8.8

CVSS3.1

CVE-2024-7724 - Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability

Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page…

📅 Published: Aug. 21, 2024, 4:04 p.m. 🔄 Last Modified: Oct. 18, 2024, 3:45 p.m.

8.8

CVSS3.1

CVE-2024-7723 - Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability

Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page…

📅 Published: Aug. 21, 2024, 4:04 p.m. 🔄 Last Modified: Oct. 18, 2024, 3:45 p.m.

4.3

CVSS3.1

CVE-2024-7722 - Foxit PDF Reader Doc Object Use-After-Free Information Disclosure Vulnerability

Foxit PDF Reader Doc Object Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a mal…

📅 Published: Aug. 21, 2024, 4:04 p.m. 🔄 Last Modified: Oct. 18, 2024, 3:45 p.m.

8.8

CVSS3.1

CVE-2024-7795 - Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remo…

Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Autel MaxiCharger AC Elite Business C50 EV chargers. Authen…

📅 Published: Aug. 21, 2024, 4:02 p.m. 🔄 Last Modified: Aug. 23, 2024, 4:39 p.m.

6.1

CVSS3.1

CVE-2024-41937 - Apache Airflow: Stored XSS Vulnerability on provider link

Apache Airflow, versions before 2.10.0, have a vulnerability that allows the developer of a malicious provider to execute a cross-site scripting attack when clicking on a provider documentation link. This would require the provider to be installed on the web server and the user to click the provide…

📅 Published: Aug. 21, 2024, 3:31 p.m. 🔄 Last Modified: March 20, 2025, 9:15 p.m.

5.1

CVSS4.0

CVE-2022-26327 - Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance Center

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in OpenText Performance Center on Windows allows Retrieve Embedded Sensitive Data.This issue affects Performance Center: 12.63.

📅 Published: Aug. 21, 2024, 3:25 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

2

CVSS4.0

CVE-2022-26328 - User enumeration vulnerability has been discovered in OpenText™ Performance Center

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText Performance Center on Windows allows Cross-Site Scripting (XSS).This issue affects Performance Center: 12.63.

📅 Published: Aug. 21, 2024, 3:25 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

3.1

CVSS3.1

CVE-2024-43411 - CKEditor4 has a low risk cross-site scripting (XSS) vulnerability from domain takeover

CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A theoretical vulnerability has been identified in CKEditor 4.22 (and above). In a highly unlikely scenario where an attacker gains control over the https://cke4.ckeditor.com domain, they could potentially execute an attack on CK…

📅 Published: Aug. 21, 2024, 3:17 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-43410 - Russh has an OOM Denial of Service due to allocation of untrusted amount

Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to OOM a russh server. An SSH packet consists of a 4-byte big-endian length, followed by a byte stream of this length. After parsing and potentially decrypting the 4-byte length, ru…

📅 Published: Aug. 21, 2024, 3:09 p.m. 🔄 Last Modified: Aug. 13, 2025, 6:32 p.m.

6.1

CVSS3.1

CVE-2024-43407 - Code Snippet GeSHi plugin has reflected cross-site scripting (XSS) vulnerability

CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A potential vulnerability has been discovered in CKEditor 4 Code Snippet GeSHi plugin. The vulnerability allowed a reflected XSS attack by exploiting a flaw in the GeSHi syntax highlighter library hosted by the victim. The GeSHi …

📅 Published: Aug. 21, 2024, 3:03 p.m. 🔄 Last Modified: Aug. 23, 2024, 4:20 p.m.
Total resulsts: 349182
Page 8772 of 34,919
« previous page » next page
Filters