CVE Database

120754+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-49510
5.5 MEDIUM

InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Nov 12, 2024
CVE-2024-49509
7.8 HIGH

InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-49508
7.8 HIGH

InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-49507
7.8 HIGH

InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-11117
4.3 MEDIUM

Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security …

Nov 12, 2024
CVE-2024-11116
4.3 MEDIUM

Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to …

Nov 12, 2024
CVE-2024-11115
8.8 HIGH

Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker to perform privilege escalation via a series of …

Nov 12, 2024
CVE-2024-11114
8.3 HIGH

Inappropriate implementation in Views in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potentially perform …

Nov 12, 2024
CVE-2024-11113
8.8 HIGH

Use after free in Accessibility in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potentially exploit heap …

Nov 12, 2024
CVE-2024-11112
8.8 HIGH

Use after free in Media in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Nov 12, 2024
CVE-2024-11111
4.3 MEDIUM

Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to …

Nov 12, 2024
CVE-2024-11110
6.5 MEDIUM

Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security …

Nov 12, 2024
CVE-2024-52301
7.5 HIGH

Laravel is a web application framework. When the register_argc_argv php directive is set to on , and users call any URL with a special crafted …

Nov 12, 2024
CVE-2024-49525
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-49520
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-49519
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-49518
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-49517
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-49516
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-49515
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code. If the …

Nov 12, 2024
CVE-2024-47440
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Nov 12, 2024
CVE-2024-47439
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could …

Nov 12, 2024
CVE-2024-47438
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by a Write-what-where Condition vulnerability that could lead to a memory leak. This vulnerability allows an …

Nov 12, 2024
CVE-2024-47437
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Nov 12, 2024
CVE-2024-47436
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Nov 12, 2024
CVE-2024-47435
5.5 MEDIUM

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Nov 12, 2024
CVE-2024-47434
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47433
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47432
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47431
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Nov 12, 2024
CVE-2024-47430
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47429
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47428
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47427
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-47426
7.8 HIGH

Substance3D - Painter versions 10.1.0 and earlier are affected by a Double Free vulnerability that could result in arbitrary code execution in the context of …

Nov 12, 2024
CVE-2024-2208
8.8 HIGH

Potential vulnerabilities have been identified in the audio package for certain HP PC products using the Sound Research SECOMN64 driver, which might allow escalation of …

Nov 12, 2024
CVE-2024-2207
6.0 MEDIUM

Potential vulnerabilities have been identified in the audio package for certain HP PC products using the Sound Research SECOMN64 driver, which might allow escalation of …

Nov 12, 2024
CVE-2024-10218

XSS Attack in mar.jar, Monitoring Archive Utility (MAR Utility), monitoringconsolecommon.jar in TIBCO Software Inc TIBCO Hawk and TIBCO Operational Intelligence

Nov 12, 2024
CVE-2024-10217

XSS Attack in mar.jar, Monitoring Archive Utility (MAR Utility), monitoringconsolecommon.jar in TIBCO Software Inc TIBCO Hawk and TIBCO Operational Intelligence

Nov 12, 2024
CVE-2024-8535
8.1 HIGH

Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA …

Nov 12, 2024
CVE-2024-8534
8.1 HIGH

Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway …

Nov 12, 2024
CVE-2024-7516
7.1 HIGH

A vulnerability in Brocade Fabric OS versions before 9.2.2 could allow man-in-the-middle attackers to conduct remote Service Session Hijacking that may arise from the attacker's …

Nov 12, 2024
CVE-2024-51722
6.4 MEDIUM

A local privilege escalation vulnerability in the SecuSUITE Server (System Configuration) of SecuSUITE versions 5.0.420 and earlier could allow a successful attacker that had gained …

Nov 12, 2024
CVE-2024-51721
7.3 HIGH

A code injection vulnerability in the SecuSUITE Server Web Administration Portal of SecuSUITE versions 5.0.420 and earlier could allow an attacker to potentially inject script …

Nov 12, 2024
CVE-2024-49042
7.2 HIGH

Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability

Nov 12, 2024
CVE-2024-47458
5.5 MEDIUM

Bridge versions 13.0.9, 14.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit …

Nov 12, 2024
CVE-2024-47457
5.5 MEDIUM

Illustrator versions 28.7.1 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this …

Nov 12, 2024
CVE-2024-47456
5.5 MEDIUM

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Nov 12, 2024
CVE-2024-47455
5.5 MEDIUM

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Nov 12, 2024
CVE-2024-47454
5.5 MEDIUM

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Nov 12, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.