5.9

CVSS3.1

CVE-2024-22279 - GoRouter Denial of Service Attack

Improper handling of requests in Routing Release > v0.273.0 and <= v0.297.0 allows an unauthenticated attacker to degrade the service availability of the Cloud Foundry deployment if performed at scale.

๐Ÿ“… Published: June 10, 2024, 7:47 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 8:55 a.m.

7.7

CVSS3.1

CVE-2024-36414 - SuiteCRM authenticated Server-Side Request Forgery

SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in the connectors file verification allows for a server-side request forgery attack. Versions 7.14.4 and 8.6.1 contain a fix for this issue.

๐Ÿ“… Published: June 10, 2024, 7:40 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:22 a.m.

8.9

CVSS3.1

CVE-2024-36413 - SuiteCRM authenticated Reflected Cross-Site Scripting

SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in the import module error view allows for a cross-site scripting attack. Versions 7.14.4 and 8.6.1 contain a fix for this issue.

๐Ÿ“… Published: June 10, 2024, 7:38 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:22 a.m.

10

CVSS3.1

CVE-2024-36412 - SuiteCRM unauthenticated SQL Injection

SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in events response entry point allows for a SQL injection attack. Versions 7.14.4 and 8.6.1 contain a fix for this issue.

๐Ÿ“… Published: June 10, 2024, 7:35 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:22 a.m.

9.6

CVSS3.1

CVE-2024-36411 - SuiteCRM authenticated SQL Injection in EmailUIAjax displayView controller

SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and 8.6.1, poor input validation allows for SQL Injection in EmailUIAjax displayView controller. Versions 7.14.4 and 8.6.1 contain a fix for this issue.

๐Ÿ“… Published: June 10, 2024, 7:33 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:22 a.m.

7.1

CVSS3.1

CVE-2022-48578 -

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5. Processing an AppleScript may result in unexpected termination or disclosure of process memory.

๐Ÿ“… Published: June 10, 2024, 7:21 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 7:33 a.m.

8.6

CVSS3.1

CVE-2022-48683 -

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13. An app may be able to break out of its sandbox.

๐Ÿ“… Published: June 10, 2024, 7:21 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 7:33 a.m.

5.5

CVSS3.1

CVE-2023-40389 -

The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5, macOS Monterey 12.7.4. An app may be able to access sensitive user data.

๐Ÿ“… Published: June 10, 2024, 7:21 p.m. ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:15 p.m.

7.8

CVSS3.1

CVE-2022-32897 -

A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.5. Processing a maliciously crafted tiff file may lead to arbitrary code execution.

๐Ÿ“… Published: June 10, 2024, 7:21 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 7:07 a.m.

5.5

CVSS3.1

CVE-2024-27792 -

This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sonoma 14.4. An app may be able to access user-sensitive data.

๐Ÿ“… Published: June 10, 2024, 7:20 p.m. ๐Ÿ”„ Last Modified: April 2, 2026, 7:17 p.m.
Total resulsts: 346554
Page 9257 of 34,656
ยซ previous page ยป next page
Filters