|
304211
|
8.8 |
HIGH
Network
|
microsoft
|
python_extension
|
Visual Studio Code Python Extension Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49050
|
2024-11-19 07:03 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304212
|
7.5 |
HIGH
Network
|
lunary
|
lunary
|
In lunary-ai/lunary version 1.2.7, there is a lack of rate limiting on the forgot password page, leading to an email bombing vulnerability. Attackers can exploit this by automating forgot password re…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2024-3760
|
2024-11-19 07:02 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304213
|
- |
|
-
|
-
|
A Python command injection vulnerability exists in the `SagemakerLLM` class's `complete()` method within `./private_gpt/components/llm/custom/sagemaker.py` of the imartinez/privategpt application, ve…
|
CWE-78
OS Command
|
CVE-2024-4343
|
2024-11-19 06:35 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304214
|
- |
|
-
|
-
|
An unclaimed Amazon S3 bucket, 'codeconf', is referenced in an audio file link within the .rst documentation file. This bucket has been claimed by an external party. The use of this unclaimed S3 buck…
|
CWE-840
Business Logic Errors
|
CVE-2024-1682
|
2024-11-19 06:35 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304215
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: bnep: fix wild-memory-access in proto_unregister
There's issue as follows:
KASAN: maybe wild-memory-access in range …
|
NVD-CWE-noinfo
|
CVE-2024-50148
|
2024-11-19 06:24 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304216
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Fix command bitmask initialization
Command bitmask have a dedicated bit for MANAGE_PAGES command, this bit
isn't Initia…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-50147
|
2024-11-19 06:19 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304217
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/xe: fix unbalanced rpm put() with fence_fini()
Currently we can call fence_fini() twice if something goes wrong when
sending …
|
NVD-CWE-noinfo
|
CVE-2024-50144
|
2024-11-19 06:16 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304218
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_server_2016
|
Active Directory Certificate Services Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49019
|
2024-11-19 06:12 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304219
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_serv…
|
Windows Telephony Service Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43627
|
2024-11-19 05:58 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304220
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_…
|
Windows Telephony Service Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43628
|
2024-11-19 05:46 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|