NA - CVE-2024-45310 - runc is a CLI tool for spawning and running...
runc is a CLI tool for spawning and running containers according to the OCI specification. runc 1.1.13 and earlier, as well as 1.2.0-rc2 and earlier, can be tricked into creating empty files or...
NA - CVE-2024-41434 - PingCAP TiDB v8.1.0 was discovered to contain a...
PingCAP TiDB v8.1.0 was discovered to contain a buffer overflow via the component (*Column).GetDecimal. This allows attackers to cause a Denial of Service (DoS) via a crafted input to the...
NA - CVE-2024-45389 - Pagefind, a fully static search library,...
Pagefind, a fully static search library, initializes its dynamic JavaScript and WebAssembly files relative to the location of the first script the user loads. This information is gathered by...
NA - CVE-2024-45390 - @blakeembrey/template is a string template...
@blakeembrey/template is a string template library. Prior to version 1.2.0, it is possible to inject and run code within the template if the attacker has access to write the template name. Version...
NA - CVE-2024-45391 - Tina is an open-source content management...
Tina is an open-source content management system (CMS). Sites building with Tina CMS's command line interface (CLI) prior to version 1.6.2 that use a search token may be vulnerable to the...
NA - CVE-2024-45678 - Yubico YubiKey 5 Series devices with firmware...
Yubico YubiKey 5 Series devices with firmware before 5.7.0 and YubiHSM 2 devices with firmware before 2.4.0 allow an ECDSA secret-key extraction attack (that requires physical access and expensive...
NA - CVE-2024-4629 - A vulnerability was found in Keycloak. This...
A vulnerability was found in Keycloak. This flaw allows attackers to bypass brute force protection by exploiting the timing of login attempts. By initiating multiple login requests simultaneously,...
NA - CVE-2024-41433 - PingCAP TiDB v8.1.0 was discovered to contain a...
PingCAP TiDB v8.1.0 was discovered to contain a buffer overflow via the component expression.ExplainExpressionList. This vulnerability allows attackers to cause a Denial of Service (DoS) via a...