NA - CVE-2023-37940 - Cross-site scripting (XSS) vulnerability in the...
Cross-site scripting (XSS) vulnerability in the edit Service Access Policy page in Liferay Portal 7.0.0 through 7.4.3.87, and Liferay DXP 7.4 GA through update 87, 7.3 GA through update 29, and...
NA - CVE-2024-52792 - LDAP Account Manager (LAM) is a php webfrontend...
LDAP Account Manager (LAM) is a php webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In affected versions LAM does not properly sanitize...
NA - CVE-2024-56142 - pghoard is a PostgreSQL backup daemon and...
pghoard is a PostgreSQL backup daemon and restore tooling that stores backup data in cloud object stores. A vulnerability has been discovered that could allow an attacker to acquire disk access...
Medium - CVE-2024-10973 - A vulnerability was found in Keycloak. The...
A vulnerability was found in Keycloak. The environment option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the JGroups replication configuration is always used in plain text which can allow...
High - CVE-2024-9779 - A flaw was found in Open Cluster Management...
A flaw was found in Open Cluster Management (OCM) when a user has access to the worker nodes which contain the cluster-manager or klusterlet deployments. The cluster-manager deployment uses a...