NA - CVE-2022-31670 - Harbor fails to validate the user permissions...
Harbor fails to validate the user permissions when updating tag retention policies. By sending a request to update a tag retention policy with an id that belongs to a project that the currently...
NA - CVE-2022-31671 - Harbor fails to validate user permissions when...
Harbor fails to validate user permissions when reading and updating job execution logs through the P2P preheat execution logs. By sending a request that attempts to read/update P2P preheat...
NA - CVE-2023-4458 - A flaw was found within the parsing of extended...
A flaw was found within the parsing of extended attributes in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past...
NA - CVE-2024-3447 - A heap-based buffer overflow was found in the...
A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of `s->fifo_buffer` are set to 0x200, leading to an...
Low - CVE-2024-45099 - IBM Security ReaQta 3.12 is vulnerable to...
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...
Medium - CVE-2024-45642 - IBM Security ReaQta 3.12 is vulnerable to...
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...
Medium - CVE-2024-45670 - IBM Security SOAR 51.0.1.0 and earlier contains...
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to...
NA - CVE-2024-7730 - A heap buffer overflow was found in the...
A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can...
NA - CVE-2024-10976 - Incomplete tracking in PostgreSQL of tables...
Incomplete tracking in PostgreSQL of tables with row security allows a reused query to view or change different rows from those intended. CVE-2023-2455 and CVE-2016-2193 fixed most interaction...
NA - CVE-2024-10977 - Client use of server error message in...
Client use of server error message in PostgreSQL allows a server not trusted under current SSL or GSS settings to furnish arbitrary non-NUL bytes to the libpq application. For example, a...