Search CVE reports


Toggle filters

1 – 10 of 25702 results

Status is adjusted based on your filters.


CVE-2024-8650

Medium priority

Not in release

An issue was discovered in GitLab CE/EE affecting all versions from 15.0 prior to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2 that allowed non-member users to view unresolved threads marked as internal notes in public...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2024-8116

Medium priority

Not in release

An issue has been discovered in GitLab CE/EE affecting all versions from 16.9 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. By using a specific GraphQL query, under specific conditions an unauthorized user...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2024-55919

Medium priority
Needs evaluation

[Improper input validation on generic SSO login]

1 affected package

sympa

Package 22.04 LTS
sympa Needs evaluation
Show less packages

CVE-2024-52949

Medium priority
Vulnerable

iptraf-ng 1.2.1 has a stack-based buffer overflow.

1 affected package

iptraf-ng

Package 22.04 LTS
iptraf-ng Vulnerable
Show less packages

CVE-2024-7701

Medium priority
Needs evaluation

Use of Password Hash With Insufficient Computational Effort vulnerability in percona percona-toolkit allows Encryption Brute Forcing.This issue affects percona-toolkit: 3.6.0.

1 affected package

percona-toolkit

Package 22.04 LTS
percona-toolkit Needs evaluation
Show less packages

CVE-2024-6285

Medium priority
Needs evaluation

(Integer Underflow (Wrap or Wraparound) vulnerability in Renesas arm-tr ...)

1 affected package

arm-trusted-firmware

Package 22.04 LTS
arm-trusted-firmware Needs evaluation
Show less packages

CVE-2024-6104

Medium priority
Needs evaluation

(go-retryablehttp prior to 0.7.7 did not sanitize urls when writing the ...)

1 affected package

golang-github-hashicorp-go-retryablehttp

Package 22.04 LTS
golang-github-hashicorp-go-retryablehttp Needs evaluation
Show less packages

CVE-2024-56073

Medium priority

Not in release

An issue was discovered in FastNetMon Community Edition through 1.2.7. Zero-length templates for Netflow v9 allow remote attackers to cause a denial of service (divide-by-zero error and application crash).

1 affected package

fastnetmon

Package 22.04 LTS
fastnetmon Not in release
Show less packages

CVE-2024-56072

Medium priority

Not in release

An issue was discovered in FastNetMon Community Edition through 1.2.7. The sFlow v5 plugin allows remote attackers to cause a denial of service (application crash) via a crafted packet that specifies many sFlow samples.

1 affected package

fastnetmon

Package 22.04 LTS
fastnetmon Not in release
Show less packages

CVE-2024-55565

Medium priority
Needs evaluation

(nanoid (aka Nano ID) before 5.0.9 mishandles non-integer values. 3.3.8 ...)

1 affected package

node-postcss

Package 22.04 LTS
node-postcss Needs evaluation
Show less packages