Lucene search

K

Microsoft .net Framework 3.5 On Windows Server, Version 1903 (server Core Installation) Security Vulnerabilities

nodejsblog
nodejsblog

Tuesday, July 2, 2024 Security Releases

Summary The Node.js project will release new versions of the 22.x, 20.x, 18.x releases lines on or shortly after, Tuesday, July 2, 2024 in order to address: 1 high severity issues. 2 medium severity issues. 3 low severity issues. Node.js fetch will be upgraded to undici v6.19.2 on Node.js 18.x...

7AI Score

2024-07-02 12:00 AM
64
openbugbounty
openbugbounty

layout-pcb-design.com Cross Site Scripting vulnerability OBB-3939594

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 10:49 AM
5
openbugbounty
openbugbounty

uhu.es Cross Site Scripting vulnerability OBB-3939590

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 10:29 AM
4
cve
cve

CVE-2024-5819

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

5.7AI Score

EPSS

2024-06-29 10:15 AM
2
nvd
nvd

CVE-2024-5819

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

EPSS

2024-06-29 10:15 AM
2
openbugbounty
openbugbounty

emmalemasson.fr Cross Site Scripting vulnerability OBB-3939589

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 10:15 AM
2
openbugbounty
openbugbounty

laganggps.ca Cross Site Scripting vulnerability OBB-3939588

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 10:11 AM
3
cvelist
cvelist

CVE-2024-5819 Gutenberg Blocks with AI by Kadence WP – Page Builder Features <= 3.2.45 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via HTML Data Attributes

The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to DOM-based Stored Cross-Site Scripting via HTML data attributes in all versions up to, and including, 3.2.45 due to insufficient input sanitization and output escaping on user supplied...

6.4CVSS

EPSS

2024-06-29 09:46 AM
2
openbugbounty
openbugbounty

cepim.fr Cross Site Scripting vulnerability OBB-3939584

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:39 AM
2
openbugbounty
openbugbounty

endevlocal.be Cross Site Scripting vulnerability OBB-3939583

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:34 AM
4
openbugbounty
openbugbounty

bl-india.com Cross Site Scripting vulnerability OBB-3939580

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:24 AM
1
openbugbounty
openbugbounty

ets-chanu.com Cross Site Scripting vulnerability OBB-3939579

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:22 AM
3
openbugbounty
openbugbounty

portal.krsmultipro.com Cross Site Scripting vulnerability OBB-3939577

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:18 AM
2
openbugbounty
openbugbounty

parchovany.sk Cross Site Scripting vulnerability OBB-3939575

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:17 AM
2
openbugbounty
openbugbounty

lagrangedupoirier.com Cross Site Scripting vulnerability OBB-3939572

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:15 AM
3
openbugbounty
openbugbounty

magicduel.com Cross Site Scripting vulnerability OBB-3939573

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:15 AM
2
openbugbounty
openbugbounty

cardatachecks.co.uk Cross Site Scripting vulnerability OBB-3939566

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:12 AM
2
openbugbounty
openbugbounty

castelfaglia.shop Cross Site Scripting vulnerability OBB-3939567

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:12 AM
3
openbugbounty
openbugbounty

tnbnewyearseve.bpt.me Cross Site Scripting vulnerability OBB-3939562

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:10 AM
2
openbugbounty
openbugbounty

portalinvestigacion.idival.org Cross Site Scripting vulnerability OBB-3939561

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified the website operator about its existence. Technical details of the vulnerability are currently...

6.2AI Score

2024-06-29 09:09 AM
3
wolfi
wolfi

GHSA-VQ7J-GX56-RXJH vulnerabilities

Vulnerabilities for packages: kind, metrics-server,...

7.5AI Score

2024-06-29 09:08 AM
161
wolfi
wolfi

CVE-2023-45289 vulnerabilities

Vulnerabilities for packages: bom, yq, prometheus-operator, actions-runner-controller, kube-bench, runc, hey, aws-flb-kinesis, aws-flb-cloudwatch, vertical-pod-autoscaler, aws-flb-firehose, kubernetes-dns-node-cache, cass-operator, docker-credential-acr-env, nri-f5, kubewatch, gitlab-logger,...

