NA - CVE-2024-47211 - In OpenStack Ironic before 21.4.4, 22.x and...
In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs...
NA - CVE-2024-8148 - There is an unvalidated redirect vulnerability...
There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 10.8.1 - 11.2 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary...
NA - CVE-2024-8149 - There is a reflected XSS vulnerability in Esri...
There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and 11.2 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could...
NA - CVE-2023-26771 - Taskcafe 0.3.2 is vulnerable to Cross Site...
Taskcafe 0.3.2 is vulnerable to Cross Site Scripting (XSS). There is a lack of validation in the filetype when uploading a SVG profile picture with a XSS payload on it. An authenticated attacker...
NA - CVE-2024-46077 - itsourcecode Online Tours and Travels...
itsourcecode Online Tours and Travels Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via a crafted payload to the val-username, val-email, val-suggestions, val-digits and...
NA - CVE-2024-46078 - itsourcecode Sports Management System Project...
itsourcecode Sports Management System Project 1.0 is vulnerable to SQL Injection in the function delete_category of the file sports_scheduling/player.php via the argument id.
NA - CVE-2024-43683 - URL Redirection to Untrusted Site ('Open...
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0.