Medium - CVE-2024-43721 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the...
Medium - CVE-2024-43722 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the...
Medium - CVE-2024-43723 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the...
Medium - CVE-2024-43724 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the...
Medium - CVE-2024-43725 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into...
Medium - CVE-2024-43726 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into...
NA - CVE-2024-54133 - Action Pack is a framework for handling and...
Action Pack is a framework for handling and responding to web requests. There is a possible Cross Site Scripting (XSS) vulnerability in the `content_security_policy` helper starting in version...
NA - CVE-2024-55653 - PwnDoc is a penetration test report generator....
PwnDoc is a penetration test report generator. In versions up to and including 0.5.3, an authenticated user is able to crash the backend by raising a `UnhandledPromiseRejection` on audits which...
NA - CVE-2024-55655 - sigstore-python is a Python tool for generating...
sigstore-python is a Python tool for generating and verifying Sigstore signatures. Versions of sigstore-python newer than 2.0.0 but prior to 3.6.0 perform insufficient validation of the...
NA - CVE-2024-12346 - A vulnerability has been found in Talentera up...
A vulnerability has been found in Talentera up to 20241128 and classified as problematic. This vulnerability affects unknown code of the file /app/control/byt_cv_manager. The manipulation of the...