CVE Database

10843+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-9925
9.8 CRITICAL

SQL injection vulnerability in TAI Smart Factory's QPLANT SF version 1.0. Exploitation of this vulnerability could allow a remote attacker to retrieve all database information …

Oct 15, 2024
CVE-2024-47943
9.8 CRITICAL

The firmware upgrade function in the admin web interface of the Rittal IoT Interface & CMC III Processing Unit devices checks if the patch files …

Oct 15, 2024
CVE-2024-9982
9.8 CRITICAL

AIM LINE Marketing Platform from Esi Technology does not properly validate a specific query parameter. When the LINE Campaign Module is enabled, unauthenticated remote attackers …

Oct 15, 2024
CVE-2024-9972
9.8 CRITICAL

Property Management System from ChanGate has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database …

Oct 15, 2024
CVE-2024-48823
9.8 CRITICAL

Local file inclusion in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the PassageAutoServer.php page.

Oct 14, 2024
CVE-2023-48082
9.1 CRITICAL

Nagios XI before 2024R1 was discovered to improperly handle API keys generation (randomly-generated), allowing attackers to possibly generate the same set of API keys for …

Oct 14, 2024
CVE-2024-48168
9.8 CRITICAL

A stack overflow vulnerability exists in the sub_402280 function of the HNAP service of D-Link DCS-960L 1.09, allowing an attacker to execute arbitrary code.

Oct 14, 2024
CVE-2024-46535
9.8 CRITICAL

Jepaas v7.2.8 was discovered to contain a SQL injection vulnerability via the orderSQL parameter at /homePortal/loadUserMsg.

Oct 14, 2024
CVE-2024-48153
9.8 CRITICAL

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the get_subconfig function.

Oct 14, 2024
CVE-2024-48150
9.8 CRITICAL

D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_451208 function.

Oct 14, 2024
CVE-2024-48257
9.8 CRITICAL

Wavelog 1.8.5 allows Oqrs_model.php get_worked_modes station_id SQL injectioin.

Oct 14, 2024
CVE-2024-48251
9.8 CRITICAL

Wavelog 1.8.5 allows Activated_gridmap_model.php get_band_confirmed SQL injection via band, sat, propagation, or mode.

Oct 14, 2024
CVE-2024-48255
9.8 CRITICAL

Cloudlog 2.6.15 allows Oqrs.php get_station_info station_id SQL injection.

Oct 14, 2024
CVE-2024-48253
9.8 CRITICAL

Cloudlog 2.6.15 allows Oqrs.php delete_oqrs_line id SQL injection.

Oct 14, 2024
CVE-2024-9137
9.4 CRITICAL

The affected product lacks an authentication check when sending commands to the server via the Moxa service. This vulnerability allows an attacker to execute specified …

Oct 14, 2024
CVE-2024-9924
9.8 CRITICAL

The fix for CVE-2024-26261 was incomplete, and and the specific package for OAKlouds from Hgiga remains at risk. Unauthenticated remote attackers still can download arbitrary …

Oct 14, 2024
CVE-2024-9921
9.8 CRITICAL

The Team+ from TEAMPLUS TECHNOLOGY does not properly validate specific page parameter, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify and …

Oct 14, 2024
CVE-2024-7099
9.8 CRITICAL

netease-youdao/qanything version 1.4.1 contains a vulnerability where unsafe data obtained from user input is concatenated in SQL queries, leading to SQL injection. The affected functions …

Oct 13, 2024
CVE-2024-9047
9.8 CRITICAL

The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 4.24.11 via wfu_file_downloader.php. This makes it …

Oct 12, 2024
CVE-2024-48772
9.1 CRITICAL

An issue in C-CHIP (com.cchip.cchipamaota) v.1.2.8 allows a remote attacker to obtain sensitive information via the firmware update process.

Oct 11, 2024
CVE-2024-48787
9.1 CRITICAL

An issue in Revic Optics Revic Ops (us.revic.revicops) 1.12.5 allows a remote attacker to obtain sensitive information via the firmware update process.

Oct 11, 2024
CVE-2024-48786
9.1 CRITICAL

An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive information via the firmware update process.

Oct 11, 2024
CVE-2024-48784
9.8 CRITICAL

An Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive information via the firmware update process.

Oct 11, 2024
CVE-2024-48778
9.1 CRITICAL

An issue in GIANT MANUFACTURING CO., LTD RideLink (tw.giant.ridelink) 2.0.7 allows a remote attacker to obtain sensitive information via the firmware update process.

Oct 11, 2024
CVE-2024-48769
9.1 CRITICAL

An issue in BURG-WCHTER KG de.burgwachter.keyapp.app 4.5.0 allows a remote attacker to obtain sensitve information via the firmware update process.

