8.1

CVSS3.1

CVE-2024-36623 - moby: Race Condition in Moby's streamformatter Package

moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: July 2, 2025, 8:36 p.m.

5.3

CVSS3.1

CVE-2024-36619 -

FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: June 3, 2025, 4:06 p.m.

9.8

CVSS3.1

CVE-2024-53504 -

A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in /searchHistory.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: April 14, 2025, 2:30 p.m.

6.2

CVSS3.1

CVE-2024-36618 -

FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

9.8

CVSS3.1

CVE-2024-35368 -

FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

6.5

CVSS3.1

CVE-2024-36616 -

An integer overflow in the component /libavformat/westwood_vqa.c of FFmpeg n6.1.1 allows attackers to cause a denial of service in the application via a crafted VQA file.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: June 3, 2025, 4:04 p.m.

9.8

CVSS3.1

CVE-2024-53506 -

A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in /batchGetBlockAttrs.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: April 14, 2025, 2:57 p.m.

4.3

CVSS3.1

CVE-2024-45495 -

MSA FieldServer Gateway 5.0.0 through 6.5.2 allows cross-origin WebSocket hijacking.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: Dec. 4, 2024, 5:15 p.m.

9.1

CVSS3.1

CVE-2024-35366 -

FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavformat module. When parsing certain options, the software does not adequately validate the input. This allows for negative duration values to be accepted without proper bounds check…

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: June 3, 2025, 4:03 p.m.

9.8

CVSS3.1

CVE-2024-52777 -

DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: Nov. 6, 2025, 9:07 p.m.
Total resulsts: 343968
Page 7152 of 34,397
Β« previous page Β» next page
Filters