NA - CVE-2024-25626 - Yocto Project is an open source collaboration...
Yocto Project is an open source collaboration project that helps developers create custom Linux-based systems regardless of the hardware architecture. In Yocto Projects Bitbake before 2.6.2 (before...
NA - CVE-2024-25634 - alf.io is an open source ticket reservation...
alf.io is an open source ticket reservation system. Prior to version 2.0-Mr-2402, an attacker can access data from other organizers. The attacker can use a specially crafted request to receive the...
NA - CVE-2024-25635 - alf.io is an open source ticket reservation...
alf.io is an open source ticket reservation system. Prior to version 2.0-Mr-2402, organization owners can view the generated API KEY and USERS of other organization owners using the...
NA - CVE-2024-25636 - Misskey is an open source, decentralized social...
Misskey is an open source, decentralized social media platform with ActivityPub support. Prior to version 2024.2.0, when fetching remote Activity Streams objects, Misskey doesn't check that...
NA - CVE-2024-25640 - Iris is a web collaborative platform that helps...
Iris is a web collaborative platform that helps incident responders share technical details during investigations. A stored Cross-Site Scripting (XSS) vulnerability has been identified in iris-web,...
NA - CVE-2023-6260 - Improper Neutralization of Special Elements...
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Brivo ACS100, ACS300 allows OS Command Injection, Bypassing Physical...
NA - CVE-2024-1635 - A vulnerability was found in Undertow. This...
A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection with the HTTP port...
NA - CVE-2024-1638 - The documentation specifies that the...
The documentation specifies that the BT_GATT_PERM_READ_LESC and BT_GATT_PERM_WRITE_LESC defines for a Bluetooth characteristic: Attribute read/write permission with LE Secure Connection encryption....
NA - CVE-2024-26129 - PrestaShop is an open-source e-commerce...
PrestaShop is an open-source e-commerce platform. Starting in version 8.1.0 and prior to version 8.1.4, PrestaShop is vulnerable to path disclosure in a JavaScript variable. A patch is available in...