| CVE-2023-5692 | WordPress Core <= 6.4.3 - Sensitive Information Exposure via redirect_guess_404_permalink | WordPress Foundation | WordPress | Medium | 5.3 | 2024-04-05 12:52:33 | Deep Dive |
| CVE-2024-27316 | Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames | Apache Software Foundation | Apache HTTP Server | 高危 | - | 2024-04-04 19:21:42 | Deep Dive |
| CVE-2024-24795 | Apache HTTP Server: HTTP Response Splitting in multiple modules | Apache Software Foundation | Apache HTTP Server | 中危 | - | 2024-04-04 19:20:49 | Deep Dive |
| CVE-2023-38709 | Apache HTTP Server: HTTP response splitting | Apache Software Foundation | Apache HTTP Server | 中危 | - | 2024-04-04 19:19:35 | Deep Dive |
| CVE-2024-29008 | Apache CloudStack: The extraconfig feature can be abused to load hypervisor resources on a VM instance | Apache Software Foundation | Apache CloudStack | 中危 | - | 2024-04-04 07:51:05 | Deep Dive |
| CVE-2024-29007 | Apache CloudStack: When downloading templates or ISOs, the management server and SSVM follow HTTP redirects with potentially dangerous consequences | Apache Software Foundation | Apache CloudStack | 中危 | - | 2024-04-04 07:49:58 | Deep Dive |
| CVE-2024-29006 | Apache CloudStack: x-forwarded-for HTTP header parsed by default | Apache Software Foundation | Apache CloudStack | 中危 | - | 2024-04-04 07:48:54 | Deep Dive |
| CVE-2024-29834 | Apache Pulsar: Improper Authorization For Namespace and Topic Management Endpoints | Apache Software Foundation | Apache Pulsar | Medium | 6.4 | 2024-04-02 19:24:46 | Deep Dive |
| CVE-2024-23537 | Apache Fineract: Under certain circumstances, this vulnerability allowed users, without specific permissions, to escalate their privileges to any role. | Apache Software Foundation | Apache Fineract | High | 8.4 | 2024-03-29 14:38:06 | Deep Dive |
| CVE-2024-23538 | Apache Fineract: Under certain system configurations, the sqlSearch parameter was vulnerable to SQL injection attacks, potentially allowing attackers to manipulate database queries. | Apache Software Foundation | Apache Fineract | Critical | 9.9 | 2024-03-29 14:37:40 | Deep Dive |
| CVE-2024-23539 | Apache Fineract: Under certain system configurations, the sqlSearch parameter for specific endpoints was vulnerable to SQL injection attacks, potentially allowing attackers to manipulate database queries. | Apache Software Foundation | Apache Fineract | High | 8.3 | 2024-03-29 14:36:58 | Deep Dive |
| CVE-2024-2955 | Mismatched Memory Management Routines in Wireshark | Wireshark Foundation | Wireshark | High | 7.8 | 2024-03-26 20:02:08 | Deep Dive |
| CVE-2024-29735 | Apache Airflow: Potentially harmful permission changing by log task handler | Apache Software Foundation | Apache Airflow | - | - | 2024-03-26 16:52:41 | Deep Dive |
| CVE-2024-2212 | Integer wraparounds, under-allocations, and heap buffer overflows in Eclipse ThreadX xQueueCreate() and xQueueCreateSet() | Eclipse Foundation | ThreadX | High | 7.3 | 2024-03-26 15:58:27 | Deep Dive |
| CVE-2024-2214 | Missing array size check in _Mtxinit() in the Xtensa port | Eclipse Foundation | ThreadX | High | 7.0 | 2024-03-26 15:48:36 | Deep Dive |
| CVE-2024-2452 | Integer wraparound, under-allocation, and heap buffer overflow in Eclipse ThreadX NetX Duo __portable_aligned_alloc() | Eclipse Foundation | ThreadX | High | 7.0 | 2024-03-26 15:43:36 | Deep Dive |
| CVE-2023-6175 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark | Wireshark Foundation | Wireshark | High | 7.8 | 2024-03-26 07:30:50 | Deep Dive |
| CVE-2024-27438 | Apache Doris: Downloading arbitrary remote jar files resulting in remote command execution | Apache Software Foundation | Apache Doris | - | - | 2024-03-21 09:39:22 | Deep Dive |
| CVE-2024-26307 | Apache Doris: Possible race condition | Apache Software Foundation | Apache Doris | - | - | 2024-03-21 09:38:19 | Deep Dive |
| CVE-2024-29131 | Apache Commons Configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator() | Apache Software Foundation | Apache Commons Configuration | - | - | 2024-03-21 09:07:14 | Deep Dive |