NA - CVE-2024-53858 - The gh cli is GitHub’s official command line...
The gh cli is GitHub’s official command line tool. A security vulnerability has been identified in the GitHub CLI that could leak authentication tokens when cloning repositories containing `git`...
NA - CVE-2024-53859 - go-gh is a Go module for interacting with the...
go-gh is a Go module for interacting with the `gh` utility and the GitHub API from the command line. A security vulnerability has been identified in `go-gh` that could leak authentication tokens...
NA - CVE-2024-53860 - sp-php-email-handler is a PHP package for...
sp-php-email-handler is a PHP package for handling contact form submissions. Messages sent using this script are vulnerable to abuse, as the script allows anybody to specify arbitrary email...
Date: December 5, 2024 Revision Date Changes 1.0 November 26, 2024 Initial release 1.1 December 5, 2024 Update the affected and fixed EOS versions The CVE-ID tracking this issue: CVE-2024-6437 CVSSv3.1 Base Score: 5.8 (CVSS:3.1/ AV:N/AC:L/PR:N/UI:N/S...
NA - CVE-2024-11674 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in CodeAstro Hospital Management System 1.0. Affected is an unknown function of the file /backend/doc/his_doc_update-account.php. The...
NA - CVE-2024-53843 - @dapperduckling/keycloak-connector-server is an...
@dapperduckling/keycloak-connector-server is an opinionated series of libraries for Node.js applications and frontend clients to interface with keycloak. A Reflected Cross-Site Scripting (XSS)...
NA - CVE-2024-11675 - A vulnerability has been found in CodeAstro...
A vulnerability has been found in CodeAstro Hospital Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file...
NA - CVE-2024-11676 - A vulnerability was found in CodeAstro Hospital...
A vulnerability was found in CodeAstro Hospital Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file...
High - CVE-2024-52899 - IBM Data Virtualization Manager for z/OS 1.1...
IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject malicious JDBC URL parameters and execute code on the server.
High - CVE-2024-10729 - The Booking & Appointment Plugin for...
The Booking & Appointment Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the...