7.5

CVSS3.1

CVE-2024-57063 -

A prototype pollution in the lib function of php-date-formatter v1.3.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 6, 2025, 4:15 p.m.

7.8

CVSS3.1

CVE-2024-48394 -

A Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the driver of the NDD Print solution, which could allow an unprivileged user to exploit this flaw and gain SYSTEM-level access on the device. The vulnerability affects version 5.24.3 and before of the software.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: March 19, 2025, 3:15 p.m.

7.5

CVSS3.1

CVE-2024-57086 -

A prototype pollution in the function fieldsToJson of node-opcua-alarm-condition v2.134.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 6, 2025, 5:15 p.m.

6.5

CVSS3.1

CVE-2024-57082 -

A prototype pollution in the lib.createUploader function of @rpldy/uploader v1.8.1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 18, 2025, 8:15 p.m.

9.8

CVSS3.1

CVE-2020-36084 -

SQL Injection vulnerability in SourceCodester Responsive E-Learning System 1.0 allows remote attackers to inject sql query in /elearning/delete_teacher_students.php?id= parameter via id field.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: May 2, 2025, 7:52 p.m.

7.5

CVSS3.1

CVE-2024-57076 -

A prototype pollution in the lib.post function of ajax-request v1.2.3 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: March 18, 2025, 9:15 p.m.

7.5

CVSS3.1

CVE-2024-57067 -

A prototype pollution in the lib.parse function of dot-qs v0.2.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 6, 2025, 4:15 p.m.

7.5

CVSS3.1

CVE-2024-57064 -

A prototype pollution in the lib.setValue function of @syncfusion/ej2-spreadsheet v27.2.2 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload. NOTE: the Supplier disputes this because they found that the lib.setValue function is not utilized.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: March 10, 2025, 2:15 p.m.

7.5

CVSS3.1

CVE-2024-57071 -

A prototype pollution in the lib.combine function of php-parser v3.2.1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 6, 2025, 5:15 p.m.

7.5

CVSS3.1

CVE-2024-57699 - json-smart: Potential DoS via stack exhaustion (incomplete fix for CVE-2023-1370)

A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of โ€™{โ€™, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix foโ€ฆ

๐Ÿ“… Published: Feb. 5, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 6, 2025, 4:15 p.m.
Total resulsts: 343948
Page 6321 of 34,395
ยซ previous page ยป next page
Filters