Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2024-39527
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the command-line interface (CLI) of Juniper Networks Junos OS on SRX S…
Junos
21.4+
MEDIUM 6.5
CVE-2024-9538
The ShopLentor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.9.8 via the 'render' func…
Shoplentor
2.9.9+
HIGH 7.5
CVE-2024-47868
Gradio is an open-source Python package designed for quick prototyping. This is a **data validation vulnerability** affecting several Gradio componen…
Gradio
5.0.0+
HIGH 7.5
CVE-2024-6747
Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get potentially sensitive da…
Checkmk
2.1.0+
MEDIUM 5.7
CVE-2024-30118
HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitl…
Connections
Mitigation only
HIGH 8.1
CVE-2024-3656
A flaw was found in Keycloak. Certain endpoints in Keycloak's admin REST API allow low-privilege users to access administrative functionalities. This…
No fix yet
HIGH 7.5
CVE-2024-43610
Exposure of Sensitive Information to an Unauthorized Actor in Copilot Studio allows a unauthenticated attacker to view sensitive information through …
Copilot Studio
Mitigation only
MEDIUM 6.5
CVE-2024-43609
Microsoft Office Spoofing Vulnerability
365 Apps
Patch available
CRITICAL 9.8
CVE-2024-8884
CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that
could cause exposure of credentials when attacker has a…
Mitigation only
MEDIUM 5.3
CVE-2024-47344
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Stylemix uListing ulisting.This issue affects uListing: from n/a through …
Mitigation only
HIGH 7.8
CVE-2024-45245
Diebold Nixdorf – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
No fix yet
MEDIUM 6.9
CVE-2024-47848
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - PageTriage allows Authentication Byp…
Mitigation only
HIGH 8.6
CVE-2024-20490
A vulnerability in a logging function of Cisco Nexus Dashboard Fabric Controller (NDFC) and Cisco Nexus Dashboard Orchestrator (NDO) could allow an a…
Nexus Dashboard Fabric Controller
4.2 / 4.4.1.1012+
HIGH 8.6
CVE-2024-20491
A vulnerability in a logging function of Cisco Nexus Dashboard Insights could allow an attacker with access to a tech support file to view sensitive …
Nexus Dashboard Fabric Controller
4.2 / 4.4.1.1012+
MEDIUM 6.3
CVE-2024-46548
TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop on communications and a…
Mitigation only
MEDIUM 6.5
CVE-2024-47532
RestrictedPython is a restricted execution environment for Python to run untrusted code. A user can gain access to protected (and potentially sensibl…
Restrictedpython
7.3+
MEDIUM 6.5
CVE-2024-45792
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Using a crafted POST request, an unprivileged, registered user is able to retrieve inf…
Mantisbt
2.26.4+
HIGH 7.5
CVE-2024-46471
The Directory Listing in /uploads/ Folder in CodeAstro Membership Management System 1.0 exposes the structure and contents of directories, potentiall…
Membership Management System
No fix yet
HIGH 7.5
CVE-2024-47197
Exposure of Sensitive Information to an Unauthorized Actor, Insecure Storage of Sensitive Information vulnerability in Maven Archetype Plugin.
This …
Maven Archetype
Mitigation only
MEDIUM 5.3
CVE-2024-43237
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Steve Burge WordPress Tag Cloud Plugin – Tag Groups tag-groups.This issue…
Mitigation only
MEDIUM 6.5
CVE-2024-8483
The MAS Static Content plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.8 via the static_content(…
Mas Static Content
1.0.9+
MEDIUM 5.3
CVE-2024-7426
The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to Full Path Disclosure in all v…
Peepso
6.4.6.0+
HIGH 7.5
CVE-2023-5359
The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API …
W3 Total Cache
2.7.6+
CRITICAL 9.1
CVE-2024-42351
Galaxy is a free, open-source system for analyzing data, authoring workflows, training and education, publishing tools, managing infrastructure, and …
Galaxy
21.05+
MEDIUM 6.5
CVE-2024-47060
Zitadel is an open source identity management platform. In Zitadel, even after an organization is deactivated, associated projects, respectively thei…
Zitadel
2.54.10 / 2.55.8+
MEDIUM 5.3
CVE-2024-46979
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible to get access to notification …
Xwiki
14.10.21 / 15.5.5+
HIGH 7.7
CVE-2024-46987EPSS 15%
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. A path traversal vulnerability accessible via MediaControlle…
Camaleon Cms
2.8.2+
MEDIUM 6.5
CVE-2024-8969
OMFLOW from The SYSCOM Group has a vulnerability involving the exposure of sensitive data. This allows remote attackers who have logged into the syst…
Mitigation only
MEDIUM 5.5
CVE-2024-44163
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. A malicious application…
macOS
13.7 / 14.7+
MEDIUM 5.5
CVE-2024-44181
An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An …
macOS
13.7 / 14.7+