NA - CVE-2024-43376 - Umbraco is an ASP.NET CMS. Some endpoints in...
Umbraco is an ASP.NET CMS. Some endpoints in the Management API can return stack trace information, even when Umbraco is not in debug mode. This vulnerability is fixed in 14.1.2.
NA - CVE-2024-43397 - Apollo is a configuration management system. A...
Apollo is a configuration management system. A vulnerability exists in the synchronization configuration feature that allows users to craft specific requests to bypass permission checks. This...
NA - CVE-2024-43404 - MEGABOT is a fully customized Discord bot for...
MEGABOT is a fully customized Discord bot for learning and fun. The `/math` command and functionality of MEGABOT versions < 1.5.0 contains a remote code execution vulnerability due to a Python...
NA - CVE-2024-43406 - LF Edge eKuiper is a lightweight IoT data...
LF Edge eKuiper is a lightweight IoT data analytics and stream processing engine running on resource-constraint edge devices. A user could utilize and exploit SQL Injection to allow the execution...
NA - CVE-2024-43409 - Ghost is a Node.js content management system....
Ghost is a Node.js content management system. Improper authentication on some endpoints used for member actions would allow an attacker to perform member-only actions, and read member information....