|
305821
|
4.3 |
MEDIUM
Network
|
wpbeginner
|
transients_manager
|
The Transients Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.6. This is due to missing or incorrect nonce validation on the proces…
|
CWE-352
Origin Validation Error
|
CVE-2024-10045
|
2024-10-26 03:52 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305822
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
gpiolib: fix memory leak in gpiochip_setup_dev()
Here is a backtrace report about memory leak detected in
gpiochip_setup_dev():
…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2022-48975
|
2024-10-26 03:48 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305823
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
can: af_can: fix NULL pointer dereference in can_rcv_filter
Analogue to commit 8aa59e355949 ("can: af_can: fix NULL pointer
deref…
|
CWE-476
NULL Pointer Dereference
|
CVE-2022-48977
|
2024-10-26 03:47 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305824
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: flowtable_offload: fix using __this_cpu_add in preemptible
flow_offload_queue_work() can be called in workqueue withou…
|
NVD-CWE-noinfo
|
CVE-2022-48976
|
2024-10-26 03:47 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305825
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
HID: core: fix shift-out-of-bounds in hid_report_raw_event
Syzbot reported shift-out-of-bounds in hid_report_raw_event.
microsof…
|
NVD-CWE-Other
|
CVE-2022-48978
|
2024-10-26 03:46 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305826
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: fix array index out of bound error in DCN32 DML
[Why&How]
LinkCapacitySupport array is indexed with the number o…
|
CWE-129
Improper Validation of Array Index
|
CVE-2022-48979
|
2024-10-26 03:40 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305827
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: sja1105: avoid out of bounds access in sja1105_init_l2_policing()
The SJA1105 family has 45 L2 policing table entries
(…
|
CWE-787
Out-of-bounds Write
|
CVE-2022-48980
|
2024-10-26 03:36 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305828
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/shmem-helper: Remove errant put in error path
drm_gem_shmem_mmap() doesn't own this reference, resulting in the GEM
object ge…
|
CWE-416
Use After Free
|
CVE-2022-48981
|
2024-10-26 03:33 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305829
|
8.1 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_10_1607 windows_server_2019 windows…
|
Windows MSHTML Platform Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43573
|
2024-10-26 03:17 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305830
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_10_1607 windows…
|
Microsoft Management Console Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43572
|
2024-10-26 03:17 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|