Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2024-35176
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an att…
Rexml
3.2.7+
MEDIUM 5.3
CVE-2024-35185
Minder is a software supply chain security platform. Prior to version 0.0.49, the Minder REST ingester is vulnerable to a denial of service attack vi…
Patch available
MEDIUM 5.3
CVE-2024-34358
TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS…
TYPO3
9.5.48 / 10.4.45+
MEDIUM 6.5
CVE-2024-33495
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT278…
Mitigation only
MEDIUM 5.5
CVE-2024-25969
Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an allocation of resources without limits or throttling vulnerability. A local unauthen…
Powerscale Onefs
9.4.0.18 / 9.5.0.8+
MEDIUM 6.5
CVE-2024-4539
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and sta…
GitLab
16.9.7 / 16.10.5+
MEDIUM 6.8
CVE-2024-32874
Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Below 0.13.2 Release, when uploading a file or retriev…
Patch available
MEDIUM 6.5
CVE-2024-2454EPSS 33%
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and st…
GitLab
16.9.7 / 16.10.5+
MEDIUM 5.5
CVE-2024-27804
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.3, w…
Ipados
1.3 / 10.5+
MEDIUM 5.5
CVE-2024-0026
In multiple functions of SnoozeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local den…
Android
Patch available
MEDIUM 5.5
CVE-2024-0027
In multiple functions of SnoozeHelper.java, there is a possible way to cause a boot loop due to resource exhaustion. This could lead to local denial …
Android
Patch available
HIGH 7.5
CVE-2024-32663
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, a sm…
Suricata
6.0.19 / 7.0.5+
HIGH 7.5
CVE-2024-4140
An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME mes…
Fedora
1.954+
MEDIUM 5.5
CVE-2024-27013
In the Linux kernel, the following vulnerability has been resolved:
tun: limit printing rate when illegal packet received by tun dev
vhost_worker w…
Linux Kernel
4.19.313 / 5.4.275+
HIGH 7.5
CVE-2024-34046
The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->sctpParams->e2tCounters[IN_SUCC][MSG_C…
Mitigation only
MEDIUM 6.5
CVE-2024-4183
Mattermost versions 8.1.x before 8.1.12, 9.6.x before 9.6.1, 9.5.x before 9.5.3, 9.4.x before 9.4.5 fail to limit the number of active sessions, whic…
Mattermost Server
8.1.12 / 9.4.5+
MEDIUM 6.5
CVE-2024-22091
Mattermost versions 8.1.x <= 8.1.10, 9.6.x <= 9.6.0, 9.5.x <= 9.5.2 and 8.1.x <= 8.1.11 fail to limit the size of a request path that includes user i…
Mattermost Server
8.1.12 / 9.5.3+
HIGH 7.5
CVE-2024-25026
IBM WebSphere Application Server 8.5, 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.4 are vulnerable to a denial of servic…
Websphere Application Server
after 24.0.0.4
HIGH 7.5
CVE-2024-32660
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.5.1, a malicious server can crash the FreeRDP client by sending i…
Fedora
2.11.7 / 3.5.1+
MEDIUM 6.5
CVE-2024-31208
Synapse is an open-source Matrix homeserver. A remote Matrix user with malicious intent, sharing a room with Synapse instances before 1.105.1, can di…
Fedora
1.105.1+
MEDIUM 6.5
CVE-2024-31994
Mealie is a self hosted recipe manager and meal planner. Prior to 1.4.0, an attacker can point the image request to an arbitrarily large file. Mealie…
Mealie
1.4.0+
MEDIUM 6.5
CVE-2024-31992
Mealie is a self hosted recipe manager and meal planner. Prior to 1.4.0, the safe_scrape_html function utilizes a user-controlled URL to issue a requ…
Mealie
1.4.0+
MEDIUM 6.0
CVE-2024-26894
In the Linux kernel, the following vulnerability has been resolved:
ACPI: processor_idle: Fix memory leak in acpi_processor_power_exit()
After unre…
Linux Kernel
4.19.311 / 5.4.273+
HIGH 7.7
CVE-2024-31446
OpenComputers is a Minecraft mod that adds programmable computers and robots to the game. A user can use OpenComputers to get a Computer thread stuck…
Patch available
MEDIUM 5.3
CVE-2024-1666
In lunary-ai/lunary version 1.0.0, an authorization flaw exists that allows unauthorized radar creation. The vulnerability stems from the lack of ser…
Lunary
1.2.7+
MEDIUM 6.5
CVE-2024-32035
ImageSharp is a 2D graphics API. A vulnerability discovered in the ImageSharp library, where the processing of specially crafted files can lead to ex…
Imagesharp
2.1.8 / 3.1.4+
HIGH 7.5
CVE-2024-29903
Cosign provides code signing and transparency for containers and binaries. Prior to version 2.2.4, maliciously-crafted software artifacts can cause d…
Cosign
2.2.4+
MEDIUM 5.9
CVE-2024-29902
Cosign provides code signing and transparency for containers and binaries. Prior to version 2.2.4, a remote image with a malicious attachment can cau…
Cosign
2.2.4+
MEDIUM 5.5
CVE-2021-47182
In the Linux kernel, the following vulnerability has been resolved:
scsi: core: Fix scsi_mode_sense() buffer length handling
Several problems exist…
Linux Kernel
5.15.5+
HIGH 7.5
CVE-2024-3382
A memory leak exists in Palo Alto Networks PAN-OS software that enables an attacker to send a burst of crafted packets through the firewall that even…
Pan Os
10.2.7 / 11.0.4+