Filters

Vendors

microsoft
5434
apple
3510
google
2954
adobe
2678
debian
1334
oracle
1199
linux
1197
cisco
1001
mozilla
958
ibm
909
redhat
840
hp
777
canonical
617
fedoraproject
571
qualcomm
569
opensuse
566
tenda
515
dlink
497
apache
464
totolink
431
sun
359
siemens
321
suse
316
netapp
303
huawei
287
advantech
274
netgear
230
sap
187
schneider-electric
181
samsung
166
php
164
novell
161
oretnom23
160
vmware
153
zohocorp
152
dell
150
tp-link
142
arubanetworks
133
broadcom
133
tcpdump
131
realnetworks
130
fortinet
119
ivanti
117
ffmpeg
104
xwiki
103
insteon
102
gnu
101
symantec
96
trend micro
95
f5
93
d-link
92
moxa
91
qnap
90
citrix
89
jenkins
88
projectworlds
88
trendmicro
86
emc
85
juniper
83
phpgurukul
82
centos web panel
81
rockwellautomation
81
tendacn
80
h3c
70
freebsd
69
deltaww
68
solarwinds
68
veritas
68
atlassian
67
gitlab
67
zyxel
67
red hat
65
paloaltonetworks
64
code-projects
59
tibco
59
trendnet
59
facebook
57
asus
56
fasterxml
56
intel
56
opera
56
sonicwall
56
microfocus
54
synology
54
accusoft
53
quest
53
delta electronics
52
ge
52
jetbrains
52
ca
50
mitsubishielectric
49
nagios
49
foxitsoftware
46
cgal
45
nec
45
tongda2000
44
mcafee
43
openbsd
43
sgi
43
siretta
43
imagemagick
42
lg
42
tcl
41
joomla
40
fiberhome
39
prestashop
39
python
39
wordpress
39
mit
38
progress
38
gentoo
37
magento
37
control-webpanel
36
cpanel
36
linuxfoundation
36
wago
36
x.org
36
abb
35
janobe
35
honeywell
34
macromedia
34
mayurik
34
wavlink
34
angeljudesuarez
33
autotrace project
33
eclipse
33
gehealthcare
33
haxx
33
inhandnetworks
33
kashipara
33
exponentcms
32
samba
32
westerndigital
32
zte
32
pivotal software
31
zzcms
31
amd
30
codezips
30
freetype
30
gnome
30
mitel
30
motorola
30
videolan
30
voltronic power
30
bosch
29
nullsoft
29
sophos
29
xerox
29
artifex
28
drupal
28
hospital management system project
28
lenovo
28
lexmark
28
salesagility
28
democritus
27
glpi-project
27
goabode
27
libav
27
mediatek
27
autodesk
26
dolibarr
26
mi
25
phpjabbers
25
arm
24
autonomy
24
commscope
24
contiki-ng
24
foscam
24
mingsoft
24
multiple
24
phoenixcontact
24
amazon
23
docker
23
hcltech
23
moodle
23
nvidia
23
saltstack
23
ui
23
avaya
22
fabianros
22
hpe
22
library management system project
22
ruby-lang
22
sierrawireless
22
xxyopen
22
zephyrproject
22
golang
21
ipswitch
21
linksys
21
mediawiki
21
netatalk
21
openssl
21
rockwell automation
21
tenable
21
ubuntu
21
belkin
20
crestron
20
draytek
20
emerson
20
freerdp
20
grandstream
20
lantronix
20
liferay
20
netbsd
20
os4ed
20
canon
19
codesys
19
exim
19
jeecg
19
kaseya
19
seacms
19
typo3
19
baby care system project
18
bitdefender
18
caldera
18
cesanta
18
codeigniter
18
hitachi
18
libreoffice
18
mplayer
18
mruby
18
nodejs
18
parallels
18
phpmyadmin
18
puppet
18
silabs
18
wireshark
18
denx
17
eq-3
17
isc
17
johnsoncontrols
17
open-emr
17
postgresql
17
qemu
17
sick
17
trustix
17
xmlsoft
17
artica
16
dedecms
16
github
16
hitachienergy
16
jerryscript
16
mattermost
16
misp
16
myscada
16
nextcloud
16
openoffice
16
simple client management system project
16
vivotek
16
webkitgtk
16
accellion
15
centreon
15
dahuasecurity
15
eyesofnetwork
15
nortekcontrol
15
nuuo
15
openstack
15
ruckuswireless
15
sco
15
sony
15
thinkphp
15
yokogawa
15
arista
14
aveva
14
axis
14
bmc
14
clamav
14
fit2cloud
14
graphicsmagick
14
hashicorp
14
justsystems
14
onap
14
pcre
14
terra-master
14
watchguard
14
windriver
14
wwbn
14
zoneminder
14
zoom
14
funadmin
13
ip-com
13
libtiff
13
meetcircle
13
netis-systems
13
pypi
13
radare
13
rconfig
13
s-cms
13
schneider electric
13
splunk
13
teluu
13
unix
13
vim
13
zabbix
13
conectiva
12
djangoproject
12
fujielectric
12
ikus-soft
12
judging management system project
12
langchain
12

