VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3811 CVEsRSS

CVE-2024-3822Medium· 4.8PoC
2y ago

The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such a…

The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such a…

▾ Twilightmranderson · base64_encoder/decoderEPSS 0.75%via NVD
CVE-2024-34064Medium· 5.4PoC
2y ago

Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter

Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter

▾ Twilightjinja2 · jinja2EPSS 0.98%via OSV
CVE-2024-34069High· 7.5PoC
2y ago

Werkzeug debugger vulnerable to remote execution when interacting with attacker controlled domain

Werkzeug debugger vulnerable to remote execution when interacting with attacker controlled domain

▾ Midnightwerkzeug · werkzeugEPSS 3.4%via OSV
CVE-2024-34061Medium· 4.3PoC
2y ago

changedetection.io Cross-site Scripting vulnerability

changedetection.io Cross-site Scripting vulnerability

▾ Twilightchangedetection-io · changedetection-ioEPSS 1.3%via OSV
CVE-2024-33775High· 8.8PoC
2y ago

An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.

An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.

▾ Midnightnagios · nagios_xiEPSS 1.4%via NVD
CVE-2024-33668Critical· 9.1PoC
2y ago

An issue was discovered in Zammad before 6.3.0

An issue was discovered in Zammad before 6.3.0. The Zammad Upload Cache uses insecure, partially guessable FormIDs to identify content. An attacker could try to brute force them to upload malicious content to article drafts they have no …

▾ Abyssalzammad · zammadEPSS 0.45%via NVD
CVE-2020-8559Medium· 6.8PoC
2y ago

Privilege Escalation in Kubernetes

Privilege Escalation in Kubernetes

▾ Twilightapimachinery · k8s.io/apimachineryEPSS 6.1%via OSV
CVE-2024-1183Medium· 6.5PoC
2y ago

gradio Server-Side Request Forgery vulnerability

gradio Server-Side Request Forgery vulnerability

▾ Twilightgradio · gradioEPSS 1.8%via OSV
CVE-2024-1561High· 7.5PoC
2y ago

gradio vulnerable to Path Traversal

gradio vulnerable to Path Traversal

▾ Midnightgradio · gradioEPSS 9.3%via OSV
CVE-2024-1483High· 7.5PoC
2y ago

mlflow Path Traversal vulnerability

mlflow Path Traversal vulnerability

▾ Midnightmlflow · mlflowEPSS 2.7%via OSV
CVE-2024-3651Medium· 6.2PoC
2y ago

Internationalized Domain Names in Applications (IDNA) vulnerable to denial of service from specially crafted inputs to idna.encode

Internationalized Domain Names in Applications (IDNA) vulnerable to denial of service from specially crafted inputs to idna.encode

▾ Twilightidna · idnaEPSS 1.4%via OSV
CVE-2024-3568Low· 3.4PoC
2y ago

Transformers Deserialization of Untrusted Data vulnerability

Transformers Deserialization of Untrusted Data vulnerability

▾ Twilighttransformers · transformersEPSS 2.1%via OSV
CVE-2023-45288Medium· 5.3PoC
2y ago

net/http, x/net/http2: close connections when receiving too many headers

net/http, x/net/http2: close connections when receiving too many headers

▾ Twilightnet · net/httpEPSS 92%via OSV
CVE-2024-3116High· 7.4PoC
2y ago

pgAdmin Remote Code Execution (RCE) vulnerability

pgAdmin Remote Code Execution (RCE) vulnerability

▾ Midnightpgadmin4 · pgadmin4EPSS 66%via OSV
CVE-2024-1023Medium· 6.5PoC
2y ago

A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures

A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures. Specifically, when the Vert.x HTTP client establishes connections to different hosts, triggering the memory leak. …

▾ TwilightRed Hat · vertx-coreEPSS 1.7%via NVD
CVE-2024-1753High· 8.6PoC
2y ago

A flaw was found in Buildah (and subsequently Podman Build) which allows containers to mount arbitrary locations on the host filesystem into build containers

A flaw was found in Buildah (and subsequently Podman Build) which allows containers to mount arbitrary locations on the host filesystem into build containers. A malicious Containerfile can use a dummy image with a symbolic link to the ro…

▾ MidnightRed Hat · buildahEPSS 0.49%via NVD
CVE-2024-22513LowPoC
2y ago

Improper Privilege Management in djangorestframework-simplejwt

Improper Privilege Management in djangorestframework-simplejwt

▾ Twilightdjangorestframework-simplejwt · djangorestframework-simplejwtEPSS 0.80%via OSV
CVE-2024-27102Critical· 9.9PoC
2y ago

