CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-3860
6.2 MEDIUM

An out-of-memory condition during object initialization could result in an empty shape list. If the JIT subsequently traced the object it would crash. This vulnerability …

Apr 16, 2024
CVE-2024-3859
5.9 MEDIUM

On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox …

Apr 16, 2024
CVE-2024-3858
7.5 HIGH

It was possible to mutate a JavaScript object so that the JIT could crash while tracing it. This vulnerability affects Firefox < 125.

Apr 16, 2024
CVE-2024-3857
7.8 HIGH

The JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This vulnerability affects Firefox < 125, …

Apr 16, 2024
CVE-2024-3856
8.8 HIGH

A use-after-free could occur during WASM execution if garbage collection ran during the creation of an array. This vulnerability affects Firefox < 125.

Apr 16, 2024
CVE-2024-3855
6.5 MEDIUM

In certain cases the JIT incorrectly optimized MSubstr operations, which led to out-of-bounds reads. This vulnerability affects Firefox < 125.

Apr 16, 2024
CVE-2024-3854
8.8 HIGH

In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, …

Apr 16, 2024
CVE-2024-3853
7.5 HIGH

A use-after-free could result if a JavaScript realm was in the process of being initialized when a garbage collection started. This vulnerability affects Firefox < …

Apr 16, 2024
CVE-2024-3852
7.5 HIGH

GetBoundName could return the wrong version of an object when JIT optimizations were applied. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and …

Apr 16, 2024
CVE-2024-3302
3.7 LOW

There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of …

Apr 16, 2024
CVE-2023-50872
7.5 HIGH

The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object Reference attack that discloses partial information about certificates and their respective holder. …

Apr 16, 2024
CVE-2024-32027
9.1 CRITICAL

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss v22.6.1 is vulnerable to command injection in `finetune_gui.py` This vulnerability is fixed in 23.1.5.

Apr 16, 2024
CVE-2024-32026
9.1 CRITICAL

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss is vulnerable to a command injection in `git_caption_gui.py`. This vulnerability is fixed in 23.1.5.

Apr 16, 2024
CVE-2024-32025
9.1 CRITICAL

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss is vulnerable to a command injection in `group_images_gui.py`. This vulnerability is fixed in 23.1.5.

Apr 16, 2024
CVE-2024-32024
6.5 MEDIUM

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss is vulnerable to a path injection in the `common_gui.py` `add_pre_postfix` function. This vulnerability is fixed …

Apr 16, 2024
CVE-2024-32023
6.5 MEDIUM

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss is vulnerable to a path injection in the `common_gui.py` `find_and_replace` function. This vulnerability is fixed …

Apr 16, 2024
CVE-2024-32022
9.1 CRITICAL

Kohya_ss is a GUI for Kohya's Stable Diffusion trainers. Kohya_ss is vulnerable to command injection in basic_caption_gui.py. This vulnerability is fixed in 23.1.5.

Apr 16, 2024
CVE-2024-31451
5.3 MEDIUM

DocsGPT is a GPT-powered chat for documentation. DocsGPT is vulnerable to unauthenticated limited file write in routes.py. This vulnerability is fixed in 0.8.1.

Apr 16, 2024
CVE-2024-30256
6.4 MEDIUM

Open WebUI is a user-friendly WebUI for LLMs. Open-webui is vulnerable to authenticated blind server-side request forgery. This vulnerability is fixed in 0.1.117.

Apr 16, 2024
CVE-2024-3869
4.3 MEDIUM

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'woocommerce_json_search_coupons' function …

Apr 16, 2024
CVE-2024-3672
6.4 MEDIUM

The BA Book Everything plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'all-items' shortcode in all versions up to, and including, …

Apr 16, 2024
CVE-2024-3243
4.3 MEDIUM

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized email sending due to a missing capability check on the send_test_email() function in …

Apr 16, 2024
CVE-2024-3067
7.2 HIGH

The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 2.4.2 …

Apr 16, 2024
CVE-2024-3367
6.5 MEDIUM

Argument injection in websphere_mq agent plugin in Checkmk 2.0.0, 2.1.0, <2.2.0p26 and <2.3.0b5 allows local attacker to inject one argument to runmqsc

Apr 16, 2024
CVE-2024-3867
6.1 MEDIUM

The archive-tainacan-collection theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in version …

Apr 16, 2024
CVE-2024-1357
6.4 MEDIUM

The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's aux_timeline shortcode in all versions …

Apr 16, 2024
CVE-2024-3872
3.1 LOW

Mattermost Mobile app versions 2.13.0 and earlier use a regular expression with polynomial complexity to parse certain deeplinks, which allows an unauthenticated remote attacker to …

Apr 16, 2024
CVE-2024-3871
9.8 CRITICAL

The Delta Electronics DVW-W02W2-E2 devices expose a web administration interface to users. This interface implements multiple features that are affected by command injections and stack …

Apr 16, 2024
CVE-2024-32634
6.1 MEDIUM

In huge memory get unmapped area check, code can never be reached because of a logical contradiction.

