French authorities detained Durov to question him as part of a probe into a wide range of alleged violations—including money laundering and CSAM—but it remains unclear if he will face charges.
Invesalius versions 3.1.99991 through 3.1.99998 suffer from a remote code execution vulnerability. The exploitation steps of this vulnerability involve the use of a specifically crafted DICOM file which, once imported inside the victim's client application, allows an attacker to gain remote code execution.
Calibre Web version 0.6.21 suffers from a persistent cross site scripting vulnerability.
Helpdeskz version 2.0.2 suffers from a persistent cross site scripting vulnerability.
SPIP version 4.2.11 suffers from a code execution vulnerability.
Loan Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
SonicWall has released security updates to address a critical flaw impacting its firewalls that, if successfully exploited, could grant malicious actors unauthorized access to the devices. The vulnerability, tracked as CVE-2024-40766 (CVSS score: 9.3), has been described as an improper access control bug. "An improper access control vulnerability has been identified in the SonicWall SonicOS
Jobs Finder System version 1.0 suffers from a cross site scripting vulnerability.
HughesNet HT2000W Satellite Modem remote password reset exploit that leverages a path traversal vulnerability.
Human Resource Management System version 2024 version 1.0 suffers from a cross site scripting vulnerability.