NA - CVE-2024-12841 - A vulnerability was found in Emlog Pro up to...
A vulnerability was found in Emlog Pro up to 2.4.1. It has been classified as problematic. This affects an unknown part of the file /admin/tag.php. The manipulation of the argument keyword leads to...
NA - CVE-2024-55342 - A file upload functionality in Piranha CMS 11.1...
A file upload functionality in Piranha CMS 11.1 allows authenticated remote attackers to upload a crafted PDF file to /manager/media. This PDF can contain malicious JavaScript code, which is...
NA - CVE-2024-12842 - A vulnerability was found in Emlog Pro up to...
A vulnerability was found in Emlog Pro up to 2.4.1. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/user.php. The manipulation of the argument...
NA - CVE-2024-12867 - Server-Side Request Forgery in URL Mapper in...
Server-Side Request Forgery in URL Mapper in Arctic Security's Arctic Hub versions 3.0.1764-5.6.1877 allows an unauthenticated remote attacker to exfiltrate and modify configurations and data.
NA - CVE-2024-55341 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability in Piranha CMS 11.1 allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by creating a page via the /manager/pages...
NA - CVE-2024-56329 - Socialstream is a third-party package for...
Socialstream is a third-party package for Laravel Jetstream. It replaces the published authentication and profile scaffolding provided by Laravel Jetstream, with scaffolding that has support for...
NA - CVE-2024-56330 - Stardust is a platform for streaming isolated...
Stardust is a platform for streaming isolated desktop containers. With this exploit, inter container communication (ICC) is not disabled. This would allow users within a container to access another...
NA - CVE-2024-56331 - Uptime Kuma is an open source, self-hosted...
Uptime Kuma is an open source, self-hosted monitoring tool. An **Improper URL Handling Vulnerability** allows an attacker to access sensitive local files on the server by exploiting the `file:///`...
NA - CVE-2024-56333 - Onyxia is a web app that aims at being the glue...
Onyxia is a web app that aims at being the glue between multiple open source backend technologies to provide a state of art working environment for data scientists. This critical vulnerability...