7.5

CVSS3.1

CVE-2024-34351 - Next.js Server-Side Request Forgery in Server Actions

Next.js is a React framework that can provide building blocks to create web applications. A Server-Side Request Forgery (SSRF) vulnerability was identified in Next.js Server Actions. If the `Host` header is modified, and the below conditions are also met, an attacker may be able to make requests th…

πŸ“… Published: May 9, 2024, 4:14 p.m. πŸ”„ Last Modified: Sept. 10, 2025, 3:43 p.m.

7.5

CVSS3.1

CVE-2024-34350 - Next.js Vulnerable to HTTP Request Smuggling

Next.js is a React framework that can provide building blocks to create web applications. Prior to 13.5.1, an inconsistent interpretation of a crafted HTTP request meant that requests are treated as both a single request, and two separate requests by Next.js, leading to desynchronized responses. Th…

πŸ“… Published: May 9, 2024, 4:07 p.m. πŸ”„ Last Modified: Sept. 10, 2025, 3:36 p.m.

6.5

CVSS3.1

CVE-2024-33454 -

Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the Bluetooth stack component.

πŸ“… Published: May 9, 2024, 3:57 p.m. πŸ”„ Last Modified: Dec. 31, 2025, 1:16 a.m.

7.5

CVSS3.1

CVE-2024-32739 - CyberPower PowerPanel Enterprise SQL Injection

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3.Β An unauthenticated remote attacker can leak sensitive information via the "query_ptask_verbose" function within MCUDBHelper.

πŸ“… Published: May 9, 2024, 2:58 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:15 p.m.

7.5

CVSS3.1

CVE-2024-32738 - CyberPower PowerPanel Enterprise SQL Injection

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3.Β An unauthenticated remote attacker can leak sensitive information via the "query_ptask_lean" function within MCUDBHelper.

πŸ“… Published: May 9, 2024, 2:58 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:14 p.m.

7.5

CVSS3.1

CVE-2024-32737 - CyberPower PowerPanel Enterprise SQL Injection

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3.Β An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function within MCUDBHelper.

πŸ“… Published: May 9, 2024, 2:57 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:14 p.m.

7.5

CVSS3.1

CVE-2024-32736 - CyberPower PowerPanel Enterprise SQL Injection

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3.Β An unauthenticated remote attacker can leak sensitive information via the "query_utask_verbose" function within MCUDBHelper.

πŸ“… Published: May 9, 2024, 2:57 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:14 p.m.

8.1

CVSS3.1

CVE-2024-34345 - @cyclonedx/cyclonedx-library Improper Restriction of XML External Entity Reference vulnerability

The CycloneDX JavaScript library contains the core functionality of OWASP CycloneDX for JavaScript. In 6.7.0, XML External entity injections were possible, when running the provided XML Validator on arbitrary input. This issue was fixed in version 6.7.1.

πŸ“… Published: May 9, 2024, 2:56 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:18 a.m.

9.8

CVSS3.1

CVE-2024-32735 - CyberPower PowerPanel Enterprise Missing Authentication

An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3.Β An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.

πŸ“… Published: May 9, 2024, 2:54 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 12:13 p.m.

6.5

CVSS3.1

CVE-2024-34354 - CMSaasStarter: JWT Token Not Verified on Server Session

CMSaaSStarter is a SaaS template/boilerplate built with SvelteKit, Tailwind, and Supabase. Any forks of the CMSaaSStarter template before commit 7904d416d2c72ec75f42fbf51e9e64fa74062ee6 are impacted. The issue is the user JWT Token is not verified on server session. You should take the patch 7904d4…

πŸ“… Published: May 9, 2024, 2:51 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:18 a.m.
Total resulsts: 343975
Page 9407 of 34,398
Β« previous page Β» next page
Filters