CVE Database

53435+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-12754
5.5 MEDIUM

AnyDesk Link Following Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of AnyDesk. An attacker must first obtain …

Dec 30, 2024
CVE-2024-50703
5.4 MEDIUM

TeamPass before 3.1.3.1 does not properly prevent a user from acting with the privileges of a different user_id.

Dec 30, 2024
CVE-2024-50702
5.4 MEDIUM

TeamPass before 3.1.3.1 does not properly check whether a mail_me (aka action_mail) operation is on behalf of an administrator or manager.

Dec 30, 2024
CVE-2024-50701
4.3 MEDIUM

TeamPass before 3.1.3.1, when retrieving information about access rights for a folder, does not properly check whether a folder is in a user's allowed folders …

Dec 30, 2024
CVE-2024-47923
5.3 MEDIUM

Mashov – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Dec 30, 2024
CVE-2024-47918
6.1 MEDIUM

Tiki Wiki CMS – CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

Dec 30, 2024
CVE-2024-13039
6.3 MEDIUM

A vulnerability was found in code-projects Simple Chat System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of …

Dec 30, 2024
CVE-2024-13037
6.3 MEDIUM

A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has been classified as critical. Affected is the function attendance_report of the …

Dec 30, 2024
CVE-2024-13036
6.3 MEDIUM

A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/update_room.php. The manipulation …

Dec 30, 2024
CVE-2024-13035
6.3 MEDIUM

A vulnerability has been found in code-projects Chat System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/update_user.php. The manipulation …

Dec 30, 2024
CVE-2024-13029
4.3 MEDIUM

A vulnerability, which was classified as problematic, was found in Antabot White-Jotter up to 0.2.2. Affected is an unknown function of the file /admin/content/book of …

Dec 30, 2024
CVE-2024-13025
6.3 MEDIUM

A vulnerability was found in Codezips College Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /Front-end/faculty.php. …

Dec 29, 2024
CVE-2024-13024
6.3 MEDIUM

A vulnerability was found in Codezips Blood Bank Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /campaign.php. …

Dec 29, 2024
CVE-2024-13022
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in taisan tarzan-cms 1.0.0. This affects the function UploadResponse of the file src/main/java/com/tarzan/cms/modules/admin/controller/common/UploadController.java of the component …

Dec 29, 2024
CVE-2024-13020
6.3 MEDIUM

A vulnerability classified as critical was found in code-projects Chat System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/chatroom.php. The …

Dec 29, 2024
CVE-2024-13016
6.3 MEDIUM

A vulnerability was found in PHPGurukul Maid Hiring Management System 1.0. It has been classified as critical. This affects an unknown part of the file …

Dec 29, 2024
CVE-2024-13014
6.3 MEDIUM

A vulnerability has been found in PHPGurukul Maid Hiring Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of …

Dec 29, 2024
CVE-2024-56756
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix freeing of the HMB descriptor table The HMB descriptor table is sized to …

Dec 29, 2024
CVE-2024-56755
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfs/fscache: Add a memory barrier for FSCACHE_VOLUME_CREATING In fscache_create_volume(), there is a missing memory barrier …

Dec 29, 2024
CVE-2024-56754
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - Fix the pointer passed to caam_qi_shutdown() The type of the last parameter …

Dec 29, 2024
CVE-2024-56753
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/gfx9: Add Cleaner Shader Deinitialization in gfx_v9_0 Module This commit addresses an omission in the …

Dec 29, 2024
CVE-2024-56752
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/gr/gf100: Fix missing unlock in gf100_gr_chan_new() When the call to gf100_grctx_generate() fails, unlock gr->fecs.mutex before …

Dec 29, 2024
CVE-2024-56751
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ipv6: release nexthop on device removal The CI is hitting some aperiodic hangup at device …

Dec 29, 2024
CVE-2024-56750
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: erofs: fix blksize < PAGE_SIZE for file-backed mounts Adjust sb->s_blocksize{,_bits} directly for file-backed mounts when …