CVE-2024-48967Life2000 ventilator and Service PC lack sufficient audit logging capabilities

First published (updated )

CVE-2024-48966Life2000 service tools for test and calibration do not support user authentication

First published (updated )

CVE-2024-48970Life2000 Ventilator microcontroller lacks memory protection

First published (updated )

CVE-2024-48974Life2000 Ventilator does not perform proper file integrity checks when adopting firmware updates

First published (updated )

CVE-2024-48973Debug port on Life2000 Ventilator serial interface is enabled by default

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-48971Clinician Password and Serial Number Clinician Password are hard-coded in Life2000 Ventilator

First published (updated )

CVE-2024-9832No limit on failed login attempts with Clinician Password or Serial Number Clinician Password on Life2000 Ventilator

First published (updated )

CVE-2024-9834Improper data protection on Life2000 ventilator serial interface

First published (updated )

CVE-2024-52369WordPress KBucket plugin <= 4.1.6 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52370WordPress Hive Support – WordPress Help Desk, Live Chat & AI Chat Bot Plugin for WordPress plugin <= 1.1.1 - Arbitrary File Upload vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-52372WordPress Easy CSV Importer plugin <= 7.0.0 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52373WordPress Devexhub Gallery plugin <= 2.0.1 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52374WordPress Do That Task plugin <= 1.5.5 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52375WordPress Datasets Manager by Arttia Creative plugin <= 1.5 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52376WordPress Boat Rental Plugin for WordPress plugin <= 1.0.1 - Arbitrary File Upload vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-52377WordPress Instant Image Generator (One Click Image Uploads from Pixabay, Pexels and OpenAI) plugin <= 1.5.4 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52379WordPress kineticPay for WooCommerce plugin <= 2.0.8 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52380WordPress Picsmize plugin <= 1.0.0 - Arbitrary File Upload vulnerability

First published (updated )

CVE-2024-52382WordPress Matix Popup Builder plugin <= 1.0.0 - Arbitrary Option Update to Privilege Escalation vulnerability

First published (updated )

CVE-2024-52384WordPress Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation plugin <= 2.4.9 - Arbitrary File Upload vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-3502Exposure of Sensitive Information in lunary-ai/lunary

First published (updated )

CVE-2024-3501Exposure of Sensitive Information in lunary-ai/lunary

First published (updated )

CVE-2024-3379Incorrect Authorization in lunary-ai/lunary

First published (updated )

CVE-2024-4343Python Command Injection in imartinez/privategpt

First published (updated )

CVE-2024-52393WordPress Podlove Podcast Publisher plugin <= 4.1.15 - Admin+ Remote Code Execution (RCE) vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-37285Kibana arbitrary code execution via YAML deserialization

First published (updated )

CVE-2024-10571Chartify – WordPress Chart Plugin <= 2.9.5 - Unauthenticated Local File Inclusion via source

First published (updated )

CVE-2024-50306Apache Traffic Server: Server process can fail to drop privilege

First published (updated )

CVE-2024-52295DataEase has a forged JWT token vulnerability

First published (updated )

nuget/DotNetZipPath Traversal

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-52300macro-pdfviewer has a XSS through the width parameter

First published (updated )

CVE-2024-11028MultiManager WP – Manage All Your WordPress Sites Easily <= 1.0.5 - Authentication Bypass via User Impersonation

First published (updated )

CVE-2024-10575CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enable…

First published (updated )

CVE-2024-11150WordPress User Extra Fields <= 16.6 - Unauthenticated Arbitrary File Deletion

First published (updated )

CVE-2024-8938Buffer Overflow

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-10820WooCommerce Upload Files <= 84.3 - Unauthenticated Arbitrary File Upload

First published (updated )

CVE-2024-38655Argument injection in Ivanti Connect Secure before version 22.7R2.1 and Ivanti Policy Secure before …

First published (updated )

CVE-2024-39710Argument injection in Ivanti Connect Secure before version 22.7R2 and 9.1R18.7 and Ivanti Policy Sec…

First published (updated )

CVE-2024-39711Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti Policy S…

First published (updated )

CVE-2024-38656Argument injection in Ivanti Connect Secure before version 22.7R2.2 and 9.1R18.9 and Ivanti Policy S…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2024-39712Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti Policy S…

First published (updated )

nuget/DotNetZipPath Traversal

First published (updated )

rubygems/decidim-decidim_awesomeSQL Injection

First published (updated )

CVE-2024-10218TIBCO Hawk Stored-XEE Vulnerability

First published (updated )

CVE-2024-10217TIBCO Hawk Stored-XSS Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

nuget/System.Formats.Nrbf## Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-6x36-qxmj-r…

First published (updated )

CVE-2024-10943FactoryTalk® Updater Authentication Bypass

First published (updated )

CVE-2024-49369Icinga 2 has a TLS Certificate Validation Bypass for JSON-RPC and HTTP API Connections

First published (updated )

CVE-2024-11005OS Command Injection, Command Injection

First published (updated )

CVE-2024-11006OS Command Injection, Command Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203