NA - CVE-2024-52787 - An issue in the upload_documents method of...
An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename in an uploaded file.
NA - CVE-2024-7915 - The application Sensei Mac Cleaner contains a...
The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing an attacker to perform multiple operations as the root user. These operations include arbitrary file...
NA - CVE-2024-8272 - The com.uaudio.bsd.helper service, responsible...
The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to implement critical client validation during XPC inter-process communication (IPC). Specifically, the...
NA - CVE-2024-11403 - There exists an out of bounds read/write in...
There exists an out of bounds read/write in LibJXL versions prior to commit 9cc451b91b74ba470fd72bd48c121e9f33d24c99. The JPEG decoder used by the JPEG XL encoder when doing JPEG recompression...
NA - CVE-2024-11498 - There exists a stack buffer overflow in libjxl....
There exists a stack buffer overflow in libjxl. A specifically-crafted file can cause the JPEG XL decoder to use large amounts of stack space (up to 256mb is possible, maybe 512mb), potentially...
NA - CVE-2024-27134 - Excessive directory permissions in MLflow leads...
Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf. This behavior can be exploited by a local attacker to gain elevated permissions by using a ToCToU...
Critical - CVE-2024-11647 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in 1000 Projects Beauty Parlour Management System 1.0. Affected by this issue is some unknown functionality of the file...
Critical - CVE-2024-11648 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. This affects an unknown part of the file /admin/add-customer.php. The...
Critical - CVE-2024-11649 - A vulnerability has been found in 1000 Projects...
A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/search-appointment.php....
NA - CVE-2024-11650 - A vulnerability was found in Tenda i9...
A vulnerability was found in Tenda i9 1.0.0.8(3828) and classified as critical. This issue affects the function websReadEvent of the file /goform/GetIPTV. The manipulation leads to null pointer...