Latest CVE Feed
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
9.2
CRITICALCVE-2024-9465
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create... Read more
- Actively Exploited
- Published: Oct. 09, 2024
- Modified: Nov. 15, 2024
-
6.1
MEDIUMCVE-2024-36275
NULL pointer dereference in some Intel(R) Optane(TM) PMem Management software versions before CR_MGMT_02.00.00.4040, CR_MGMT_03.00.00.0499 may allow a authenticated user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
6.8
MEDIUMCVE-2024-23198
Improper input validation in firmware for some Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi products before version 23.40 may allow an unauthenticated user to enable denial of service via adjacent access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
5.5
MEDIUMCVE-2024-36284
Improper input validation in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
2.2
LOWCVE-2024-28030
NULL pointer dereference in some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
4.3
MEDIUMCVE-2024-52549
Jenkins Script Security Plugin 1367.vdf2fc45f229c and earlier, except 1365.1367.va_3b_b_89f8a_95b_ and 1362.1364.v4cf2dc5d8776, does not perform a permission check in a method implementing form validation, allowing attackers with Overall/Read permission t... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
8.7
HIGHCVE-2024-40885
Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
6.7
MEDIUMCVE-2024-25647
Incorrect default permissions for some Intel(R) Binary Configuration Tool software for Windows before version 3.4.5 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
7.7
HIGHCVE-2024-45594
Decidim is a participatory democracy framework. The meeting embeds feature used in the online or hybrid meetings is subject to potential XSS attack through a malformed URL. This vulnerability is fixed in 0.28.3 and 0.29.0.... Read more
Affected Products : decidim- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024