NA - CVE-2024-44815 - Vulnerability in Hathway Skyworth Router CM5100...
Vulnerability in Hathway Skyworth Router CM5100 v.4.1.1.24 allows a physically proximate attacker to obtain user credentials via SPI flash Firmware W25Q64JV.
NA - CVE-2024-45407 - Sunshine is a self-hosted game stream host for...
Sunshine is a self-hosted game stream host for Moonlight. Clients that experience a MITM attack during the pairing process may inadvertantly allow access to an unintended client rather than failing...
NA - CVE-2024-45412 - Yeti bridges the gap between CTI and DFIR...
Yeti bridges the gap between CTI and DFIR practitioners by providing a Forensics Intelligence platform and pipeline. Remote user-controlled data tags can reach a Unicode normalization with a...
NA - CVE-2024-45591 - XWiki Platform is a generic wiki platform. The...
XWiki Platform is a generic wiki platform. The REST API exposes the history of any page in XWiki of which the attacker knows the name. The exposed information includes for each modification of the...
NA - CVE-2024-45592 - auditor-bundle, formerly known as...
auditor-bundle, formerly known as DoctrineAuditBundle, integrates auditor library into any Symfony 3.4+ application. Prior to 6.0.0, there is an unescaped entity property enabling Javascript...
NA - CVE-2024-45593 - Nix is a package manager for Linux and other...
Nix is a package manager for Linux and other Unix systems. A bug in Nix 2.24 prior to 2.24.6 allows a substituter or malicious user to craft a NAR that, when unpacked by Nix, causes Nix to write to...
NA - CVE-2024-45595 - D-Tale is a visualizer for Pandas data...
D-Tale is a visualizer for Pandas data structures. Users hosting D-Tale publicly can be vulnerable to remote code execution allowing attackers to run malicious code on the server. Users should...
Medium - CVE-2024-6876 - Out-of-Bounds read vulnerability in OSCAT Basic...
Out-of-Bounds read vulnerability in OSCAT Basic Library allows an local, unprivileged attacker to access limited internal data of the PLC which may lead to a crash of the affected service.
NA - CVE-2023-6841 - A denial of service vulnerability was found in...
A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when...