NA - CVE-2024-25623 - Mastodon is a free, open-source social network...
Mastodon is a free, open-source social network server based on ActivityPub. Prior to versions 4.2.7, 4.1.15, 4.0.15, and 3.5.19, when fetching remote statuses, Mastodon doesn't check that the...
NA - CVE-2024-25625 - Pimcore's Admin Classic Bundle provides a...
Pimcore's Admin Classic Bundle provides a Backend UI for Pimcore. A potential security vulnerability has been discovered in `pimcore/admin-ui-classic-bundle` prior to version 1.3.4. The...
NA - CVE-2024-1633 - During the secure boot, bl2 (the second stage...
During the secure boot, bl2 (the second stage of the bootloader) loops over images defined in the table “bl2_mem_params_descs”. For each image, the bl2 reads the image length and destination from...
NA - CVE-2024-25980 - Separate Groups mode restrictions were not...
Separate Groups mode restrictions were not honored in the H5P attempts report, which would display users from other groups. By default this only provided additional access to non-editing teachers.
NA - CVE-2024-25981 - Separate Groups mode restrictions were not...
Separate Groups mode restrictions were not honored when performing a forum export, which would export forum data for all groups. By default this only provided additional access to non-editing...
NA - CVE-2024-25983 - Insufficient checks in a web service made it...
Insufficient checks in a web service made it possible to add comments to the comments block on another user's dashboard when it was not otherwise available (e.g., on their profile page).
NA - CVE-2023-50257 - eProsima Fast DDS (formerly Fast RTPS) is a C++...
eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Even with the application of SROS2, due to the issue where...