Wings is the server control plane for Pterodactyl Panel

Wings is the server control plane for Pterodactyl Panel. This vulnerability impacts anyone running the affected versions of Wings. The vulnerability can potentially be used to access files and directories on the host system. The full sco…

▾ Abyssalpterodactyl · wingsEPSS 0.55%via NVD
CVE-2023-42789Critical· 9.8PoC
2y ago

A out-of-bounds write vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 through 7.0.12, FortiOS 6.4.0 through 6.4.14, FortiOS 6.2.0 through 6.2.15, FortiProxy 7.4.0, FortiProxy 7.2.0 throug…

A out-of-bounds write vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 through 7.0.12, FortiOS 6.4.0 through 6.4.14, FortiOS 6.2.0 through 6.2.15, FortiProxy 7.4.0, FortiProxy 7.2.0 throug…

▾ Abyssalfortinet · fortiproxyEPSS 3.3%via NVD
CVE-2024-27304High· 8.1PoC
2y ago

pgx: SQL Injection via Protocol Message Size Overflow (CVE-2024-27304)

pgx is a PostgreSQL driver and toolkit for Go. SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be…

▾ MidnightRed Hat · RHACS 4.3 for RHEL 8EPSS 1.1%via CSAF
CVE-2024-22889Medium· 5.5PoC
2y ago

Phone information disclosure vulnerability

Phone information disclosure vulnerability

▾ Twilightplone · ploneEPSS 0.70%via OSV
CVE-2024-27292High· 7.5PoC
2y ago

Docassemble unauthorized access through URL manipulation

Docassemble unauthorized access through URL manipulation

▾ Midnightdocassemble-webapp · docassemble-webappEPSS 69%via OSV
CVE-2024-25169MediumPoC
2y ago

Mezzanine allows attackers to bypass access control mechanisms

Mezzanine allows attackers to bypass access control mechanisms

▾ Twilightmezzanine · mezzanineEPSS 1.1%via OSV
CVE-2024-25170MediumPoC
2y ago

Mezzanine allows attackers to bypass access controls via manipulating the Host header

Mezzanine allows attackers to bypass access controls via manipulating the Host header

▾ Twilightmezzanine · mezzanineEPSS 0.88%via OSV
CVE-2024-25723Medium· 6.5PoC
2y ago

ZenML Server Remote Privilege Escalation Vulnerability

ZenML Server Remote Privilege Escalation Vulnerability

▾ Twilightzenml · zenmlEPSS 71%via OSV
CVE-2019-25162High· 7.8PoC
2y ago

In the Linux kernel, the following vulnerability has been resolved: i2c: Fix a potential use after free Free the adap structure only after we are done using it. This patch just moves the put_device() down a bit to avoid the use after f…

In the Linux kernel, the following vulnerability has been resolved: i2c: Fix a potential use after free Free the adap structure only after we are done using it. This patch just moves the put_device() down a bit to avoid the use after f…

▾ Midnightlinux · linux_kernelEPSS 0.38%via NVD
CVE-2023-52440Critical· 9.8PoC
2y ago

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob() If authblob->SessionKey.Length is bigger than session key size(CIFS_KEY_SIZE), slub overflow can happen in…

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob() If authblob->SessionKey.Length is bigger than session key size(CIFS_KEY_SIZE), slub overflow can happen in…

▾ Abyssallinux · linux_kernelEPSS 22%via NVD
CVE-2024-1212Critical· 10.0CISA KEVPoC
2y ago

Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.

Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.

▾ Hadalprogress · loadmasterEPSS 95%via NVD
CVE-2024-21338High· 7.8CISA KEV0dayPoC
2y ago

Windows Kernel Elevation of Privilege Vulnerability

Windows Kernel Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1809EPSS 60%via NVD
CVE-2024-21490High· 7.5PoC
2y ago

This affects versions of the package angular from 1.3.0; versions of the package angularjs from 1.3.0

This affects versions of the package angular from 1.3.0; versions of the package angularjs from 1.3.0. A regular expression used to split the value of the ng-srcset directive is vulnerable to super-linear runtime due to backtracking. Wit…

▾ Midnightangularjs · angular.jsEPSS 1.9%via NVD
CVEs tagged “exploit-available” — page 112 · VulnSea