CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-37394
5.3 MEDIUM

Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0.

Jun 14, 2024
CVE-2023-36695
5.4 MEDIUM

Missing Authorization vulnerability in Maxime Schoeni Sublanguage.This issue affects Sublanguage: from n/a through 2.9.

Jun 14, 2024
CVE-2023-36694
6.3 MEDIUM

Missing Authorization vulnerability in Bryan Lee Kingkong Board.This issue affects Kingkong Board: from n/a through 2.1.0.2.

Jun 14, 2024
CVE-2023-36504
6.5 MEDIUM

Missing Authorization vulnerability in BBS e-Theme BBS e-Popup.This issue affects BBS e-Popup: from n/a through 2.4.5.

Jun 14, 2024
CVE-2023-35045
4.3 MEDIUM

Missing Authorization vulnerability in Fat Rat Fat Rat Collect.This issue affects Fat Rat Collect: from n/a through 2.6.7.

Jun 14, 2024
CVE-2023-35040
5.3 MEDIUM

Missing Authorization vulnerability in SendPress SendPress Newsletters.This issue affects SendPress Newsletters: from n/a through 1.23.11.6.

Jun 14, 2024
CVE-2023-29174
6.5 MEDIUM

Missing Authorization vulnerability in NervyThemes SKU Label Changer For WooCommerce.This issue affects SKU Label Changer For WooCommerce: from n/a through 3.0.

Jun 14, 2024
CVE-2024-33253
5.4 MEDIUM

Cross-site scripting (XSS) vulnerability in GUnet OpenEclass E-learning Platform version 3.15 and before allows a authenticated privileged attacker to execute arbitrary code via the title …

Jun 13, 2024
CVE-2024-31777
9.8 CRITICAL

File Upload vulnerability in openeclass v.3.15 and before allows an attacker to execute arbitrary code via a crafted file to the certbadge.php endpoint.

Jun 13, 2024
CVE-2024-0103
5.4 MEDIUM

NVIDIA Triton Inference Server for Linux contains a vulnerability where a user may cause an incorrect Initialization of resource by network issue. A successful exploit …

Jun 13, 2024
CVE-2024-0099
7.8 HIGH

NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where the guest OS could cause buffer overrun in the host. A …

Jun 13, 2024
CVE-2024-0095
9.0 CRITICAL

NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where a user can inject forged logs and executable commands by injecting arbitrary data …

Jun 13, 2024
CVE-2024-0094
5.5 MEDIUM

NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where an untrusted guest VM can cause improper control of the interaction …

Jun 13, 2024
CVE-2024-0093
6.5 MEDIUM

NVIDIA GPU software for Linux contains a vulnerability where it can expose sensitive information to an actor that is not explicitly authorized to have access …

Jun 13, 2024
CVE-2024-0092
5.5 MEDIUM

NVIDIA GPU Driver for Windows and Linux contains a vulnerability where an improper check or improper handling of exception conditions might lead to denial of …

Jun 13, 2024
CVE-2024-0091
7.8 HIGH

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. …

Jun 13, 2024
CVE-2024-0090
7.8 HIGH

NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might …

Jun 13, 2024
CVE-2024-0089
7.8 HIGH

NVIDIA GPU Display Driver for Windows contains a vulnerability where the information from a previous client or another process could be disclosed. A successful exploit …

Jun 13, 2024
CVE-2024-0086
5.5 MEDIUM

NVIDIA vGPU software for Linux contains a vulnerability where the software can dereference a NULL pointer. A successful exploit of this vulnerability might lead to …

Jun 13, 2024
CVE-2024-0085
6.3 MEDIUM

NVIDIA vGPU software for Windows and Linux contains a vulnerability where unprivileged users could execute privileged operations on the host. A successful exploit of this …

Jun 13, 2024
CVE-2024-0084
7.8 HIGH

NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where the guest OS could execute privileged operations. A successful exploit of …

Jun 13, 2024
CVE-2024-5976
7.3 HIGH

A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. Affected is the function log_employee …

Jun 13, 2024
CVE-2024-32930
5.5 MEDIUM

In plugin_ipc_handler of slc_plugin.c, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure of 4 bytes of …

