8.8
CVE-2024-42599 -
SeaCMS 13.0 has a remote code execution vulnerability. The reason for this vulnerability is that although admin_files.php imposes restrictions on edited files, attackers can still bypass these restrictions and write code, allowing authenticated attackers to exploit the vulnerability to execute arbiβ¦
8.8
CVE-2024-45201 - llama_index: exec call in download/integration.py may lead to code injection
An issue was discovered in llama_index before 0.10.38. download/integration.py includes an exec call for import {cls_name}.
5.5
CVE-2022-48900 - kernel: xen/netfront: react properly to failing gnttab_end_foreign_access_ref()
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
0.0
CVE-2022-48936 - kernel: gso: do not skip outer ip header in case of ipip and net_failover
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
9.1
CVE-2024-28987 - SolarWinds Web Help Desk Hardcoded Credential Vulnerability
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify data.
9.9
CVE-2024-6386 - WPML Multilingual CMS <= 4.6.12 - Authenticated (Contributor+) Remote Code Execution via Twig Serveβ¦
The WPML plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.6.12 via Twig Server-Side Template Injection. This is due to missing input validation and sanitization on the render function. This makes it possible for authenticated attackers, with Contriβ¦
4.3
CVE-2024-8035 -
Inappropriate implementation in Extensions in Google Chrome on Windows prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
4.3
CVE-2024-8034 -
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
4.3
CVE-2024-8033 -
Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
4.3
CVE-2024-7981 -
Inappropriate implementation in Views in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)