CVE Database

122268+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-29783
6.7 MEDIUM

In tmu_get_tr_thresholds, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-29782
5.5 MEDIUM

In tmu_get_tr_num_thresholds of tmu.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-29757
7.3 HIGH

there is a possible permission bypass due to Debug certs being allowlisted. This could lead to local escalation of privilege with no additional execution privileges …

Apr 5, 2024
CVE-2024-29756
9.8 CRITICAL

In afe_callback of q6afe.c, there is a possible out of bounds write due to a buffer overflow. This could lead to local escalation of privilege …

Apr 5, 2024
CVE-2024-29755
4.4 MEDIUM

In tmu_get_pi of tmu.c, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with …

Apr 5, 2024
CVE-2024-29754
6.2 MEDIUM

In TMU_IPC_GET_TABLE, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-29753
7.7 HIGH

In tmu_set_control_temp_step of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29752
7.8 HIGH

In tmu_set_tr_num_thresholds of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29751
5.5 MEDIUM

In asn1_ec_pkey_parse_p384 of asn1_common.c, there is a possible OOB Read due to a missing null check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-29750
5.5 MEDIUM

In km_exp_did_inner of kmv.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-29749
8.4 HIGH

In tmu_set_tr_thresholds of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29748
7.8 HIGH KEV

there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no …

Apr 5, 2024
CVE-2024-29747
5.9 MEDIUM

In _dvfs_get_lv of dvfs.c, there is a possible out of bounds read due to a missing null check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-29746
8.4 HIGH

In lpm_req_handler of lpm.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege …

Apr 5, 2024
CVE-2024-29745
5.5 MEDIUM KEV

there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction …

Apr 5, 2024
CVE-2024-29744
5.5 MEDIUM

In tmu_get_gov_time_windows, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-29743
7.7 HIGH

In tmu_set_temp_lut of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29742
5.5 MEDIUM

In apply_minlock_constraint of dvfs.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-29741
7.8 HIGH

In pblS2mpuResume of s2mpu.c, there is a possible mitigation bypass due to a logic error in the code. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29740
7.4 HIGH

In tmu_set_table of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of …

Apr 5, 2024
CVE-2024-29739
5.5 MEDIUM

In tmu_get_temp_lut of tmu.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-29738
5.5 MEDIUM

In gov_init, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-27232
5.5 MEDIUM

In asn1_ec_pkey_parse of asn1_common.c, there is a possible OOB read due to a missing null check. This could lead to local information disclosure with no …

Apr 5, 2024
CVE-2024-27231
5.9 MEDIUM

In tmu_get_tr_stats of tmu.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure …

Apr 5, 2024
CVE-2024-3352
7.3 HIGH

A vulnerability has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the …

Apr 5, 2024
CVE-2024-0081
8.6 HIGH

NVIDIA NeMo framework for Ubuntu contains a vulnerability in tools/asr_webapp where an attacker may cause an allocation of resources without limits or throttling. A successful …

Apr 5, 2024
CVE-2024-3351
7.3 HIGH

A vulnerability, which was classified as critical, was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the …

Apr 5, 2024
CVE-2024-3350
7.3 HIGH

A vulnerability, which was classified as critical, has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this issue is some …

Apr 5, 2024
CVE-2024-31851
8.6 HIGH

A path traversal vulnerability exists in the Java version of CData Sync < 23.4.8843 when running using the embedded Jetty server, which could allow an …

Apr 5, 2024
CVE-2024-31850
8.6 HIGH

A path traversal vulnerability exists in the Java version of CData Arc < 23.4.8839 when running using the embedded Jetty server, which could allow an …

Apr 5, 2024
CVE-2024-31849
9.8 CRITICAL

A path traversal vulnerability exists in the Java version of CData Connect < 23.4.8846 when running using the embedded Jetty server, which could allow an …

Apr 5, 2024
CVE-2024-31848
9.8 CRITICAL

A path traversal vulnerability exists in the Java version of CData API Server < 23.4.8844 when running using the embedded Jetty server, which could allow …

Apr 5, 2024
CVE-2024-28065
5.9 MEDIUM

In Unify CP IP Phone firmware 1.10.4.3, files are not encrypted and contain sensitive information such as the root password hash.

Apr 5, 2024
CVE-2024-22004
10.0 CRITICAL

Due to length check, an attacker with privilege access on a Linux Nonsecure operating system can trigger a vulnerability and leak the secure memory from …

Apr 5, 2024
CVE-2024-0080
2.8 LOW

NVIDIA nvTIFF Library for Windows and Linux contains a vulnerability where improper input validation might enable an attacker to use a specially crafted input file. …

Apr 5, 2024
CVE-2024-0076
3.3 LOW

NVIDIA CUDA toolkit for all platforms contains a vulnerability in cuobjdump and nvdisasm where an attacker may cause a crash by tricking a user into …

Apr 5, 2024
CVE-2024-0072
3.3 LOW

NVIDIA CUDA toolkit for all platforms contains a vulnerability in cuobjdump and nvdisasm where an attacker may cause a crash by tricking a user into …

Apr 5, 2024
CVE-2023-31028
2.8 LOW

NVIDIA nvJPEG2000 Library for Windows and Linux contains a vulnerability where improper input validation might enable an attacker to use a specially crafted input file. …

Apr 5, 2024
CVE-2024-3349
7.3 HIGH

A vulnerability classified as critical was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this vulnerability is an unknown functionality of …

Apr 5, 2024
CVE-2024-3348
7.3 HIGH

A vulnerability classified as critical has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected is an unknown function of the file …

Apr 5, 2024
CVE-2024-3347
7.3 HIGH

A vulnerability was found in SourceCodester Airline Ticket Reservation System 1.0. It has been rated as critical. This issue affects some unknown processing of the …

Apr 5, 2024
CVE-2024-3346
6.3 MEDIUM

A vulnerability was found in Byzoro Smart S80 up to 20240328. It has been declared as critical. This vulnerability affects unknown code of the file …

Apr 5, 2024
CVE-2023-48426
10.0 CRITICAL

u-boot bug that allows for u-boot shell and interrupt over UART

Apr 5, 2024
CVE-2024-31852
5.9 MEDIUM

LLVM before 18.1.3 generates code in which the LR register can be overwritten without data being saved to the stack, and thus there can sometimes …

Apr 5, 2024
CVE-2024-31220
7.3 HIGH

Sunshine is a self-hosted game stream host for Moonlight. Starting in version 0.16.0 and prior to version 0.18.0, an attacker may be able to remotely …

Apr 5, 2024
CVE-2024-31218
9.8 CRITICAL

Webhood is a self-hosted URL scanner used analyzing phishing and malicious sites. Webhood's backend container images in versions 0.9.0 and earlier are subject to Missing …

Apr 5, 2024
CVE-2024-31213
3.5 LOW

InstantCMS is a free and open source content management system. An open redirect was found in the ICMS2 application version 2.16.2 when being redirected after …

Apr 5, 2024
CVE-2023-49965
6.8 MEDIUM

SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page.

Apr 5, 2024
CVE-2024-2499
6.4 MEDIUM

The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'accordions' shortcode in all versions up to, …

Apr 5, 2024
CVE-2024-2380
4.6 MEDIUM

Stored XSS in graph rendering in Checkmk <2.3.0b4.

Apr 5, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.