7.8AI Score

0.0004EPSS

2024-06-29 09:08 AM
194
wolfi
wolfi

CVE-2024-27304 vulnerabilities

Vulnerabilities for packages: temporal-server, src, kots, caddy, kube-bench, step-ca, spicedb, telegraf, argo-workflows, trillian, amass, ferretdb, keda, kine, vault,...

9.8CVSS

9.7AI Score

0.0004EPSS

2024-06-29 09:08 AM
132
wolfi
wolfi

GHSA-MRWW-27VC-GGHV vulnerabilities

Vulnerabilities for packages: temporal-server, src, kots, caddy, kube-bench, step-ca, spicedb, telegraf, argo-workflows, trillian, amass, ferretdb, keda, kine, vault,...

7.5AI Score

2024-06-29 09:08 AM
113
wolfi
wolfi

CVE-2024-21506 vulnerabilities

Vulnerabilities for packages: py3-pymongo, kubeflow-pipelines-visualization-server,...

6.7AI Score

0.0004EPSS

2024-06-29 09:08 AM
45
wolfi
wolfi

CVE-2024-34069 vulnerabilities

Vulnerabilities for packages: py3-werkzeug, superset, kubeflow-jupyter-web-app, py3.10-tensorflow-core,...

7.5CVSS

7.8AI Score

0.0004EPSS

2024-06-29 09:08 AM
51
wolfi
wolfi

GHSA-2G68-C3QC-8985 vulnerabilities

Vulnerabilities for packages: py3-werkzeug, superset, kubeflow-jupyter-web-app, py3.10-tensorflow-core,...

7.5AI Score

2024-06-29 09:08 AM
45
wolfi
wolfi

CVE-2024-28219 vulnerabilities

Vulnerabilities for packages: pytorch, py3-pillow,...

6.7CVSS

7AI Score

0.0004EPSS

2024-06-29 09:08 AM
43
wolfi
wolfi

GHSA-M87M-MMVP-V9QM vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
10
wolfi
wolfi

CVE-2024-20994 vulnerabilities

Vulnerabilities for packages:...

5.3CVSS

6.1AI Score

0.0004EPSS

2024-06-29 09:08 AM
8
wolfi
wolfi

CVE-2024-21047 vulnerabilities

Vulnerabilities for packages:...

4.9CVSS

6AI Score

0.0004EPSS

2024-06-29 09:08 AM
14
wolfi
wolfi

CVE-2024-21062 vulnerabilities

Vulnerabilities for packages:...

4.9CVSS

6AI Score

0.0004EPSS

2024-06-29 09:08 AM
12
wolfi
wolfi

GHSA-5XQ9-RCPJ-P52V vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
8
wolfi
wolfi

GHSA-88H4-JW57-85V9 vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
10
wolfi
wolfi

GHSA-R27R-5FWH-VXQW vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
10
wolfi
wolfi

GHSA-49WX-9H9F-8C9G vulnerabilities

Vulnerabilities for packages:...

7.5AI Score

2024-06-29 09:08 AM
44
wolfi
wolfi

GHSA-8R3F-844C-MC37 vulnerabilities

Vulnerabilities for packages: gitlab-pages, prometheus-operator, actions-runner-controller, kube-bench, runc, aws-flb-kinesis, bank-vaults, crossplane-provider-gcp, tekton-chains, vertical-pod-autoscaler, kubernetes-dns-node-cache, cass-operator, hugo, kubewatch, chartmuseum, kargo, nats,...

7.5AI Score

2024-06-29 09:08 AM
184
wolfi
wolfi

CVE-2024-21885 vulnerabilities

Vulnerabilities for packages:...

7.8CVSS

7.1AI Score

0.0004EPSS

2024-06-29 09:08 AM
45
wolfi
wolfi

CVE-2024-21886 vulnerabilities

Vulnerabilities for packages:...

7.8CVSS

7.1AI Score

0.0004EPSS

2024-06-29 09:08 AM
45
wolfi
wolfi

CVE-2024-31080 vulnerabilities

Vulnerabilities for packages:...

