NA - CVE-2024-10648 - A path traversal vulnerability exists in the...
A path traversal vulnerability exists in the Gradio Audio component of gradio-app/gradio, as of version git 98cbcae. This vulnerability allows an attacker to control the format of the audio file,...
NA - CVE-2024-10650 - An unauthenticated Denial of Service (DoS)...
An unauthenticated Denial of Service (DoS) vulnerability was identified in ChuanhuChatGPT version 20240918, which could be exploited by sending large data payloads using a multipart boundary....
NA - CVE-2024-10707 - gaizhenbiao/chuanhuchatgpt version git d4ec6a3...
gaizhenbiao/chuanhuchatgpt version git d4ec6a3 is affected by a local file inclusion vulnerability due to the use of the gradio component gr.JSON, which has a known issue (CVE-2024-4941). This...
NA - CVE-2024-10713 - A vulnerability in szad670401/hyperlpr v3.0...
A vulnerability in szad670401/hyperlpr v3.0 allows for a Denial of Service (DoS) attack. The server fails to handle excessive characters appended to the end of multipart boundaries, regardless of...
NA - CVE-2024-10714 - A vulnerability in binary-husky/gpt_academic...
A vulnerability in binary-husky/gpt_academic version 3.83 allows an attacker to cause a Denial of Service (DoS) by adding excessive characters to the end of a multipart boundary during file upload....
NA - CVE-2024-10718 - In phpipam/phpipam version 1.5.1, the Secure...
In phpipam/phpipam version 1.5.1, the Secure attribute for sensitive cookies in HTTPS sessions is not set. This could cause the user agent to send those cookies in plaintext over an HTTP session,...
NA - CVE-2024-10719 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability exists in phpipam version 1.5.2, specifically in the circuits options functionality. This vulnerability allows an attacker to inject malicious...
NA - CVE-2024-10720 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability exists in phpipam/phpipam version 1.5.2. The vulnerability occurs in the 'Device Management' section under 'Administration'...
NA - CVE-2024-10721 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability was discovered in phpipam/phpipam version 1.5.2. This vulnerability allows an attacker to inject malicious scripts into the application, which can...
NA - CVE-2024-10722 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability exists in phpipam/phpipam version 1.5.2. The vulnerability allows attackers to inject malicious scripts into the 'Description' field of...