Date: August 9, 2024 Revision Date Changes 1.0 July 23, 2024 Initial release 1.1 August 9, 2024 Clarification of affected systems The CVE-ID tracking this issue: CVE-2024-27891CVSSv3.1 Base Score: 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N...
NA - CVE-2023-52886 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix race by not overwriting udev->descriptor in hub_port_init() Syzbot reported an out-of-bounds read in...
NA - CVE-2024-39887 - An SQL Injection vulnerability in Apache...
An SQL Injection vulnerability in Apache Superset exists due to improper neutralization of special elements used in SQL commands. Specifically, certain engine-specific functions are not checked,...
Medium - CVE-2024-6579 - The Web and WooCommerce Addons for WPBakery...
The Web and WooCommerce Addons for WPBakery Builder plugin for WordPress is vulnerable to unauthorized plugin settings modification due to a missing capability check on several plugin functions in...
Critical - CVE-2024-6457 - The HUSKY – Products Filter Professional for...
The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to time-based SQL Injection via the ‘woof_author’ parameter in all versions up to, and including, 1.3.6...