|
cve-2024-41689
|
5.2 (v4.0)
|
Hard-coded Credentials Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T11:59:38.725Z |
2024-08-02T04:46:52.664Z |
|
cve-2024-41664
|
|
Blind SSRF via Canarytoken Webhook
|
thinkst
|
canarytokens
|
2024-07-23T16:59:59.755Z |
2024-08-02T04:46:52.665Z |
|
cve-2024-41655
|
|
TF2 Item Format Regular Expression Denial of Service v…
|
danocmx
|
node-tf2-item-format
|
2024-07-23T14:49:34.078Z |
2024-08-02T04:46:52.666Z |
|
cve-2024-41670
|
|
PayPal Official Module for PrestaShop has Improperly I…
|
202ecommerce
|
paypal
|
2024-07-26T14:46:14.226Z |
2024-08-02T04:46:52.667Z |
|
cve-2024-41696
|
7.5 (v3.1)
|
Priority PRI WEB Portal Add-On for Priority ERP on pre…
|
Priority
|
PRI WEB Portal Add-On for Priority ERP on prem
|
2024-07-30T09:09:11.086Z |
2024-08-02T04:46:52.667Z |
|
cve-2024-41801
|
|
OpenProject packaged installation has Open Redirect Vu…
|
opf
|
openproject
|
2024-07-25T16:50:16.180Z |
2024-08-02T04:46:52.668Z |
|
cve-2024-41804
|
|
Xibo allows Sensitive Information Disclosure abusing S…
|
xibosignage
|
xibo-cms
|
2024-07-30T15:51:53.961Z |
2024-08-02T04:46:52.668Z |
|
cve-2024-41828
|
2.6 (v3.1)
|
In JetBrains TeamCity before 2024.07 comparison o…
|
JetBrains
|
TeamCity
|
2024-07-22T14:50:23.908Z |
2024-08-02T04:46:52.671Z |
|
cve-2024-41685
|
6.9 (v4.0)
|
Cookie Without HTTPOnly Flag Set Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T11:41:53.968Z |
2024-08-02T04:46:52.672Z |
|
cve-2024-41686
|
7.3 (v4.0)
|
Password Policy Bypass Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T11:45:18.109Z |
2024-08-02T04:46:52.678Z |
|
cve-2024-41662
|
|
VNote vulnerable to Markdown XSS, which leads to RCE
|
vnotex
|
vnote
|
2024-07-24T16:55:37.447Z |
2024-08-02T04:46:52.680Z |
|
cve-2024-41827
|
7.4 (v3.1)
|
In JetBrains TeamCity before 2024.07 access token…
|
JetBrains
|
TeamCity
|
2024-07-22T14:50:23.371Z |
2024-08-02T04:46:52.680Z |
|
cve-2024-41663
|
|
Canarytoken "Cloned Website" Vulnerable to Stored Cros…
|
thinkst
|
canarytokens
|
2024-07-23T16:06:15.405Z |
2024-08-02T04:46:52.682Z |
|
cve-2024-41692
|
8.6 (v4.0)
|
Incorrect Access Control Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T12:11:27.774Z |
2024-08-02T04:46:52.682Z |
|
cve-2024-41803
|
|
Xibo allows Sensitive Information Disclosure abusing S…
|
xibosignage
|
xibo-cms
|
2024-07-30T15:49:51.716Z |
2024-08-02T04:46:52.683Z |
|
cve-2024-41690
|
7 (v4.0)
|
Default Credential Storage in Plaintext Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T12:02:29.466Z |
2024-08-02T04:46:52.684Z |
|
cve-2024-41726
|
N/A
|
Path traversal vulnerability exists in SKYSEA Cli…
|
Sky Co.,LTD.
|
SKYSEA Client View
|
2024-07-29T08:51:08.388Z |
2024-08-02T04:46:52.686Z |
|
cve-2024-41702
|
9.8 (v3.1)
|
SiberianCMS – CWE-89: Improper Neutralization of Speci…
|
SiberianCMS
|
SiberianCMS v5.0.8
|
2024-07-30T09:18:04.027Z |
2024-08-02T04:46:52.687Z |
|
cve-2024-41812
|
|
txtdot SSRF vulnerability in /get
|
TxtDot
|
txtdot
|
2024-07-26T16:49:52.343Z |
2024-08-02T04:46:52.687Z |
|
cve-2024-41826
|
3.5 (v3.1)
|
In JetBrains TeamCity before 2024.07 stored XSS w…
|
JetBrains
|
TeamCity
|
2024-07-22T14:50:22.717Z |
2024-08-02T04:46:52.691Z |
|
cve-2024-41829
|
3.5 (v3.1)
|
In JetBrains TeamCity before 2024.07 an OAuth cod…
|
JetBrains
|
TeamCity
|
2024-07-22T14:50:24.527Z |
2024-08-02T04:46:52.691Z |
|
cve-2024-41802
|
|
Xibo allows Sensitive Information Disclosure abusing S…
|
xibosignage
|
xibo-cms
|
2024-07-30T15:49:52.120Z |
2024-08-02T04:46:52.692Z |
|
cve-2024-41800
|
|
Craft CMS Allows TOTP Token To Stay Valid After Use
|
craftcms
|
cms
|
2024-07-25T16:12:58.907Z |
2024-08-02T04:46:52.695Z |
|
cve-2024-41815
|
|
Starship vulnerable to shell injection via undocumente…
|
starship
|
starship
|
2024-07-26T21:01:48.605Z |
2024-08-02T04:46:52.696Z |
|
cve-2024-41684
|
6.9 (v4.0)
|
Cookie Without Secure Flag Set Vulnerability
|
SyroTech
|
SyroTech SY-GPON-1110-WDONT router
|
2024-07-26T11:34:53.978Z |
2024-08-02T04:46:52.723Z |
|
cve-2024-41701
|
5.3 (v3.1)
|
AccuPOS – CWE-200: Exposure of Sensitive Information t…
|
AccuPOS
|
AccuPOS
|
2024-07-30T09:12:53.158Z |
2024-08-02T04:46:52.730Z |
|
cve-2024-41640
|
N/A
|
Cross Site Scripting (XSS) vulnerability in AML S…
|
n/a
|
n/a
|
2024-07-29T00:00:00.000Z |
2024-08-02T04:46:52.822Z |
|
cve-2024-41676
|
|
Magento LTS vulnerable to stored Cross-site Scripting …
|
OpenMage
|
magento-lts
|
2024-07-29T14:46:26.806Z |
2024-08-02T04:46:52.910Z |
|
cve-2024-41825
|
4.6 (v3.1)
|
In JetBrains TeamCity before 2024.07 stored XSS w…
|
JetBrains
|
TeamCity
|
2024-07-22T14:50:22.219Z |
2024-08-02T04:46:52.915Z |
|
cve-2024-41672
|
|
DuckDB: sniff_csv provides filesystem access even when…
|
duckdb
|
duckdb
|
2024-07-24T17:47:20.626Z |
2024-08-02T04:46:52.916Z |