7.5

CVSS3.1

CVE-2024-36471 - Apache Allura: sensitive information exposure via DNS rebinding

Import functionality is vulnerable to DNS rebinding attacks between verification and processing of the URL.Β  Project administrators can run these imports, which could cause Allura to read from internal services and expose them. This issue affects Apache Allura from 1.0.1 through 1.16.0. Users are…

πŸ“… Published: June 10, 2024, 9:55 p.m. πŸ”„ Last Modified: July 15, 2025, 4:36 p.m.

5.3

CVSS3.1

CVE-2024-37169 - @jmondi/url-to-png arbitrary file read via Playwright's screenshot feature exploiting file wrapper

@jmondi/url-to-png is a self-hosted URL to PNG utility. Versions prior to 2.0.3 are vulnerable to arbitrary file read if a threat actor uses the Playright's screenshot feature to exploit the file wrapper. Version 2.0.3 mitigates this issue by requiring input URLs to be of protocol `http` or `https`…

πŸ“… Published: June 10, 2024, 9:35 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.9

CVSS3.1

CVE-2024-37166 - ghtml Cross-Site Scripting (XSS) vulnerability

ghtml is software that uses tagged templates for template engine functionality. It is possible to introduce user-controlled JavaScript code and trigger a Cross-Site Scripting (XSS) vulnerability in some cases. Version 2.0.0 introduces changes to mitigate this issue. Version 2.0.0 contains updated d…

πŸ“… Published: June 10, 2024, 9:29 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-5825 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: June 10, 2024, 9:25 p.m. πŸ”„ Last Modified: June 11, 2024, 10:15 a.m.

8.8

CVSS3.1

CVE-2024-35242 - Composer vulnerable to command injection via malicious git/hg branch names

Composer is a dependency manager for PHP. On the 2.x branch prior to versions 2.2.24 and 2.7.7, the `composer install` command running inside a git/hg repository which has specially crafted branch names can lead to command injection. This requires cloning untrusted repositories. Patches are availab…

πŸ“… Published: June 10, 2024, 9:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-37289 -

An improper access control vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

πŸ“… Published: June 10, 2024, 9:22 p.m. πŸ”„ Last Modified: June 16, 2025, 9:06 p.m.

5.3

CVSS3.1

CVE-2024-36473 -

Trend Micro VPN Proxy One Pro, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite or create attack but is limited to local Denial of Service (DoS) and under specific conditions can lead to elevation of privileges.

πŸ“… Published: June 10, 2024, 9:22 p.m. πŸ”„ Last Modified: July 30, 2025, 6:40 p.m.

5.4

CVSS3.1

CVE-2024-36359 -

A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in o…

πŸ“… Published: June 10, 2024, 9:21 p.m. πŸ”„ Last Modified: March 18, 2025, 4:15 p.m.

7.8

CVSS3.1

CVE-2024-36358 -

A link following vulnerability in Trend Micro Deep Security 20.x agents below build 20.0.1-3180 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to ex…

πŸ“… Published: June 10, 2024, 9:21 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:26 p.m.

4.7

CVSS3.1

CVE-2024-36307 -

A security agent link following vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information about the agent on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the t…

πŸ“… Published: June 10, 2024, 9:21 p.m. πŸ”„ Last Modified: June 27, 2025, 2:50 p.m.
Total resulsts: 346529
Page 9249 of 34,653
Β« previous page Β» next page
Filters