Lucene search

K

Modicon Controllers (M340 CPUs, M340 Communication Modules, Premium CPUs, Premium Communication Modules, Quantum CPUs, Quantum Communication Modules - See Security Notification For Specific Versions) Security Vulnerabilities

nodejsblog
nodejsblog

Tuesday, July 2, 2024 Security Releases

Summary The Node.js project will release new versions of the 22.x, 20.x, 18.x releases lines on or shortly after, Tuesday, July 2, 2024 in order to address: 1 high severity issues. 2 medium severity issues. 3 low severity issues. Node.js fetch will be upgraded to undici v6.19.2 on Node.js 18.x...

7AI Score

2024-07-02 12:00 AM
62
cve
cve

CVE-2024-5819

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

5.7AI Score

EPSS

2024-06-29 10:15 AM
2
nvd
nvd

CVE-2024-5819

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

EPSS

2024-06-29 10:15 AM
2
openbugbounty
openbugbounty

laganggps.ca Cross Site Scripting vulnerability OBB-3939588

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 10:11 AM
2
cvelist
cvelist

CVE-2024-5819 Gutenberg Blocks with AI by Kadence WP – Page Builder Features <= 3.2.45 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via HTML Data Attributes

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

EPSS

2024-06-29 09:46 AM
2
openbugbounty
openbugbounty

cepim.fr Cross Site Scripting vulnerability OBB-3939584

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:39 AM
2
openbugbounty
openbugbounty

endevlocal.be Cross Site Scripting vulnerability OBB-3939583

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:34 AM
4
openbugbounty
openbugbounty

bl-india.com Cross Site Scripting vulnerability OBB-3939580

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:24 AM
1
openbugbounty
openbugbounty

ets-chanu.com Cross Site Scripting vulnerability OBB-3939579

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:22 AM
3
openbugbounty
openbugbounty

portal.krsmultipro.com Cross Site Scripting vulnerability OBB-3939577

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:18 AM
2
openbugbounty
openbugbounty

parchovany.sk Cross Site Scripting vulnerability OBB-3939575

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:17 AM
1
openbugbounty
openbugbounty

lagrangedupoirier.com Cross Site Scripting vulnerability OBB-3939572

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:15 AM
3
openbugbounty
openbugbounty

magicduel.com Cross Site Scripting vulnerability OBB-3939573

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:15 AM
2
openbugbounty
openbugbounty

castelfaglia.shop Cross Site Scripting vulnerability OBB-3939567

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:12 AM
3
openbugbounty
openbugbounty

cardatachecks.co.uk Cross Site Scripting vulnerability OBB-3939566

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:12 AM
2
openbugbounty
openbugbounty

tnbnewyearseve.bpt.me Cross Site Scripting vulnerability OBB-3939562

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:10 AM
2
openbugbounty
openbugbounty

portalinvestigacion.idival.org Cross Site Scripting vulnerability OBB-3939561

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:09 AM
3
wolfi
wolfi

CVE-2024-23652 vulnerabilities

Vulnerabilities for packages: buildkitd, datadog-agent, zot, kubescape, kaniko, guac, scorecard, conftest, trivy, docker,...

10CVSS

9.7AI Score

0.001EPSS

2024-06-29 09:08 AM
270
wolfi
wolfi

CVE-2024-5274 vulnerabilities

Vulnerabilities for packages:...

8.8CVSS

7.1AI Score

0.003EPSS

2024-06-29 09:08 AM
38
wolfi
wolfi

GHSA-M848-8F5R-6J4G vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
3
wolfi
wolfi

CVE-2024-5830 vulnerabilities

Vulnerabilities for packages:...

8.8CVSS

7.2AI Score

0.001EPSS

2024-06-29 09:08 AM
26
wolfi
wolfi

GHSA-VQ7J-GX56-RXJH vulnerabilities

Vulnerabilities for packages: kind, metrics-server,...

7.5AI Score

2024-06-29 09:08 AM
161
wolfi
wolfi

CVE-2024-4323 vulnerabilities

Vulnerabilities for packages:...

9.8CVSS

7.2AI Score

0.0004EPSS

2024-06-29 09:08 AM
40
wolfi
wolfi

CVE-2024-32660 vulnerabilities

Vulnerabilities for packages:...

7.5CVSS

7.8AI Score

0.0004EPSS

2024-06-29 09:08 AM
35
wolfi
wolfi

GHSA-JJR8-97P7-VMMG vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
98
wolfi
wolfi

CVE-2023-45283 vulnerabilities

Vulnerabilities for packages:...

7.5CVSS

6.6AI Score

0.001EPSS

2024-06-29 09:08 AM
152
wolfi
wolfi

GHSA-J6VM-3WJ6-FWRH vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
5
wolfi
wolfi

GHSA-4C8G-9W4H-H6XM vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
6
wolfi
wolfi

CVE-2021-41092 vulnerabilities

Vulnerabilities for packages:...

