| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-7260 | Keycloak-core: open redirect on account page | - | - | Medium | 6.1 | 2024-09-09 18:49:59 | Deep Dive |
| CVE-2024-8509 | Migration toolkit for virtualization: forklift-controller: empty bearer token may perform authentication | - | - | High | 7.5 | 2024-09-06 15:17:49 | Deep Dive |
| CVE-2024-8445 | 389-ds-base: server crash while modifying `userpassword` using malformed input (incomplete fix for cve-2024-2199) | - | - | Medium | 5.7 | 2024-09-05 14:24:01 | Deep Dive |
| CVE-2024-8418 | Containers/aardvark-dns: tcp query handling flaw in aardvark-dns leading to denial of service | - | - | High | 7.5 | 2024-09-04 14:24:03 | Deep Dive |
| CVE-2024-7923 | Puppet-pulpcore: an authentication bypass vulnerability exists in pulpcore | - | - | - | - | 2024-09-04 13:41:49 | Deep Dive |
| CVE-2024-7012 | Puppet-foreman: an authentication bypass vulnerability exists in foreman | - | - | Critical | 9.8 | 2024-09-04 13:41:18 | Deep Dive |
| CVE-2024-45620 | Libopensc: incorrect handling of the length of buffers or files in pkcs15init | - | - | Low | 3.9 | 2024-09-03 21:21:58 | Deep Dive |
| CVE-2024-45619 | Libopensc: incorrect handling length of buffers or files in libopensc | - | - | Medium | 4.3 | 2024-09-03 21:21:39 | Deep Dive |
| CVE-2024-45618 | Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init | - | - | Low | 3.9 | 2024-09-03 21:21:26 | Deep Dive |
| CVE-2024-45617 | Libopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc | - | - | Low | 3.9 | 2024-09-03 21:20:54 | Deep Dive |
| CVE-2024-45616 | Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc | - | - | Low | 3.9 | 2024-09-03 21:20:22 | Deep Dive |
| CVE-2024-45615 | Libopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init | - | - | Low | 3.9 | 2024-09-03 21:19:51 | Deep Dive |
| CVE-2024-4629 | Keycloak: potential bypass of brute force protection | - | - | Medium | 6.5 | 2024-09-03 19:42:01 | Deep Dive |
| CVE-2024-5148 | Gnome-remote-desktop: inadequate validation of session agents using d-bus methods may expose rdp tls certificate | - | - | High | 7.5 | 2024-09-02 11:03:18 | Deep Dive |
| CVE-2024-8285 | Kroxylicious: missing upstream kafka tls hostname verification | - | - | Medium | 5.9 | 2024-08-30 21:10:52 | Deep Dive |
| CVE-2024-8235 | Libvirt: crash of virtinterfaced via virconnectlistinterfaces() | - | - | Medium | 6.2 | 2024-08-30 16:16:57 | Deep Dive |
| CVE-2024-7885 | Undertow: improper state management in proxy protocol parsing causes information leakage | - | - | High | 7.5 | 2024-08-21 14:13:37 | Deep Dive |
| CVE-2024-8007 | Openstack-tripleo-common: rhosp director disables tls verification for registry mirrors | - | - | High | 8.1 | 2024-08-21 13:40:25 | Deep Dive |
| CVE-2024-6508 | Openshift-console: oauth2 insufficient state parameter entropy | - | - | High | 8.0 | 2024-08-21 05:45:28 | Deep Dive |
| CVE-2024-7700 | Foreman: command injection in "host init config" template via "install packages" field on foreman | - | - | Medium | 6.5 | 2024-08-12 16:48:54 | Deep Dive |