Search Results (379048 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-3172 1 Google 1 Chrome 2025-03-18 8.8 High
Insufficient data validation in DevTools in Google Chrome prior to 121.0.6167.85 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
CVE-2024-23786 1 Sharp 4 Jh-rv11, Jh-rv11 Firmware, Jh-rvb1 and 1 more 2025-03-18 9.3 Critical
Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the management page of the affected product.
CVE-2024-21113 1 Oracle 1 Vm Virtualbox 2025-03-18 8.8 High
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).
CVE-2024-20941 1 Oracle 1 Installed Base 2025-03-18 6.1 Medium
Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: HTML UI). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Installed Base. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Installed Base, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Installed Base accessible data as well as unauthorized read access to a subset of Oracle Installed Base accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).
CVE-2023-37037 1 Linuxfoundation 1 Magma 2025-03-18 6.5 Medium
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `S1Setup Request` packet missing an expected `Supported TAs` field.
CVE-2024-27183 1 Dj-extensions 1 Dj-helpfularticles 2025-03-18 6.1 Medium
XSS vulnerability in DJ-HelpfulArticles component for Joomla.
CVE-2025-27768 2025-03-17 N/A
Not used
CVE-2025-27767 2025-03-17 N/A
Not used
CVE-2025-27766 2025-03-17 N/A
Not used
CVE-2025-27765 2025-03-17 N/A
Not used
CVE-2025-27764 2025-03-17 N/A
Not used
CVE-2025-27763 2025-03-17 N/A
Not used
CVE-2025-27762 2025-03-17 N/A
Not used
CVE-2025-27761 2025-03-17 N/A
Not used
CVE-2025-27760 2025-03-17 N/A
Not used
CVE-2024-56506 2025-03-17 N/A
Not used
CVE-2024-56505 2025-03-17 N/A
Not used
CVE-2024-56504 2025-03-17 N/A
Not used
CVE-2024-56503 2025-03-17 N/A
Not used
CVE-2024-56502 2025-03-17 N/A
Not used