Apr 16, 2024
CVE-2024-32633
4.0 MEDIUM

An unsigned value can never be negative, so eMMC full disk test will always evaluate the same way.

Apr 16, 2024
CVE-2024-32632
6.6 MEDIUM

A value in ATCMD will be misinterpreted by printf, causing incorrect output and possibly out-of-bounds memory access

Apr 16, 2024
CVE-2024-32631
7.2 HIGH

Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.

Apr 16, 2024
CVE-2024-32625
5.8 MEDIUM

In OffloadAMRWriter, a scalar field is not initialized so will contain an arbitrary value left over from earlier computations

Apr 16, 2024
CVE-2024-32557
6.5 MEDIUM

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Exclusive Addons Exclusive Addons Elementor allows Stored XSS.This issue affects Exclusive Addons Elementor: …

Apr 16, 2024
CVE-2024-22262
8.1 HIGH

Applications that use UriComponentsBuilder to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed …

Apr 16, 2024
CVE-2024-31784
6.1 MEDIUM

An issue in Typora v.1.8.10 and before, allows a local attacker to obtain sensitive information and execute arbitrary code via a crafted payload to the …

Apr 16, 2024
CVE-2024-31783
6.1 MEDIUM

Cross Site Scripting (XSS) vulnerability in Typora v.1.6.7 and before, allows a local attacker to obtain sensitive information via a crafted script during markdown file …

Apr 16, 2024
CVE-2024-31634
6.1 MEDIUM

Cross Site Scripting (XSS) vulnerability in Xunruicms versions 4.6.3 and before, allows remote attacker to execute arbitrary code via the Security.php file in the catalog …

Apr 16, 2024
CVE-2024-3575
6.1 MEDIUM

Cross-site Scripting (XSS) - Stored in mindsdb/mindsdb

Apr 16, 2024
CVE-2024-3574
7.5 HIGH

In scrapy version 2.10.1, an issue was identified where the Authorization header, containing credentials for server authentication, is leaked to a third-party site during a …

Apr 16, 2024
CVE-2024-3573
9.3 CRITICAL

mlflow/mlflow is vulnerable to Local File Inclusion (LFI) due to improper parsing of URIs, allowing attackers to bypass checks and read arbitrary files on the …

Apr 16, 2024
CVE-2024-3572
7.5 HIGH

The scrapy/scrapy project is vulnerable to XML External Entity (XXE) attacks due to the use of lxml.etree.fromstring for parsing untrusted XML data without proper validation. …

Apr 16, 2024
CVE-2024-3571
8.8 HIGH

langchain-ai/langchain is vulnerable to path traversal due to improper limitation of a pathname to a restricted directory ('Path Traversal') in its LocalFileStore functionality. An attacker …

Apr 16, 2024
CVE-2024-3271
9.8 CRITICAL

A command injection vulnerability exists in the run-llama/llama_index repository, specifically within the safe_eval function. Attackers can bypass the intended security mechanism, which checks for the …

Apr 16, 2024
CVE-2024-3029
8.0 HIGH

In mintplex-labs/anything-llm, an attacker can exploit improper input validation by sending a malformed JSON payload to the '/system/enable-multi-user' endpoint. This triggers an error that is …

Apr 16, 2024
CVE-2024-3028
7.2 HIGH

mintplex-labs/anything-llm is vulnerable to improper input validation, allowing attackers to read and delete arbitrary files on the server. By manipulating the 'logo_filename' parameter in the …

Apr 16, 2024
CVE-2024-30567
6.3 MEDIUM

An issue in JNT Telecom JNT Liftcom UMS V1.J Core Version JM-V15 allows a remote attacker to execute arbitrary code via the Network Troubleshooting functionality.

Apr 16, 2024
CVE-2024-2912
10.0 CRITICAL

An insecure deserialization vulnerability exists in the BentoML framework, allowing remote code execution (RCE) by sending a specially crafted POST request. By exploiting this vulnerability, …

Apr 16, 2024
CVE-2024-2260
4.2 MEDIUM

A session fixation vulnerability exists in the zenml-io/zenml application, where JWT tokens used for user authentication are not invalidated upon logout. This flaw allows an …

Apr 16, 2024
CVE-2024-2083
9.9 CRITICAL

A directory traversal vulnerability exists in the zenml-io/zenml repository, specifically within the /api/v1/steps endpoint. Attackers can exploit this vulnerability by manipulating the 'logs' URI path …

Apr 16, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.