|
cve-2024-37180
|
4.1 (v3.1)
|
[CVE-2024-37180] Information Disclosure vulnerability …
|
SAP_SE
|
SAP NetWeaver Application Server for ABAP and ABAP Platform
|
2024-07-09T04:41:32.313Z |
2024-08-02T03:50:55.233Z |
|
cve-2024-37178
|
5 (v3.1)
|
Cross-Site Scripting (XSS) vulnerabilities in SAP Fina…
|
SAP_SE
|
SAP Financial Consolidation
|
2024-06-11T02:00:27.054Z |
2024-08-02T03:50:55.238Z |
|
cve-2024-37169
|
|
@jmondi/url-to-png arbitrary file read via Playwright'…
|
jasonraimondi
|
url-to-png
|
2024-06-10T21:35:38.198Z |
2024-08-02T03:50:55.256Z |
|
cve-2024-37134
|
6.7 (v3.1)
|
Dell PowerScale OneFS versions 8.2.2.x through 9.…
|
Dell
|
PowerScale OneFS
|
2024-07-02T07:24:07.261Z |
2024-08-02T03:50:55.288Z |
|
cve-2024-37138
|
4.1 (v3.1)
|
Dell PowerProtect DD, versions prior to 8.0, LTS …
|
Dell
|
PowerProtect DD
|
2024-06-26T03:24:40.504Z |
2024-08-02T03:50:55.311Z |
|
cve-2024-37160
|
|
Formwork has a Cross-site scripting (XSS) vulnerabilit…
|
getformwork
|
formwork
|
2024-06-07T14:09:55.132Z |
2024-08-02T03:50:55.370Z |
|
cve-2024-37183
|
5.7 (v3.1)
6.9 (v4.0)
|
Westermo L210-F2G Lynx Cleartext Transmission of Sensi…
|
Westermo
|
L210-F2G Lynx
|
2024-06-20T22:09:21.235Z |
2024-08-02T03:50:55.374Z |
|
cve-2024-37126
|
6.7 (v3.1)
|
Dell PowerScale OneFS versions 8.2.2.x through 9.…
|
Dell
|
PowerScale OneFS
|
2024-07-02T07:28:04.329Z |
2024-08-02T03:50:55.395Z |
|
cve-2024-37182
|
4.7 (v3.1)
|
Lack of permissions prompting when opening external URLs
|
Mattermost
|
Mattermost
|
2024-06-14T08:39:19.578Z |
2024-08-02T03:50:55.403Z |
|
cve-2024-37139
|
6.5 (v3.1)
|
Dell PowerProtect DD, versions prior to 8.0, LTS …
|
Dell
|
PowerProtect DD
|
2024-06-26T03:38:45.473Z |
2024-08-02T03:50:55.487Z |
|
cve-2024-37168
|
|
@grpc/grpc-js can allocate memory for incoming message…
|
grpc
|
grpc-node
|
2024-06-10T21:32:06.403Z |
2024-08-02T03:50:55.550Z |
|
cve-2024-37298
|
|
Potential memory exhaustion attack due to sparse slice…
|
gorilla
|
schema
|
2024-07-01T18:27:33.952Z |
2024-08-02T03:50:55.675Z |
|
cve-2024-37282
|
8.1 (v3.1)
|
It was identified that under certain specific pre…
|
Elastic
|
Elastic Cloud Enterprise
|
2024-06-28T04:58:18.200Z |
2024-08-02T03:50:55.693Z |
|
cve-2024-37312
|
|
Nextcloud user_oidc app's ID4me feature is available e…
|
nextcloud
|
security-advisories
|
2024-06-14T14:43:24.137Z |
2024-08-02T03:50:55.709Z |
|
cve-2024-37315
|
|
Nextcloud Server's read-only users can restore old versions
|
nextcloud
|
security-advisories
|
2024-06-14T15:08:54.357Z |
2024-08-02T03:50:55.709Z |
|
cve-2024-37293
|
|
aws-deployment-framework's potential risk can lead to …
|
awslabs
|
aws-deployment-framework
|
2024-06-11T16:49:33.651Z |
2024-08-02T03:50:55.744Z |
|
cve-2024-37300
|
|
Globus `identity_provider` restriction ignored when us…
|
jupyterhub
|
oauthenticator
|
2024-06-12T15:20:20.363Z |
2024-08-02T03:50:55.855Z |
|
cve-2024-37157
|
|
Discourse vulnerable to Server-Side Request Forgery vi…
|
discourse
|
discourse
|
2024-07-03T19:13:42.868Z |
2024-08-02T03:50:55.878Z |
|
cve-2024-37299
|
|
Discourse vulnerable to DoS via Tag Group
|
discourse
|
discourse
|
2024-07-30T14:22:36.367Z |
2024-08-02T03:50:55.878Z |
|
cve-2024-37343
|
4.8 (v3.1)
|
Cross-site scripting vulnerability in the Absolute Sec…
|
Absolute Software
|
Secure Access
|
2024-06-20T16:30:21.053Z |
2024-08-02T03:50:55.892Z |
|
cve-2024-37349
|
4.5 (v3.1)
|
Cross-site scripting vulnerability in the Absolute Sec…
|
Absolute Software
|
Secure Access
|
2024-06-20T17:11:52.447Z |
2024-08-02T03:50:55.914Z |
|
cve-2024-37381
|
|
An unspecified SQL Injection vulnerability in Cor…
|
Ivanti
|
EPM
|
2024-07-29T05:43:16.144Z |
2024-08-02T03:50:55.937Z |
|
cve-2024-37152
|
|
Unauthenticated Access to sensitive settings in Argo CD
|
argoproj
|
argo-cd
|
2024-06-06T15:33:29.843Z |
2024-08-02T03:50:55.946Z |
|
cve-2024-37347
|
4.5 (v3.1)
|
Cross-site scripting vulnerability in the Absolute Sec…
|
Absolute Software
|
Secure Access
|
2024-06-20T16:56:50.468Z |
2024-08-02T03:50:55.946Z |
|
cve-2024-37294
|
|
Aimeos denial of service vulnerability in SaaS and mar…
|
aimeos
|
aimeos-core
|
2024-06-11T14:16:29.756Z |
2024-08-02T03:50:55.957Z |
|
cve-2024-37317
|
|
Nextcloud Notes app can be tricked into using a receiv…
|
nextcloud
|
security-advisories
|
2024-06-14T15:25:24.475Z |
2024-08-02T03:50:55.961Z |
|
cve-2024-37281
|
6.5 (v3.1)
|
Kibana Denial of Service issue
|
Elastic
|
Kibana
|
2024-07-30T21:45:36.488Z |
2024-08-02T03:50:55.963Z |
|
cve-2024-37306
|
|
CVAT's export and backup-related API endpoints are sus…
|
cvat-ai
|
cvat
|
2024-06-13T14:18:28.853Z |
2024-08-02T03:50:55.964Z |
|
cve-2024-37304
|
|
NuGetGallery's Markdown Autolinks Processing Vulnerabl…
|
NuGet
|
NuGetGallery
|
2024-06-12T14:27:40.184Z |
2024-08-02T03:50:55.991Z |
|
cve-2024-37346
|
4.9 (v3.1)
|
Insufficient input validation vulnerability in the Abs…
|
Absolute Software
|
Secure Access
|
2024-06-20T16:51:37.265Z |
2024-08-02T03:50:55.993Z |