NA - CVE-2024-53261 - SvelteKit is a framework for rapidly developing...
SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte. "Unsanitized input from *the request URL* flows into `end`, where it is used to render an HTML page...
NA - CVE-2024-53262 - SvelteKit is a framework for rapidly developing...
SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte. The static error.html template for errors contains placeholders that are replaced without escaping...
NA - CVE-2024-53268 - Joplin is an open source, privacy-focused note...
Joplin is an open source, privacy-focused note taking app with sync capabilities for Windows, macOS, Linux, Android and iOS. In affected versions attackers are able to abuse the fact that...
NA - CVE-2024-11670 - Incorrect authorization in the permission...
Incorrect authorization in the permission validation component of Devolutions Remote Desktop Manager 2024.2.21 and earlier on Windows allows a malicious authenticated user to bypass the "View...
NA - CVE-2024-11671 - Improper authentication in SQL data source MFA...
Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authenticated user to bypass the MFA validation via data...
NA - CVE-2024-11672 - Incorrect authorization in the add permission...
Incorrect authorization in the add permission component in Devolutions Remote Desktop Manager 2024.2.21 and earlier on Windows allows an authenticated malicious user to bypass the "Add" permission...
NA - CVE-2023-26280 - IBM Jazz Foundation 7.0.2 and 7.0.3 could allow...
IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request due to improper access control.
Medium - CVE-2023-45181 - IBM Jazz Foundation 7.0.2 and below are...
IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...
NA - CVE-2024-45755 - An issue was discovered in Centreon...
An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection can...
NA - CVE-2024-45756 - An issue was discovered in Centreon...
An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection...