|
309521
|
9.8 |
CRITICAL
Network
|
phpgurukul
|
online_shopping_portal
|
A vulnerability classified as critical was found in PHPGurukul Online Shopping Portal 2.0. This vulnerability affects unknown code of the file /shopping/admin/index.php of the component Admin Panel. …
|
CWE-89
SQL Injection
|
CVE-2024-9326
|
2024-10-2 22:33 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309522
|
9.8 |
CRITICAL
Network
|
anisha
|
supply_chain_management
|
A vulnerability was found in code-projects Supply Chain Management 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/edit_manufacturer.php. The manipulation …
|
CWE-89
SQL Injection
|
CVE-2024-9322
|
2024-10-2 22:32 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309523
|
7.5 |
HIGH
Network
|
code-projects
|
blood_bank_system
|
A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an unknown function of the file /admin/blood/update/B+.php. The manipulation of th…
|
CWE-89
SQL Injection
|
CVE-2024-9316
|
2024-10-2 22:29 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309524
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Fix the warning division or modulo by zero
Checks the partition mode and returns an error for an invalid mode.
|
CWE-369
Divide By Zero
|
CVE-2024-46806
|
2024-10-2 22:17 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309525
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: fix the waring dereferencing hive
Check the amdgpu_hive_info *hive that maybe is NULL.
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-46805
|
2024-10-2 21:58 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309526
|
9.8 |
CRITICAL
Network
|
code-projects
|
blood_bank_system
|
A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /forgot.php. The manipulation of the argument u…
|
CWE-89
SQL Injection
|
CVE-2024-9327
|
2024-10-2 21:57 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309527
|
6.1 |
MEDIUM
Network
|
ckeditor
|
ckeditor5
|
CKEditor 5 is a JavaScript rich-text editor. Starting in version 40.0.0 and prior to version 43.1.1, a Cross-Site Scripting (XSS) vulnerability is present in the CKEditor 5 clipboard package. This vu…
|
CWE-79
Cross-site Scripting
|
CVE-2024-45613
|
2024-10-2 07:15 |
2024-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309528
|
6.5 |
MEDIUM
Network
|
apache
|
druid
|
Apache Druid allows users with certain permissions to read data from other database systems using JDBC. This functionality allows trusted users to set up Druid lookups or run ingestion tasks. Druid a…
|
NVD-CWE-noinfo
|
CVE-2024-45537
|
2024-10-2 05:41 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309529
|
7.8 |
HIGH
Local
|
restsharp
|
restsharp
|
RestSharp is a Simple REST and HTTP API Client for .NET. The second argument to `RestRequest.AddHeader` (the header value) is vulnerable to CRLF injection. The same applies to `RestRequest.AddOrUpdat…
|
CWE-74
Injection
|
CVE-2024-45302
|
2024-10-2 05:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309530
|
8.0 |
HIGH
Network
|
strawberryrocks
|
strawberry
|
Strawberry GraphQL is a library for creating GraphQL APIs. Prior to version 0.243.0, multipart file upload support as defined in the GraphQL multipart request specification was enabled by default in …
|
CWE-352
Origin Validation Error
|
CVE-2024-47082
|
2024-10-2 05:01 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|