7.3CVSS

7.1AI Score

0.0005EPSS

2024-06-29 09:08 AM
38
cbl_mariner
cbl_mariner

CVE-2023-3817 affecting package rust for versions less than 1.68.2-5

CVE-2023-3817 affecting package rust for versions less than 1.68.2-5. A patched version of the package is...

5.3CVSS

6.3AI Score

0.002EPSS

2024-06-29 09:08 AM
18
cbl_mariner
cbl_mariner

CVE-2023-29406 affecting package golang for versions less than 1.20.7-1

CVE-2023-29406 affecting package golang for versions less than 1.20.7-1. A patched version of the package is...

6.5CVSS

7.3AI Score

0.001EPSS

2024-06-29 09:08 AM
9
cbl_mariner
cbl_mariner

CVE-2023-29403 affecting package golang for versions less than 1.20.7-1

CVE-2023-29403 affecting package golang for versions less than 1.20.7-1. A patched version of the package is...

7.8CVSS

7.3AI Score

0.001EPSS

2024-06-29 09:08 AM
13
cbl_mariner
cbl_mariner

CVE-2023-29402 affecting package golang for versions less than 1.20.7-1

CVE-2023-29402 affecting package golang for versions less than 1.20.7-1. A patched version of the package is...

9.8CVSS

9.7AI Score

0.005EPSS

2024-06-29 09:08 AM
22
cbl_mariner
cbl_mariner

CVE-2023-24538 affecting package golang for versions less than 1.19.8-1

CVE-2023-24538 affecting package golang for versions less than 1.19.8-1. A patched version of the package is...

9.8CVSS

10AI Score

0.003EPSS

2024-06-29 09:08 AM
18
cbl_mariner
cbl_mariner

CVE-2022-41725 affecting package msft-golang for versions less than 1.19.6-1

CVE-2022-41725 affecting package msft-golang for versions less than 1.19.6-1. A patched version of the package is...

7.5CVSS

9.1AI Score

0.001EPSS

2024-06-29 09:08 AM
8
wolfi
wolfi

GHSA-95PR-FXF5-86GV vulnerabilities

Vulnerabilities for packages: aactl, gitsign, spire-server, zot, melange, tekton-chains, policy-controller, falcoctl, falco, apko, flux-source-controller, kubescape, wolfictl, skaffold, vexctl, zarf, neuvector-sigstore-interface, slsa-verifier, tkn, ko,...

7.5AI Score

2024-06-29 09:08 AM
89
wolfi
wolfi

CVE-2024-6104 vulnerabilities

Vulnerabilities for packages: aactl, gitlab-kas, buildkitd, gitsign, spire-server, actions-runner-controller, gh, zot, k3d, skopeo, terraform, bank-vaults, loki, tekton-chains, rekor, flux-kustomize-controller, keda, influxd, policy-controller, ksops, external-dns, k3s, terragrunt, falcoctl,...

6CVSS

6AI Score

0.0004EPSS

2024-06-29 09:08 AM
13
wolfi
wolfi

CVE-2024-29018 vulnerabilities

Vulnerabilities for packages: aactl, buildkitd, spire-server, zot, melange, ctop, loki, buf, crossplane, up, kargo, telegraf, syft, conftest, kaniko, datadog-agent, grype, kubescape, cadvisor, wolfictl, trivy, docker-compose, dagger, prometheus, tkn, ko,...

5.9CVSS

6.1AI Score

0.0004EPSS

2024-06-29 09:08 AM
159
wolfi
wolfi

GHSA-MQ39-4GV4-MVPX vulnerabilities

Vulnerabilities for packages: aactl, buildkitd, spire-server, zot, melange, ctop, loki, buf, crossplane, up, kargo, telegraf, syft, conftest, kaniko, datadog-agent, grype, kubescape, cadvisor, wolfictl, trivy, docker-compose, dagger, prometheus, tkn, ko,...

7.5AI Score

2024-06-29 09:08 AM
145
Total number of security vulnerabilities2421379