CVE-2024-29131
- EPSS 0.2%
- Published 21.03.2024 09:15:07
- Last modified 01.05.2025 19:13:04
Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.
CVE-2024-29133
- EPSS 0.51%
- Published 21.03.2024 09:15:07
- Last modified 01.05.2025 19:12:24
Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.
CVE-2024-2625
- EPSS 0.67%
- Published 20.03.2024 17:15:07
- Last modified 21.11.2024 09:10:09
Object lifecycle issue in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-2626
- EPSS 0.09%
- Published 20.03.2024 17:15:07
- Last modified 26.03.2025 15:15:49
Out of bounds read in Swiftshader in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-2627
- EPSS 0.5%
- Published 20.03.2024 17:15:07
- Last modified 21.11.2024 09:10:09
Use after free in Canvas in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-2628
- EPSS 0.17%
- Published 20.03.2024 17:15:07
- Last modified 21.11.2024 09:10:10
Inappropriate implementation in Downloads in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted URL. (Chromium security severity: Medium)
CVE-2024-2629
- EPSS 0.19%
- Published 20.03.2024 17:15:07
- Last modified 13.03.2025 19:15:44
Incorrect security UI in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-2630
- EPSS 0.12%
- Published 20.03.2024 17:15:07
- Last modified 17.03.2025 17:15:26
Inappropriate implementation in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-2631
- EPSS 0.17%
- Published 20.03.2024 17:15:07
- Last modified 29.03.2025 00:15:21
Inappropriate implementation in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVE-2023-50967
- EPSS 0.25%
- Published 20.03.2024 16:15:07
- Last modified 17.06.2025 13:12:08
latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.