Search Results (9634 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-36522 1 Apache 1 Wicket 2025-07-10 9.8 Critical
The default configuration of XSLTResourceStream.java is vulnerable to remote code execution via XSLT injection when processing input from an untrusted source without validation. Users are recommended to upgrade to versions 10.1.0, 9.18.0 or 8.16.0, which fix this issue.
CVE-2024-35236 2 Advplyr, Audiobookshelf 2 Audiobookshelf, Audiobookshelf 2025-07-10 4.8 Medium
Audiobookshelf is a self-hosted audiobook and podcast server. Prior to version 2.10.0, opening an ebook with malicious scripts inside leads to code execution inside the browsing context. Attacking a user with high privileges (upload, creation of libraries) can lead to remote code execution (RCE) in the worst case. This was tested on version 2.9.0 on Windows, but an arbitrary file write is powerful enough as is and should easily lead to RCE on Linux, too. Version 2.10.0 contains a patch for the vulnerability.
CVE-2023-29344 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-07-10 7.8 High
Microsoft Office Remote Code Execution Vulnerability
CVE-2023-29325 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2025-07-10 8.1 High
Windows OLE Remote Code Execution Vulnerability
CVE-2023-29341 1 Microsoft 1 Av1 Video Extension 2025-07-10 7.8 High
AV1 Video Extension Remote Code Execution Vulnerability
CVE-2023-29340 1 Microsoft 1 Av1 Video Extension 2025-07-10 7.8 High
AV1 Video Extension Remote Code Execution Vulnerability
CVE-2023-24953 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-07-10 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2023-24947 1 Microsoft 7 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 4 more 2025-07-10 8.8 High
Windows Bluetooth Driver Remote Code Execution Vulnerability
CVE-2023-24905 1 Microsoft 5 Windows 10 20h2, Windows 10 21h2, Windows 10 22h2 and 2 more 2025-07-10 7.8 High
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2023-24943 1 Microsoft 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more 2025-07-10 9.8 Critical
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2023-24903 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2025-07-10 8.1 High
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2023-24941 1 Microsoft 4 Windows Server 2012, Windows Server 2016, Windows Server 2019 and 1 more 2025-07-10 9.8 Critical
Windows Network File System Remote Code Execution Vulnerability
CVE-2023-28283 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2025-07-10 8.1 High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
CVE-2024-38210 1 Microsoft 1 Edge Chromium 2025-07-10 7.8 High
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-38219 1 Microsoft 1 Edge Chromium 2025-07-10 6.5 Medium
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-38120 1 Microsoft 6 Windows Server 2008, Windows Server 2012, Windows Server 2016 and 3 more 2025-07-10 8.8 High
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-38195 1 Microsoft 1 Azure Cyclecloud 2025-07-10 7.8 High
Azure CycleCloud Remote Code Execution Vulnerability
CVE-2024-38173 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-07-10 6.7 Medium
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-38171 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-07-10 7.8 High
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2024-38170 1 Microsoft 2 365 Apps, Office Long Term Servicing Channel 2025-07-10 7.1 High
Microsoft Excel Remote Code Execution Vulnerability