8.8

CVSS3.1

CVE-2024-36538 -

Insecure permissions in chaos-mesh v2.6.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Oct. 14, 2025, 2:41 p.m.

7.2

CVSS3.1

CVE-2024-36537 -

Insecure permissions in cert-manager v1.14.4 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: June 27, 2025, 4:50 p.m.

4.7

CVSS3.1

CVE-2024-41666 - The Argo CD web terminal session does not handle the revocation of user permissions properly.

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Argo CD has a Web-based terminal that allows users to get a shell inside a running pod, just as they would with kubectl exec. Starting in version 2.6.0, when the administrator enables this function and grants permission to th…

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Jan. 9, 2025, 4:54 p.m.

8

CVSS3.1

CVE-2024-31977 -

Adtran 834-5 11.1.0.101-202106231430, and fixed as of SmartOS Version 12.6.3.1, devices allow OS Command Injection via shell metacharacters to the Ping or Traceroute utility.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:14 a.m.

6.5

CVSS3.1

CVE-2024-41460 -

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter at ip/goform/RouteStatic.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

6.5

CVSS3.1

CVE-2024-7079 - Openshift-console: unauthenticated installation of helm charts

A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and verify the installation of a Helm chart from a URI that is remote HTTP/HTTPS or local. Access to this endpoint is gated by the authHandlerWithUser() middleware function. Contrary to its name, this middle…

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Nov. 20, 2025, 8:56 p.m.

7.5

CVSS3.1

CVE-2024-41466 -

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/NatStaticSetting.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

9.8

CVSS3.1

CVE-2024-36535 -

Insecure permissions in meshery v0.7.51 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: Sept. 3, 2025, 7:51 p.m.

9.8

CVSS3.1

CVE-2024-36536 -

Insecure permissions in fabedge v0.8.1 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: June 27, 2025, 4:50 p.m.

9.8

CVSS3.1

CVE-2024-36540 -

Insecure permissions in external-secrets v0.9.16 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

πŸ“… Published: July 24, 2024, midnight πŸ”„ Last Modified: June 27, 2025, 4:50 p.m.
Total resulsts: 349182
Page 9064 of 34,919
Β« previous page Β» next page
Filters