into the build log in some specific cases

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

5.3

CVSS3.1

CVE-2024-41132 - SixLabors ImageSharp Allows Excessive Memory Allocation in Gif Decoder

ImageSharp is a 2D graphics API. A vulnerability discovered in the ImageSharp library, where the processing of specially crafted files can lead to excessive memory usage in the Gif decoder. The vulnerability is triggered when ImageSharp attempts to process image files that are designed to exploit t…

πŸ“… Published: July 22, 2024, 2:28 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

7.5

CVSS3.1

CVE-2024-41131 - Out-of-bounds Write in SixLabors ImageSharp

ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a crash using a specially crafted gif. This can potentially lead to denial of service. All users are advised to upgrade to v3.1.5 or v2.1.9.

πŸ“… Published: July 22, 2024, 2:24 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

5.3

CVSS3.1

CVE-2024-29073 -

An vulnerability in the handling of Latex exists in Ankitects Anki 24.04. When Latex is sanitized to prevent unsafe commands, the verbatim package, which comes installed by default in many Latex distributions, has been overlooked. A specially crafted flashcard can lead to an arbitrary file read. An…

πŸ“… Published: July 22, 2024, 2:20 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.
Total resulsts: 344718
Page 8626 of 34,472
Β« previous page Β» next page
Filters