7.5CVSS

7.5AI Score

0.001EPSS

2024-06-29 09:08 AM
12
wolfi
wolfi

CVE-2023-45289 vulnerabilities

Vulnerabilities for packages: bom, yq, prometheus-operator, actions-runner-controller, kube-bench, runc, hey, aws-flb-kinesis, aws-flb-cloudwatch, vertical-pod-autoscaler, aws-flb-firehose, kubernetes-dns-node-cache, cass-operator, docker-credential-acr-env, nri-f5, kubewatch, gitlab-logger,...

7.8AI Score

0.0004EPSS

2024-06-29 09:08 AM
194
wolfi
wolfi

CVE-2024-27304 vulnerabilities

Vulnerabilities for packages: temporal-server, src, kots, caddy, kube-bench, step-ca, spicedb, telegraf, argo-workflows, trillian, amass, ferretdb, keda, kine, vault,...

9.8CVSS

9.7AI Score

0.0004EPSS

2024-06-29 09:08 AM
132
wolfi
wolfi

GHSA-232P-VWFF-86MP vulnerabilities

Vulnerabilities for packages: bom, up, melange, ctop, apko, helm,...

7.5AI Score

2024-06-29 09:08 AM
329
wolfi
wolfi

GHSA-V5QP-MX94-J49V vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
131
wolfi
wolfi

CVE-2023-5680 vulnerabilities

Vulnerabilities for packages:...

5.3CVSS

7.2AI Score

0.0005EPSS

2024-06-29 09:08 AM
89
wolfi
wolfi

CVE-2024-21626 vulnerabilities

Vulnerabilities for packages: buildkitd, zot, runc, k3d, skopeo, ctop, nvidia-device-plugin, k3s, telegraf, syft, kaniko, docker, kubernetes, datadog-agent, grype, k9s, kubescape, cadvisor, wolfictl, kots, trivy, skaffold, zarf, newrelic-infrastructure-agent, nerdctl,...

8.6CVSS

9.2AI Score

0.051EPSS

2024-06-29 09:08 AM
299
wolfi
wolfi

CVE-2023-31130 vulnerabilities

Vulnerabilities for packages:...

6.4CVSS

7.7AI Score

0.0004EPSS

2024-06-29 09:08 AM
328
wolfi
wolfi

GHSA-CFGP-2977-2FMM vulnerabilities

Vulnerabilities for packages: wavefront-proxy,...

7.5AI Score

2024-06-29 09:08 AM
234
wolfi
wolfi

CVE-2024-29131 vulnerabilities

Vulnerabilities for packages: neo4j, cassandra-reaper,...

6.3AI Score

0.0004EPSS

2024-06-29 09:08 AM
68
wolfi
wolfi

GHSA-R53H-JV2G-VPX6 vulnerabilities

Vulnerabilities for packages: cilium-cli, up, zarf, chartmuseum, flux-helm-controller, zot, istio-operator, flux-source-controller, helm-operator, k9s, k8sgpt, kubescape, kots, helm-push, trivy, cert-manager,...

7.5AI Score

2024-06-29 09:08 AM
101
wolfi
wolfi

GHSA-JX24-3G7H-4QJ2 vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
47
wolfi
wolfi

CVE-2024-4368 vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

0.0004EPSS

2024-06-29 09:08 AM
47
wolfi
wolfi

CVE-2024-3914 vulnerabilities

Vulnerabilities for packages:...

8.9AI Score

0.0005EPSS

2024-06-29 09:08 AM
66
wolfi
wolfi

GHSA-5R57-JCC8-JHH3 vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
59
wolfi
wolfi

GHSA-FFF2-PWCG-X73M vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
59
wolfi
wolfi

CVE-2024-5836 vulnerabilities

Vulnerabilities for packages:...

8.8CVSS

7.2AI Score

0.001EPSS

2024-06-29 09:08 AM
23
wolfi
wolfi

CVE-2024-5837 vulnerabilities

Vulnerabilities for packages:...

8.8CVSS

7.2AI Score

0.001EPSS

2024-06-29 09:08 AM
23
wolfi
wolfi

GHSA-X989-52FC-4VR4 vulnerabilities

Vulnerabilities for packages: cilium,...

7.5AI Score

2024-06-29 09:08 AM
91
wolfi
wolfi

CVE-2022-23471 vulnerabilities

Vulnerabilities for packages:...

6.5CVSS

7.5AI Score

0.001EPSS

2024-06-29 09:08 AM
58
wolfi
wolfi

CVE-2022-36227 vulnerabilities

Vulnerabilities for packages:...

9.8CVSS

7.7AI Score

0.005EPSS

2024-06-29 09:08 AM
271
wolfi
wolfi

GHSA-MRWW-27VC-GGHV vulnerabilities

Vulnerabilities for packages: temporal-server, src, kots, caddy, kube-bench, step-ca, spicedb, telegraf, argo-workflows, trillian, amass, ferretdb, keda, kine, vault,...

7.5AI Score

2024-06-29 09:08 AM
113
Total number of security vulnerabilities3035505