Latest CVE Feed
-
9.8
CRITICALCVE-2022-43105
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGusetBasic function.... Read more
- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2022-43104
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.... Read more
- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2022-43103
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the list parameter in the formSetQosBand function.... Read more
- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2022-43102
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.... Read more
- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
7.2
HIGHCVE-2022-43063
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Users.php?f=delete_client.... Read more
Affected Products : online_diagnostic_lab_management_system- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
7.2
HIGHCVE-2022-43062
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_appointment.... Read more
Affected Products : online_diagnostic_lab_management_system- EPSS Score: %0.09
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
7.2
HIGHCVE-2022-43061
Online Tours & Travels Management System v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /operations/travellers.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.... Read more
Affected Products : online_tours_\&_travels_management_system- EPSS Score: %0.12
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2022-42744
CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.... Read more
Affected Products : candidats- EPSS Score: %0.35
- Published: Nov. 03, 2022
- Modified: May. 05, 2025
-
9.6
CRITICALCVE-2022-3708
The Web Stories plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including 1.24.0 due to insufficient validation of URLs supplied via the 'url' parameter found via the /v1/hotlink/proxy REST API Endpoint. This makes... Read more
Affected Products : web_stories- EPSS Score: %0.35
- Published: Oct. 28, 2022
- Modified: May. 05, 2025
-
6.5
MEDIUMCVE-2020-22524
Buffer Overflow vulnerability in FreeImage_Load function in FreeImage Library 3.19.0(r1828) allows attackers to cuase a denial of service via crafted PFM file.... Read more
Affected Products : freeimage- EPSS Score: %0.15
- Published: Aug. 22, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2020-21427
Buffer Overflow vulnerability in function LoadPixelDataRLE8 in PluginBMP.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary code and cause other impacts via crafted image file.... Read more
Affected Products : freeimage- EPSS Score: %0.36
- Published: Aug. 22, 2023
- Modified: May. 05, 2025
-
4.6
MEDIUMCVE-2024-40635
containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where containers launched with a User set as a `UID:GID` larger than the maximum 32-bit signed integer can cause an overflow conditio... Read more
Affected Products : containerd- Published: Mar. 17, 2025
- Modified: May. 04, 2025
-
0.0
NACVE-2022-48802
In the Linux kernel, the following vulnerability has been resolved: fs/proc: task_mmu.c: don't read mapcount for migration entry The syzbot reported the below BUG: kernel BUG at include/linux/page-flags.h:785! invalid opcode: 0000 [#1] PREEMPT SMP ... Read more
Affected Products : linux_kernel- Published: Jul. 16, 2024
- Modified: May. 04, 2025
-
9.8
CRITICALCVE-2025-22457
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code execution.... Read more
- Actively Exploited
- Published: Apr. 03, 2025
- Modified: May. 03, 2025
-
7.5
HIGHCVE-2024-7409
A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline.... Read more
Affected Products : enterprise_linux openshift_container_platform qemu international_components_for_unicode- Published: Aug. 05, 2024
- Modified: May. 02, 2025
-
8.2
HIGHCVE-2024-3446
A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest use... Read more
Affected Products : enterprise_linux- Published: Apr. 09, 2024
- Modified: May. 02, 2025
-
5.1
MEDIUMCVE-2024-3219
The “socket” module provides a pure-Python fallback to the socket.socketpair() function for platforms that don’t support AF_UNIX, such as Windows. This pure-Python implementation uses AF_INET or AF_INET6 to create a local connected pair of sockets. Th... Read more
Affected Products : python- Published: Jul. 29, 2024
- Modified: May. 02, 2025
-
3.6
LOWCVE-2024-37372
The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.... Read more
Affected Products : node.js- Published: Jan. 09, 2025
- Modified: May. 02, 2025
-
9.8
CRITICALCVE-2024-27280
A buffer-overread issue was discovered in StringIO 3.0.1, as distributed in Ruby 3.0.x through 3.0.6 and 3.1.x through 3.1.4. The ungetbyte and ungetc methods on a StringIO can read past the end of a string, and a subsequent call to StringIO.gets may retu... Read more
Affected Products : ruby- Published: May. 14, 2024
- Modified: May. 02, 2025
-
4.0
MEDIUMCVE-2023-28362
The redirect_to method in Rails allows provided values to contain characters which are not legal in an HTTP header value. This results in the potential for downstream services which enforce RFC compliance on HTTP response headers to remove the assigned Lo... Read more
Affected Products : actionpack- Published: Jan. 09, 2025
- Modified: May. 02, 2025