Dec 29, 2024
CVE-2024-56749
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dlm: fix dlm_recover_members refcount on error If dlm_recover_members() fails we don't drop the references of …

Dec 29, 2024
CVE-2024-56748
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Fix a possible memory leak in qedf_alloc_and_init_sb() Hook "qed_ops->common->sb_init = qed_sb_init" does not …

Dec 29, 2024
CVE-2024-56747
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: qedi: Fix a possible memory leak in qedi_alloc_and_init_sb() Hook "qedi_ops->common->sb_init = qed_sb_init" does not …

Dec 29, 2024
CVE-2024-56746
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: fbdev: sh7760fb: Fix a possible memory leak in sh7760fb_alloc_mem() When information such as info->screen_base is …

Dec 29, 2024
CVE-2024-56745
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: PCI: Fix reset_method_store() memory leak In reset_method_store(), a string is allocated via kstrndup() and assigned …

Dec 29, 2024
CVE-2024-56744
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid potential deadlock in f2fs_record_stop_reason() syzbot reports deadlock issue of f2fs as …

Dec 29, 2024
CVE-2024-56743
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nfs_common: must not hold RCU while calling nfsd_file_put_local Move holding the RCU from nfs_to_nfsd_file_put_local to …

Dec 29, 2024
CVE-2024-56742
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: vfio/mlx5: Fix an unwind issue in mlx5vf_add_migration_pages() Fix an unwind issue in mlx5vf_add_migration_pages(). If a …

Dec 29, 2024
CVE-2024-56739
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: rtc: check if __rtc_read_time was successful in rtc_timer_do_work() If the __rtc_read_time call fails,, the struct …

Dec 29, 2024
CVE-2024-56730
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/9p/usbg: fix handling of the failed kzalloc() memory allocation On the linux-next, next-20241108 vanilla kernel, …

Dec 29, 2024
CVE-2024-56729
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: smb: Initialize cfid->tcon before performing network ops Avoid leaking a tcon ref when a lease …

Dec 29, 2024
CVE-2024-56728
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx2_ethtool.c Add error pointer check after calling otx2_mbox_get_rsp().

Dec 29, 2024
CVE-2024-56727
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx2_flows.c Adding error pointer check after calling otx2_mbox_get_rsp().

Dec 29, 2024
CVE-2024-56726
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in cn10k.c Add error pointer check after calling otx2_mbox_get_rsp().

Dec 29, 2024
CVE-2024-56725
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx2_dcbnl.c Add error pointer check after calling otx2_mbox_get_rsp().

Dec 29, 2024
CVE-2024-56724
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for TMU device While design wise the idea of converting …

Dec 29, 2024
CVE-2024-56723
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for PMIC devices While design wise the idea of converting …

Dec 29, 2024
CVE-2024-56722
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix cpu stuck caused by printings during reset During reset, cmd to destroy resources …

Dec 29, 2024
CVE-2024-56720
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Several fixes to bpf_msg_pop_data Several fixes to bpf_msg_pop_data, 1. In sk_msg_shift_left, we should …

Dec 29, 2024
CVE-2024-13008
6.3 MEDIUM

A vulnerability has been found in code-projects Responsive Hotel Site 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the …

Dec 29, 2024
CVE-2024-56719
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix TSO DMA API usage causing oops Commit 66600fac7a98 ("net: stmmac: TSO: Fix …

Dec 29, 2024
CVE-2024-56718
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/smc: protect link down work from execute after lgr freed link down work may be …

Dec 29, 2024
CVE-2024-56717
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: fix incorrect IFH SRC_PORT field in ocelot_ifh_set_basic() Packets injected by the CPU …

Dec 29, 2024
CVE-2024-56716
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netdevsim: prevent bad user input in nsim_dev_health_break_write() If either a zero count or a large …

Dec 29, 2024
CVE-2024-56715
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ionic: Fix netdev notifier unregister on failure If register_netdev() fails, then the driver leaks the …

Dec 29, 2024
CVE-2024-56714
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ionic: no double destroy workqueue There are some FW error handling paths that can cause …

Dec 29, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.