NA - CVE-2024-11643 - The Accessibility by AllAccessible plugin for...
The Accessibility by AllAccessible plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the...
NA - CVE-2024-37574 - The GriceMobile com.grice.call application...
The GriceMobile com.grice.call application 4.5.2 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via...
NA - CVE-2024-37575 - The Mister org.mistergroup.shouldianswer...
The Mister org.mistergroup.shouldianswer application 1.4.264 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted...
NA - CVE-2024-53614 - A hardcoded decryption key in Thinkware Cloud...
A hardcoded decryption key in Thinkware Cloud APK v4.3.46 allows attackers to access sensitive data and execute arbitrary commands with elevated privileges.
NA - CVE-2024-54002 - Dependency-Track is a Component Analysis...
Dependency-Track is a Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain. Performing a login request against the /api/v1/user/login...
NA - CVE-2024-54132 - The GitHub CLI is GitHub’s official command...
The GitHub CLI is GitHub’s official command line tool. A security vulnerability has been identified in GitHub CLI that could create or overwrite files in unintended directories when users download...
NA - CVE-2024-54134 - A publish-access account was compromised for...
A publish-access account was compromised for `@solana/web3.js`, a JavaScript library that is commonly used by Solana dapps. This allowed an attacker to publish unauthorized and malicious packages...
Medium - CVE-2024-20397 - A vulnerability in the bootloader of Cisco...
A vulnerability in the bootloader of Cisco NX-OS Software could allow an unauthenticated attacker with physical access to an affected device, or an authenticated, local attacker with administrative...