Oct 11, 2024
CVE-2024-48033
9.8 CRITICAL

Deserialization of Untrusted Data vulnerability in baptiste.gourdin Talkback talkback-secure-linkback-protocol allows Object Injection.This issue affects Talkback: from n/a through <= 1.0.

Oct 11, 2024
CVE-2024-47331
9.3 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ninja Team Multi Step for Contact Form cf7-multi-step allows SQL Injection.This …

Oct 11, 2024
CVE-2024-46532
9.8 CRITICAL

SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the PayController.class.php component.

Oct 11, 2024
CVE-2024-46088
9.8 CRITICAL

An arbitrary file upload vulnerability in the ProductAction.entphone interface of Zhejiang University Entersoft Customer Resource Management System v2002 to v2024 allows attackers to execute arbitrary …

Oct 11, 2024
CVE-2024-44730
9.1 CRITICAL

Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an arbitrary sender name.

Oct 11, 2024
CVE-2024-42640
9.8 CRITICAL

angular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerability allows an attacker to upload arbitrary content to the …

Oct 11, 2024
CVE-2024-47875
10.0 CRITICAL

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMpurify was vulnerable to nesting-based mXSS. This vulnerability is fixed in 2.5.0 …

Oct 11, 2024
CVE-2024-47830
9.3 CRITICAL

Plane is an open-source project management tool. Plane uses the ** wildcard support to retrieve the image from any hostname as in /web/next.config.js. This may …

Oct 11, 2024
CVE-2024-47074
9.8 CRITICAL

DataEase is an open source data visualization analysis tool. In Dataease, the PostgreSQL data source in the data source function can customize the JDBC connection …

Oct 11, 2024
CVE-2024-9707
9.8 CRITICAL

The Hunk Companion plugin for WordPress is vulnerable to unauthorized plugin installation/activation due to a missing capability check on the /wp-json/hc/v1/themehunk-import REST API endpoint in …

Oct 11, 2024
CVE-2024-9234
9.8 CRITICAL

The GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor plugin for WordPress is vulnerable to arbitrary file uploads due to a …

Oct 11, 2024
CVE-2024-9164
9.6 CRITICAL

An issue was discovered in GitLab EE affecting all versions starting from 12.5 prior to 17.2.9, starting from 17.3, prior to 17.3.5, and starting from …

Oct 11, 2024
CVE-2024-21534
9.8 CRITICAL

All versions of the package jsonpath-plus are vulnerable to Remote Code Execution (RCE) due to improper input sanitization. An attacker can execute aribitrary code on …

Oct 11, 2024
CVE-2024-9822
9.8 CRITICAL

The Pedalo Connector plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.0.5. This is due to insufficient restriction on …

Oct 11, 2024
CVE-2024-47871
9.1 CRITICAL

Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves **insecure communication** between the FRP (Fast Reverse Proxy) client and server when …

Oct 10, 2024
CVE-2024-9487
9.1 CRITICAL

An improper verification of cryptographic signature vulnerability was identified in GitHub Enterprise Server that allowed SAML SSO authentication to be bypassed resulting in unauthorized provisioning …

Oct 10, 2024
CVE-2024-47167
9.8 CRITICAL

Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to **Server-Side Request Forgery (SSRF)** in the `/queue/join` endpoint. Gradio’s `async_save_url_to_cache` function …

Oct 10, 2024
CVE-2024-47636
9.8 CRITICAL

Deserialization of Untrusted Data vulnerability in eyecix JobSearch wp-jobsearch allows Object Injection.This issue affects JobSearch: from n/a through <= 2.5.9.

Oct 10, 2024
CVE-2024-9201
9.4 CRITICAL

The SEUR plugin, in its versions prior to 2.5.11, is vulnerable to time-based SQL injection through the use of the ‘id_order’ parameter of the ‘/modules/seur/ajax/saveCodFee.php’ …

Oct 10, 2024
CVE-2024-45115
9.8 CRITICAL

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could …

Oct 10, 2024
CVE-2024-9798
9.0 CRITICAL

The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for attackers.

Oct 10, 2024
CVE-2024-9796
9.8 CRITICAL

The WP-Advanced-Search WordPress plugin before 3.3.9.2 does not sanitize and escape the t parameter before using it in a SQL statement, allowing unauthenticated users to …

Oct 10, 2024
CVE-2024-9518
9.8 CRITICAL

The UserPlus plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 2.0 due to insufficient restriction on the 'form_actions' and …

Oct 10, 2024
CVE-2024-48949
9.1 CRITICAL

The verify function in lib/elliptic/eddsa/index.js in the Elliptic package before 6.5.6 for Node.js omits "sig.S().gte(sig.eddsa.curve.n) || sig.S().isNeg()" validation.

Oct 10, 2024
CVE-2024-47832
9.8 CRITICAL

ssoready is a single sign on provider implemented via docker. Affected versions are vulnerable to XML signature bypass attacks. An attacker can carry out signature …

Oct 9, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.