NA - CVE-2024-24510 - Cross Site Scripting vulnerability in Alinto...
Cross Site Scripting vulnerability in Alinto SOGo before 5.10.0 allows a remote attacker to execute arbitrary code via the import function to the mail component.
NA - CVE-2024-45296 - path-to-regexp turns path strings into a...
path-to-regexp turns path strings into a regular expressions. In certain cases, path-to-regexp will output a regular expression that can be exploited to cause poor performance. Because JavaScript...
NA - CVE-2024-45411 - Twig is a template language for PHP. Under some...
Twig is a template language for PHP. Under some circumstances, the sandbox security checks are not run which allows user-contributed templates to bypass the sandbox restrictions. This vulnerability...
NA - CVE-2024-7260 - An open redirect vulnerability was found in...
An open redirect vulnerability was found in Keycloak. A specially crafted URL can be constructed where the referrer and referrer_uri parameters are made to trick a user to visit a malicious...