Jun 13, 2024
CVE-2024-32929
8.1 HIGH

In gpu_slc_get_region of pixel_gpu_slc.c, there is a possible EoP due to a use after free. This could lead to local escalation of privilege with no …

Jun 13, 2024
CVE-2024-32926
5.5 MEDIUM

there is a possible information disclosure due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. …

Jun 13, 2024
CVE-2024-32925
8.8 HIGH

In dhd_prot_txstatus_process of dhd_msgbuf.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution …

Jun 13, 2024
CVE-2024-32924
7.5 HIGH

In DeregAcceptProcINT of cn_NrmmStateDeregInit.cpp, there is a possible denial of service due to a logic error in the code. This could lead to remote denial …

Jun 13, 2024
CVE-2024-32923
4.0 MEDIUM

there is a possible cellular denial of service due to a logic error in the code. This could lead to remote denial of service with …

Jun 13, 2024
CVE-2024-32922
7.4 HIGH

In gpu_pm_power_on_top_nolock of pixel_gpu_power.c, there is a possible compromise of protected memory due to a logic error in the code. This could lead to local …

Jun 13, 2024
CVE-2024-32921
7.4 HIGH

In lwis_initialize_transaction_fences of lwis_fence.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Jun 13, 2024
CVE-2024-32920
7.1 HIGH

In set_secure_reg of sac_handler.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Jun 13, 2024
CVE-2024-32919
7.8 HIGH

In lwis_add_completion_fence of lwis_fence.c, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with no …

Jun 13, 2024
CVE-2024-32918
6.1 MEDIUM

Permission Bypass allowing attackers to disable HDCP 2.2 encryption by not completing the HDCP Key Exchange initialization steps

Jun 13, 2024
CVE-2024-32917
7.1 HIGH

In pl330_dma_from_peri_start() of fp_spi_dma.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Jun 13, 2024
CVE-2024-32916
5.9 MEDIUM

In fvp_freq_histogram_init of fvp.c, there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution …

Jun 13, 2024
CVE-2024-32915
4.3 MEDIUM

In CellInfoListParserV2::FillCellInfo() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Jun 13, 2024
CVE-2024-32914
5.5 MEDIUM

In tpu_get_int_state of tpu.c, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution …

Jun 13, 2024
CVE-2024-32913
9.8 CRITICAL

In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with …

Jun 13, 2024
CVE-2024-32912
5.5 MEDIUM

there is a possible persistent Denial of Service due to test/debugging code left in a production build. This could lead to local denial of service …

Jun 13, 2024
CVE-2024-32911
9.8 CRITICAL

There is a possible escalation of privilege due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges …

Jun 13, 2024
CVE-2024-32910
5.5 MEDIUM

In handle_msg_shm_map_req of trusty/user/base/lib/spi/srv/tipc/tipc.c, there is a possible stack data disclosure due to uninitialized data. This could lead to local information disclosure with no additional …

Jun 13, 2024
CVE-2024-32909
7.8 HIGH

In handle_msg of main.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of …

Jun 13, 2024
CVE-2024-32908
7.8 HIGH

In sec_media_protect of media.c, there is a possible permission bypass due to a race condition. This could lead to local escalation of privilege with no …

Jun 13, 2024
CVE-2024-32907
7.8 HIGH

In memcall_add of memlog.c, there is a possible buffer overflow due to improper input validation. This could lead to local escalation of privilege with no …

Jun 13, 2024
CVE-2024-32906
7.8 HIGH

In AcvpOnMessage of avcp.cpp, there is a possible EOP due to uninitialized data. This could lead to local escalation of privilege with no additional execution …

Jun 13, 2024
CVE-2024-32905
9.8 CRITICAL

In circ_read of link_device_memory_legacy.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution …

Jun 13, 2024
CVE-2024-32904
4.7 MEDIUM

In ProtocolVsimOperationAdapter() of protocolvsimadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Jun 13, 2024
CVE-2024-32903
7.8 HIGH

In prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege …

Jun 13, 2024
CVE-2024-32902
7.5 HIGH

Remote prevention of access to cellular service with no user interaction (for example, crashing the cellular radio service with a malformed packet)

Jun 13, 2024
CVE-2024-32901
7.8 HIGH

In v4l2_smfc_qbuf of smfc-v4l2-ioctls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Jun 13, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.