Latest CVE Feed
-
5.4
MEDIUMCVE-2024-38277
A unique key should be generated for a user's QR login key and their auto-login key, so the same key cannot be used interchangeably between the two.... Read more
- Published: Jun. 18, 2024
- Modified: Aug. 07, 2025
-
6.1
MEDIUMCVE-2024-38274
Insufficient escaping of calendar event titles resulted in a stored XSS risk in the event deletion prompt.... Read more
- Published: Jun. 18, 2024
- Modified: Aug. 07, 2025
-
7.2
HIGHCVE-2024-23115
Centreon updateGroups SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. The specific fl... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
7.2
HIGHCVE-2024-23116
Centreon updateLCARelation SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. The specif... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
7.2
HIGHCVE-2024-23117
Centreon updateContactServiceCommands SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. ... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
7.2
HIGHCVE-2024-23118
Centreon updateContactHostCommands SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. Th... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
8.8
HIGHCVE-2024-23119
Centreon insertGraphTemplate SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. The spec... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
8.8
HIGHCVE-2024-0637
Centreon updateDirectory SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. Authentication is required to exploit this vulnerability. The specific... Read more
- Published: Apr. 01, 2024
- Modified: Aug. 07, 2025
-
6.5
MEDIUMCVE-2024-1930
No Limit on Number of Open Sessions / Bad Session Close Behaviour in dnf5daemon-server before 5.1.17 allows a malicious user to impact Availability via No Limit on Number of Open Sessions. There is no limit on how many sessions D-Bus clients may create ... Read more
Affected Products : dnf5- Published: May. 08, 2024
- Modified: Aug. 07, 2025
-
5.5
MEDIUMCVE-2024-4855
Use after free issue in editcap could cause denial of service via crafted capture file... Read more
- Published: May. 14, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37347
Kofax Power PDF U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulner... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37348
Kofax Power PDF U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37349
Kofax Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37343
Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37350
Kofax Power PDF TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-51569
Kofax Power PDF BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37341
Kofax Power PDF PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-37342
Kofax Power PDF PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit thi... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
4.8
MEDIUMCVE-2024-20256
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Web Appliance could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This ... Read more
Affected Products : secure_email_and_web_manager asyncos secure_email_and_web_manager_virtual_appliance_m100v secure_email_and_web_manager_virtual_appliance_m300v secure_email_and_web_manager_virtual_appliance_m600v secure_email_and_web_manager_m170 secure_email_and_web_manager_m190 secure_email_and_web_manager_m195 secure_email_and_web_manager_m380 secure_email_and_web_manager_m390 +13 more products- Published: May. 15, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2023-51566
Kofax Power PDF OXPS File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit t... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025