5.3

CVSS3.0

CVE-2024-37380 -

A misconfiguration on UniFi U6+ Access Point could cause an incorrect VLAN traffic forwarding to APs meshed to UniFi U6+ Access Point. Affected Products: UniFi U6+ Access Point (Version 6.6.65 and earlier) Mitigation: Update your UniFi U6+ Access Point to Version 6.6.74 or later.

πŸ“… Published: July 22, 2024, 6:38 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2024-41130 - llama.cpp null pointer dereference in gguf_init_from_file

llama.cpp provides LLM inference in C/C++. Prior to b3427, llama.cpp contains a null pointer dereference in gguf_init_from_file. This vulnerability is fixed in b3427.

πŸ“… Published: July 22, 2024, 5:28 p.m. πŸ”„ Last Modified: Aug. 27, 2025, 4:20 p.m.

6.5

CVSS3.1

CVE-2024-39688 - fishaudio/Bert-VITS2 Limited File Write in webui_preprocess.py generate_config function

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is concatenated with other folders and used to open a new file in the generate_config function, which leads to a limited file write. The issue allows for writing /config/config.json file in arbitra…

πŸ“… Published: July 22, 2024, 3:21 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

9.8

CVSS3.1

CVE-2024-39686 - fishaudio/Bert-VITS2 Command Injection in webui_preprocess.py bert_gen function

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in a command executed with subprocess.run(cmd, shell=True) in the bert_gen function, which leads to arbitrary command execution. This affects fishaudio/Bert-VITS2 2.3 and earlier.

πŸ“… Published: July 22, 2024, 3:16 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

9.8

CVSS3.1

CVE-2024-39685 - fishaudio/Bert-VITS2 Command Injection in webui_preprocess.py resample function

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in a command executed with subprocess.run(cmd, shell=True) in the resample function, which leads to arbitrary command execution. This affects fishaudio/Bert-VITS2 2.3 and earlier.

πŸ“… Published: July 22, 2024, 3:13 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:28 a.m.

3.5

CVSS3.1

CVE-2024-41829 -

In JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space Application connection

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

2.6

CVSS3.1

CVE-2024-41828 -

In JetBrains TeamCity before 2024.07 comparison of authorization tokens took non-constant time

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

7.4

CVSS3.1

CVE-2024-41827 -

In JetBrains TeamCity before 2024.07 access tokens could continue working after deletion or expiration

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

3.5

CVSS3.1

CVE-2024-41826 -

In JetBrains TeamCity before 2024.07 stored XSS was possible on Show Connection page

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

4.6

CVSS3.1

CVE-2024-41825 -

In JetBrains TeamCity before 2024.07 stored XSS was possible on the Code Inspection tab

πŸ“… Published: July 22, 2024, 2:50 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.
Total resulsts: 349182
Page 9072 of 34,919
Β« previous page Β» next page
Filters