ARTIKEL SUCHE
Threat Feed QueryDurchsuche alle aggregierten Security-Artikel nach Schlagworten, CVE-IDs und Quellen.
CVE-2024-21762
<html><body><p>Currently trending CVE - Hype Score: 19 - A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.
CVE-2024-55591
<html><body><p>Currently trending CVE - Hype Score: 18 - An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 thr
CVE-2024-24919
<html><body><p>Currently trending CVE - Hype Score: 17 - Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or
Dell PowerScale Vulnerability Let Attackers Gain Unauthorized Filesystem Access
<html><body><p>Two significant security vulnerabilities affecting the Dell PowerScale OneFS storage operating system, with the most severe flaw potentially allowing unauthenticated attackers to gain complete unauthorized
Hackers Exploiting Roundcube Vulnerability to Steal User Credentials
<html><body><p>A sophisticated spear phishing campaign targeting Polish organizations, where threat actors successfully exploited the CVE-2024-42009 vulnerability in Roundcube webmail systems. The attack enables JavaScr
Bluetooth HCI Adaptor Realtek Vulnerability Let Attackers Delete Arbitrary Files
<html><body><p>A high-severity vulnerability has been discovered in Realtek’s Bluetooth HCI Adaptor that allows local attackers to delete arbitrary files and potentially escalate privileges on affected systems. The vuln
CVE-2024-56337
<html><body><p>Currently trending CVE - Hype Score: 12 - Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1
CVE-2024-29269
<html><body><p>Currently trending CVE - Hype Score: 24 - An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.</p></body></html>
CVE-2024-50379
<html><body><p>Currently trending CVE - Hype Score: 11 - Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability during JSP compilation in Apache Tomcat permits an RCE on case insensitive file systems when the de
CVE-2025-0655
<html><body><p>Currently trending CVE - Hype Score: 23 - Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID NUMBER. The Rejected CVE Record is a duplicate of CVE-2024-55890. Notes: All CVE users should reference CVE-20
CVE-2024-58136
<html><body><p>Currently trending CVE - Hype Score: 14 - Yii 2 before 2.0.52 mishandles the attaching of behavior that is defined by an __class array key, a CVE-2024-4990 regression, as exploited in the wild in February
CVE-2024-27876
<html><body><p>Currently trending CVE - Hype Score: 8 - A race condition was addressed with improved locking. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, iOS 18 and iPadOS 18, macOS S
Critical WSO2 SOAP Vulnerability Let Attackers Reset Password for Any User Account
<html><body><p>A critical security vulnerability in multiple WSO2 products has been discovered that allows attackers to reset passwords for any user account, potentially leading to complete system compromise. CVE-2024-6
CVE-2024-0582
<html><body><p>Currently trending CVE - Hype Score: 14 - A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IORING_REGISTER_PBUF_RING, mmap() it, and then
CVE-2024-35880
<html><body><p>Currently trending CVE - Hype Score: 18 - In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: hold io_buffer_list reference over mmap If we look up the kbuf, ensure that it
CVE-2024-54492
<html><body><p>Currently trending CVE - Hype Score: 21 - This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7
CVE-2024-28956
<html><body><p>Currently trending CVE - Hype Score: 29 - Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user t
CVE-2024-46982
<html><body><p>Currently trending CVE - Hype Score: 29 - Next.js is a React framework for building full-stack web applications. By sending a crafted HTTP request, it is possible to poison the cache of a non-dynamic serve
CVE-2024-45332
<html><body><p>Currently trending CVE - Hype Score: 26 - Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for som
CVE-2024-26809
<html><body><p>Currently trending CVE - Hype Score: 21 - In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: release elements in clone only from destroy path Clone already alw