NA - CVE-2024-52805 - Synapse is an open-source Matrix homeserver. In...
Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1, multipart/form-data requests can in certain configurations transiently increase memory consumption beyond expected levels...
NA - CVE-2024-52815 - Synapse is an open-source Matrix homeserver....
Synapse is an open-source Matrix homeserver. Synapse versions before 1.120.1 fail to properly validate invites received over federation. This vulnerability allows a malicious server to send a...
NA - CVE-2024-53863 - Synapse is an open-source Matrix homeserver. In...
Synapse is an open-source Matrix homeserver. In Synapse versions before 1.120.1, enabling the dynamic_thumbnails option or processing a specially crafted request could trigger the decoding and...
NA - CVE-2024-53867 - Synapse is an open-source Matrix homeserver....
Synapse is an open-source Matrix homeserver. The Sliding Sync feature on Synapse versions between 1.113.0rc1 and 1.120.0 can leak partial room state changes to users no longer in a room. Non-state...
Medium - CVE-2024-25020 - IBM Cognos Controller 11.0.0 and 11.0.1...
IBM Cognos Controller 11.0.0 and 11.0.1 is vulnerable to malicious file upload by allowing unrestricted filetype attachments in the Journal entry page. Attackers can make use of this...
Medium - CVE-2024-41775 - IBM Cognos Controller 11.0.0 and 11.0.1 uses...
IBM Cognos Controller 11.0.0 and 11.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Medium - CVE-2024-41776 - IBM Cognos Controller 11.0.0 and 11.0.1...
IBM Cognos Controller 11.0.0 and 11.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user...
High - CVE-2024-41777 - IBM Cognos Controller 11.0.0 and 11.0.1...
IBM Cognos Controller 11.0.0 and 11.0.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication...