8.8

CVSS3.1

CVE-2024-4770 - Mozilla: Use-after-free could occur when printing to PDF

When saving a page to PDF, certain font styles could have led to a potential use-after-free crash. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: April 1, 2025, 5:46 p.m.

4.3

CVSS3.1

CVE-2024-4767 - Mozilla: IndexedDB files retained in private browsing mode

If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: April 1, 2025, 5:47 p.m.

6.1

CVSS3.1

CVE-2024-4768 - Mozilla: Potential permissions request bypass via clickjacking

A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: April 1, 2025, 6 p.m.

5.6

CVSS3.1

CVE-2024-4367 - Mozilla: Arbitrary JavaScript execution in PDF.js

A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: April 24, 2025, 7:15 p.m.

5.3

CVSS3.1

CVE-2024-3374 - MongoDB Server (mongod) may crash when generating ftdc

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions pri…

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: Sept. 29, 2025, 6:05 p.m.

4.7

CVSS3.1

CVE-2023-46103 - intel-microcode: Unexpected behavior in Intel(R) Core(TM) Ultra Processors

Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-3044 - Graphic on-click binding allows unchecked script execution

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

πŸ“… Published: May 14, 2024, midnight πŸ”„ Last Modified: Dec. 10, 2025, 7:10 p.m.

9.8

CVSS3.1

CVE-2024-27810 -

A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, watchOS 10.5. An app may be able to read sensitive location information.

πŸ“… Published: May 13, 2024, 11 p.m. πŸ”„ Last Modified: April 2, 2026, 7:17 p.m.

7.4

CVSS3.1

CVE-2024-27847 -

This issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An app may be able to bypass Privacy preferences.

πŸ“… Published: May 13, 2024, 11 p.m. πŸ”„ Last Modified: April 2, 2026, 7:17 p.m.

8.1

CVSS3.1

CVE-2024-27796 -

The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An attacker may be able to elevate privileges.

πŸ“… Published: May 13, 2024, 11 p.m. πŸ”„ Last Modified: April 2, 2026, 7:17 p.m.
Total resulsts: 349182
Page 9885 of 34,919
Β« previous page Β» next page
Filters