9.3

CVSS3.1

CVE-2024-39671 -

Access control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

πŸ“… Published: July 25, 2024, 11:54 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

5.5

CVSS3.1

CVE-2023-7271 -

Privilege escalation vulnerability in the NMS module Impact: Successful exploitation of this vulnerability will affect availability.

πŸ“… Published: July 25, 2024, 11:49 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:45 a.m.

6.2

CVSS3.1

CVE-2024-39670 -

Privilege escalation vulnerability in the account synchronisation module. Impact: Successful exploitation of this vulnerability will affect availability.

πŸ“… Published: July 25, 2024, 11:45 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

6.2

CVSS3.1

CVE-2024-39674 -

Plaintext vulnerability in the Gallery search module. Impact: Successful exploitation of this vulnerability will affect availability.

πŸ“… Published: July 25, 2024, 11:42 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

6.8

CVSS3.1

CVE-2024-39673 -

Vulnerability of serialisation/deserialisation mismatch in the iAware module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

πŸ“… Published: July 25, 2024, 11:40 a.m. πŸ”„ Last Modified: Sept. 18, 2025, 7:15 a.m.

8.8

CVSS3.1

CVE-2024-6589 - LearnPress <= 4.2.6.8.2 - Authenticated (Contributor+) Local File Inclusion

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.2.6.8.2 via the 'render_content_block_template' function. This makes it possible for authenticated attackers, with Contributor-level access and above, to include …

πŸ“… Published: July 25, 2024, 10:59 a.m. πŸ”„ Last Modified: April 8, 2026, 5:18 p.m.

9.8

CVSS3.1

CVE-2024-37084 - CVE-2024-37084: Remote code execution in Spring Cloud Data Flow

In Spring Cloud Data Flow versions prior to 2.11.4,Β Β a malicious user who has access to the Skipper server api can use a crafted upload request to write an arbitrary file to any location on the file system which could lead to compromising the server

πŸ“… Published: July 25, 2024, 9:17 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

7.7

CVSS3.1

CVE-2024-3056 - Podman: kernel: containers in shared ipc namespace are vulnerable to denial of service attack

A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with at least one other container, can create a large number of IPC resources in /dev/shm. The malicious container will continue to exhaust resources unti…

πŸ“… Published: July 25, 2024, 7 a.m. πŸ”„ Last Modified: Nov. 14, 2025, 1:32 a.m.

6.5

CVSS3.1

CVE-2024-6972 -

In affected versions of Octopus Server under certain circumstances it is possible for sensitive variables to be printed in the task log in clear-text.

πŸ“… Published: July 25, 2024, 5:16 a.m. πŸ”„ Last Modified: July 2, 2025, 5:26 p.m.

2.2

CVSS3.1

CVE-2024-4811 -

In affected versions of Octopus Server under certain conditions, a user with specific role assignments can access restricted project artifacts.

πŸ“… Published: July 25, 2024, 4:46 a.m. πŸ”„ Last Modified: July 2, 2025, 5:27 p.m.
Total resulsts: 349182
Page 9055 of 34,919
Β« previous page Β» next page
Filters