Latest CVE Feed
-
4.9
MEDIUMCVE-2024-21203
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with net... Read more
- Published: Oct. 15, 2024
- Modified: Mar. 13, 2025
-
6.1
MEDIUMCVE-2024-21202
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). Supported versions that are affected are 8.59, 8.60 and 8.61. Easily exploitable vulnerability allows unauthenticated attacker with net... Read more
- Published: Oct. 15, 2024
- Modified: Mar. 13, 2025
-
4.9
MEDIUMCVE-2024-21201
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker wi... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
4.9
MEDIUMCVE-2024-21200
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoco... Read more
- Published: Oct. 15, 2024
- Modified: Nov. 21, 2024
-
4.9
MEDIUMCVE-2024-21199
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network ... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
4.9
MEDIUMCVE-2024-21198
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with net... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
4.9
MEDIUMCVE-2024-21197
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged at... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
6.5
MEDIUMCVE-2024-21196
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with... Read more
- Published: Oct. 15, 2024
- Modified: Mar. 13, 2025
-
7.6
HIGHCVE-2024-21195
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Layout Templates). Supported versions that are affected are 7.0.0.0.0, 7.6.0.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with networ... Read more
Affected Products : bi_publisher- Published: Oct. 15, 2024
- Modified: Mar. 13, 2025
-
4.9
MEDIUMCVE-2024-21194
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network ... Read more
- Published: Oct. 15, 2024
- Modified: Mar. 13, 2025
-
4.9
MEDIUMCVE-2024-21193
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with netw... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 18, 2024
-
4.4
MEDIUMCVE-2024-21192
Vulnerability in the Oracle Enterprise Manager for Fusion Middleware product of Oracle Fusion Middleware (component: WebLogic Mgmt). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows high privileged attacker w... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 18, 2024
-
7.6
HIGHCVE-2024-21191
Vulnerability in the Oracle Enterprise Manager Fusion Middleware Control product of Oracle Fusion Middleware (component: FMW Control Plugin). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged at... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 18, 2024
-
7.5
HIGHCVE-2024-21190
Vulnerability in the Oracle Global Lifecycle Management FMW Installer product of Oracle Fusion Middleware (component: Cloning). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with n... Read more
- Published: Oct. 15, 2024
- Modified: Oct. 18, 2024
-
9.0
CRITICALCVE-2024-21172
Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications (component: Opera Servlet). Supported versions that are affected are 5.6.19.19, 5.6.25.8 and 5.6.26.4. Difficult to exploit vulnerability allows unauthenticated a... Read more
Affected Products : hospitality_opera_5- Published: Oct. 15, 2024
- Modified: Oct. 21, 2024
-
7.5
HIGHCVE-2024-41344
A Cross-Site Request Forgery (CSRF) in Codeigniter 3.1.13 allows attackers to arbitrarily change the Administrator password and escalate privileges.... Read more
Affected Products : codeigniter- Published: Oct. 15, 2024
- Modified: Aug. 01, 2025
-
8.8
HIGHCVE-2024-35584
SQL injection vulnerabilities were discovered in Ajax.php, ForWindow.php, ForExport.php, Modules.php, functions/HackingLogFnc.php in OpenSis Community Edition 9.1 to 8.0, and possibly earlier versions. It is possible for an authenticated user to perform S... Read more
- Published: Oct. 15, 2024
- Modified: Jul. 17, 2025
-
7.5
HIGHCVE-2024-5749
Certain HP DesignJet products may be vulnerable to credential reflection which allow viewing SMTP server credentials.... Read more
Affected Products :- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
8.7
HIGHCVE-2024-48915
Agent Dart is an agent library built for Internet Computer for Dart and Flutter apps. Prior to version 1.0.0-dev.29, certificate verification in `lib/agent/certificate.dart` does not occur properly. During the delegation verification in the `_checkDelegat... Read more
Affected Products :- Published: Oct. 15, 2024
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2024-9676
A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage library can cause Podman, Buildah, and CRI-O to hang and result in a denial of service via OOM kill when running a malicious image using a... Read more
Affected Products : enterprise_linux enterprise_linux_server_aus openshift_container_platform enterprise_linux_eus enterprise_linux_for_ibm_z_systems_eus enterprise_linux_for_power_little_endian enterprise_linux_for_power_little_endian_eus enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions enterprise_linux_for_ibm_z_systems openshift_container_platform_for_linuxone +6 more products- Published: Oct. 15, 2024
- Modified: Apr. 03, 2025