CVE Database

4811+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-2679
3.5 LOW

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as problematic. This affects an unknown part of the file …

Mar 20, 2024
CVE-2024-28584
3.3 LOW

Null Pointer Dereference vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the J2KImageToFIBITMAP() function …

Mar 20, 2024
CVE-2024-2616
2.7 LOW

To harden ICU against exploitation, the behavior for out-of-memory conditions was changed to crash instead of attempt to continue. This vulnerability affects Firefox ESR < …

Mar 19, 2024
CVE-2024-2606
3.7 LOW

Passing invalid data could have led to invalid wasm values being created, such as arbitrary integers turning into pointer values. This vulnerability affects Firefox < …

Mar 19, 2024
CVE-2024-28864
2.6 LOW

SecureProps is a PHP library designed to simplify the encryption and decryption of property data in objects. A vulnerability in SecureProps version 1.2.0 and 1.2.1 …

Mar 18, 2024
CVE-2024-22412
2.4 LOW

ClickHouse is an open-source column-oriented database management system. A bug exists in the cloud ClickHouse offering prior to version 24.0.2.54535 and in github.com/clickhouse/clickhouse version 23.1. …

Mar 18, 2024
CVE-2024-28745
3.3 LOW

Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to …

Mar 18, 2024
CVE-2023-40160
3.7 LOW

Directory traversal vulnerability exists in Mailing List Search CGI (pmmls.exe) included in A.K.I Software's PMailServer/PMailServer2 products. If this vulnerability is exploited, a remote attacker may …

Mar 18, 2024
CVE-2024-2567
1.8 LOW

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as problematic, was found in jurecapuder AndroidWeatherApp 1.0.0 on Android. Affected is an unknown function …

Mar 17, 2024
CVE-2024-2553
3.5 LOW

A vulnerability, which was classified as problematic, was found in SourceCodester Product Review Rating System 1.0. Affected is an unknown function of the component Rate …

Mar 17, 2024
CVE-2024-2535
3.5 LOW

A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/users.php. The manipulation of …

Mar 17, 2024
CVE-2024-2533
3.5 LOW

A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this issue is some unknown functionality of the file …

Mar 16, 2024
CVE-2024-2530
3.5 LOW

A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/update-rooms.php. The …

Mar 16, 2024
CVE-2024-2526
3.5 LOW

A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/rooms.php. …

Mar 16, 2024
CVE-2024-2525
3.5 LOW

A vulnerability, which was classified as problematic, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected is an unknown function of the file /admin/receipt.php. The manipulation of …

Mar 16, 2024
CVE-2024-2523
3.5 LOW

A vulnerability classified as problematic was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. This vulnerability affects unknown code of the file /admin/booktime.php. The manipulation of the argument …

Mar 16, 2024
CVE-2024-2521
3.5 LOW

A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file …

Mar 16, 2024
CVE-2024-2519
3.5 LOW

A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been classified as problematic. Affected is an unknown function of the file navbar.php. The manipulation …

Mar 16, 2024
CVE-2024-2518
3.5 LOW

A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. This issue affects some unknown processing of the file book_history.php. The manipulation of …

Mar 16, 2024
CVE-2024-2515
3.5 LOW

A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this issue is some unknown functionality of the file …

Mar 16, 2024
CVE-2024-28053
3.1 LOW

Resource Exhaustion in Mattermost Server versions 8.1.x before 8.1.10 fails to limit the size of the payload that can be read and parsed allowing an …

Mar 15, 2024
CVE-2024-24975
3.5 LOW

Uncontrolled Resource Consumption in Mattermost Mobile versions before 2.13.0 fails to limit the size of the code block that will be processed by the syntax …

Mar 15, 2024
CVE-2024-2482
3.7 LOW

A vulnerability has been found in Surya2Developer Hostel Management Service 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the …

Mar 15, 2024
CVE-2024-2479
3.5 LOW

A vulnerability classified as problematic has been found in MHA Sistemas arMHAzena 9.6.0.0. This affects an unknown part of the component Cadastro Page. The manipulation …

Mar 15, 2024
CVE-2024-26246
3.9 LOW

Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

Mar 14, 2024
CVE-2023-27502
3.3 LOW

Insertion of sensitive information into log file for some Intel(R) Local Manageability Service software before version 2316.5.1.2 may allow an authenticated user to potentially enable …

