NA - CVE-2024-9693 - An issue was discovered in GitLab CE/EE...
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have...
NA - CVE-2022-31666 - Harbor fails to validate user permissions while...
Harbor fails to validate user permissions while deleting Webhook policies, allowing malicious users to view, update and delete Webhook policies of other users. The attacker could modify Webhook...
NA - CVE-2022-31667 - Harbor fails to validate the user permissions...
Harbor fails to validate the user permissions when updating a robot account that belongs to a project that the authenticated user doesn’t have access to. By sending a request that attempts to...
NA - CVE-2022-31668 - Harbor fails to validate the user permissions...
Harbor fails to validate the user permissions when updating p2p preheat policies. By sending a request to update a p2p preheat policy with an id that belongs to a project that the currently...
NA - CVE-2022-31669 - Harbor fails to validate the user permissions...
Harbor fails to validate the user permissions when updating tag immutability policies. By sending a request to update a tag immutability policy with an id that belongs to a project that the...
NA - CVE-2022-31670 - Harbor fails to validate the user permissions...
Harbor fails to validate the user permissions when updating tag retention policies. By sending a request to update a tag retention policy with an id that belongs to a project that the currently...
NA - CVE-2022-31671 - Harbor fails to validate user permissions when...
Harbor fails to validate user permissions when reading and updating job execution logs through the P2P preheat execution logs. By sending a request that attempts to read/update P2P preheat...
NA - CVE-2023-4458 - A flaw was found within the parsing of extended...
A flaw was found within the parsing of extended attributes in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past...
NA - CVE-2024-3447 - A heap-based buffer overflow was found in the...
A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of `s->fifo_buffer` are set to 0x200, leading to an...
Low - CVE-2024-45099 - IBM Security ReaQta 3.12 is vulnerable to...
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...