NA - CVE-2024-38860 - Improper neutralization of input in Checkmk...
Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that can facilitate phishing attacks.
NA - CVE-2024-47047 - An issue was discovered in the powermail...
An issue was discovered in the powermail extension through 12.4.0 for TYPO3. It fails to validate the mail parameter of the createAction, resulting in Insecure Direct Object Reference (IDOR) in...
NA - CVE-2024-47049 - The czim/file-handling package before 1.5.0 and...
The czim/file-handling package before 1.5.0 and 2.x before 2.3.0 (used with PHP Composer) does not properly validate URLs within makeFromUrl and makeFromAny, leading to SSRF, and to directory...
NA - CVE-2021-27916 - Prior to the patched version, logged in users...
Prior to the patched version, logged in users of Mautic are vulnerable to Relative Path Traversal/Arbitrary File Deletion. Regardless of the level of access the Mautic user had, they could delete...
NA - CVE-2024-7788 - Improper Digital Signature Invalidation...
Improper Digital Signature Invalidation vulnerability in Zip Repair Mode of The Document Foundation LibreOffice allows Signature forgery vulnerability in LibreOfficeThis issue affects LibreOffice:...
NA - CVE-2024-8939 - A vulnerability was found in the ilab model...
A vulnerability was found in the ilab model serve component, where improper handling of the best_of parameter in the vllm JSON web API can lead to a Denial of Service (DoS). The API used for...
NA - CVE-2024-38380 - This vulnerability occurs when user-supplied...
This vulnerability occurs when user-supplied input is improperly sanitized and then reflected back to the user's browser, allowing an attacker to execute arbitrary JavaScript in the context of...