NA - CVE-2023-38844 - SQL injection vulnerability in PMB v.7.4.7 and...
SQL injection vulnerability in PMB v.7.4.7 and earlier allows a remote attacker to execute arbitrary code via the thesaurus parameter in export_skos.php.
NA - CVE-2024-23654 - discourse-ai is the AI plugin for the...
discourse-ai is the AI plugin for the open-source discussion platform Discourse. Prior to commit 94ba0dadc2cf38e8f81c3936974c167219878edd, interactions with different AI services are vulnerable to...
NA - CVE-2024-25124 - Fiber is a web framework written in go. Prior...
Fiber is a web framework written in go. Prior to version 2.52.1, the CORS middleware allows for insecure configurations that could potentially expose the application to multiple CORS-related...
NA - CVE-2023-51828 - A SQL Injection vulnerability in...
A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthenticated attackers to execute arbitrary SQL commands via the query parameter...
NA - CVE-2023-52153 - A SQL Injection vulnerability in...
A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthenticated attackers to inject arbitrary SQL commands via the PmbOpac-LOGIN...
NA - CVE-2023-52155 - A SQL Injection vulnerability in...
A SQL Injection vulnerability in /admin/sauvegarde/run.php in PMB 7.4.7 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via the sauvegardes variable through the...
NA - CVE-2023-3509 - An issue has been discovered in GitLab...
An issue has been discovered in GitLab affecting all versions before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. It was possible for group...
NA - CVE-2024-26147 - Helm is a package manager for Charts for...
Helm is a package manager for Charts for Kubernetes. Versions prior to 3.14.2 contain an uninitialized variable vulnerability when Helm parses index and plugin yaml files missing expected content....
NA - CVE-2024-26148 - Querybook is a user interface for querying big...
Querybook is a user interface for querying big data. Prior to version 3.31.1, there is a vulnerability in Querybook's rich text editor that enables users to input arbitrary URLs without...