Mar 14, 2024
CVE-2024-1221
3.1 LOW

This vulnerability potentially allows files on a PaperCut NG/MF server to be exposed using a specifically formed payload against the impacted API endpoint. The attacker …

Mar 14, 2024
CVE-2024-0173
3.8 LOW

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploit this vulnerability …

Mar 13, 2024
CVE-2024-0154
3.8 LOW

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploit this vulnerability …

Mar 13, 2024
CVE-2024-1979
3.5 LOW

A vulnerability was found in Quarkus. In certain conditions related to the CI process, git credentials could be inadvertently published, which could put the git …

Mar 13, 2024
CVE-2023-32335
3.7 LOW

IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters. This may lead to information disclosure if …

Mar 13, 2024
CVE-2024-28238
2.3 LOW

Directus is a real-time API and App dashboard for managing SQL database content. When reaching the /files page, a JWT is passed via GET request. …

Mar 12, 2024
CVE-2024-28113
3.5 LOW

Peering Manager is a BGP session management tool. In Peering Manager <=1.8.2, it is possible to redirect users to an arbitrary page using a crafted …

Mar 12, 2024
CVE-2024-1410
3.7 LOW

Cloudflare quiche was discovered to be vulnerable to unbounded storage of information related to connection ID retirement, which could lead to excessive resource consumption. Each …

Mar 12, 2024
CVE-2024-2391
2.4 LOW

A vulnerability was found in EVE-NG 5.0.1-13 and classified as problematic. Affected by this issue is some unknown functionality of the component Lab Handler. The …

Mar 12, 2024
CVE-2024-25114
2.6 LOW

Collabora Online is a collaborative online office suite based on LibreOffice technology. Each document in Collabora Online is opened by a separate "Kit" instance in …

Mar 11, 2024
CVE-2024-25991
3.3 LOW

In acpm_tmu_ipc_handler of tmu_plugin.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Mar 11, 2024
CVE-2024-0053
3.3 LOW

In getCustomPrinterIcon of PrintManagerService.java, there is a possible way to view other user's images due to a confused deputy. This could lead to local information …

Mar 11, 2024
CVE-2024-0052
3.3 LOW

In multiple functions of healthconnect, there is a possible leakage of exercise route data due to a missing permission check. This could lead to local …

Mar 11, 2024
CVE-2024-2365
1.6 LOW

A vulnerability classified as problematic was found in Musicshelf 1.0/1.1 on Android. Affected by this vulnerability is an unknown functionality of the file io\fabric\sdk\android\services\network\PinningTrustManager.java of …

Mar 11, 2024
CVE-2024-2364
1.8 LOW

A vulnerability classified as problematic has been found in Musicshelf 1.0/1.1 on Android. Affected is an unknown function of the file androidmanifest.xml of the component …

Mar 10, 2024
CVE-2024-2314
2.8 LOW

If kernel headers need to be extracted, bcc will attempt to load them from a temporary directory. An unprivileged attacker could use this to force …

Mar 10, 2024
CVE-2024-2313
2.8 LOW

If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force …

Mar 10, 2024
CVE-2024-2355
3.7 LOW

A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /secret_coder.sql. …

Mar 10, 2024
CVE-2024-2317
3.8 LOW

A vulnerability was found in Bdtask Hospital AutoManager up to 20240227 and classified as problematic. This issue affects some unknown processing of the file /prescription/prescription/delete/ …

Mar 8, 2024
CVE-2024-2285
3.5 LOW

A vulnerability, which was classified as problematic, has been found in boyiddha Automated-Mess-Management-System 1.0. Affected by this issue is some unknown functionality of the file …

Mar 8, 2024
CVE-2024-2284
3.5 LOW

A vulnerability classified as problematic was found in boyiddha Automated-Mess-Management-System 1.0. Affected by this vulnerability is an unknown functionality of the file /member/chat.php of the …

Mar 8, 2024
CVE-2024-23292
3.3 LOW

This issue was addressed with improved data protection. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. An app may be …

Mar 8, 2024
CVE-2024-23291
3.3 LOW

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma …

Mar 8, 2024
CVE-2024-23289
3.3 LOW

A lock screen issue was addressed with improved state management. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, …

Mar 8, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.