NA - CVE-2024-7736 - A reflected Cross-site Scripting (XSS)...
A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to...
NA - CVE-2024-7737 - A stored Cross-site Scripting (XSS)...
A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script...
NA - CVE-2024-8375 - There exists a use after free vulnerability in...
There exists a use after free vulnerability in Reverb. Reverb supports the VARIANT datatype, which is supposed to represent an arbitrary object in C++. When a tensor proto of type VARIANT is...
High - CVE-2024-8698 - A flaw exists in the SAML signature validation...
A flaw exists in the SAML signature validation method within the Keycloak XMLSignatureUtil class. The method incorrectly determines whether a SAML signature is for the full document or only for...
Medium - CVE-2024-8883 - A misconfiguration flaw was found in Keycloak....
A misconfiguration flaw was found in Keycloak. This issue can allow an attacker to redirect users to an arbitrary URL if a 'Valid Redirect URI' is set to http://localhost or...
NA - CVE-2024-8651 - A vulnerability in NetCat CMS allows an...
A vulnerability in NetCat CMS allows an attacker to send a specially crafted http request that can be used to check whether a user exists in the system, which could be a basis for further attacks....
NA - CVE-2024-8652 - A vulnerability in NetCat CMS allows an...
A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific path on the site. This issue affects NetCat CMS v. 6.4.0.24126.2 and...