Aggregator
攻防演练值守资源不足下的“灵活用工”最佳实践
1 year 10 months ago
英国研究发现接种新冠疫苗有助于降低心脏病和中风风险
1 year 10 months ago
英国的一项研究发现,接种 COVID-19 疫苗后心脏病发作和中风的发病率低于接种前或未接种前。这项研究分析了 2020 年 12 月 8 日至 2022 年 1 月 23 日期间英格兰 4600 万成年人的未识别健康记录,对比了疫苗接种前后的心血管疾病发病率。研究表明,在首次接种 COVID-19 疫苗后的 13 至 24 周内,动脉血栓形成(如心脏病发作和中风)的发病率降低了 10%。在第二次接种后,阿斯利康疫苗接种者发病率降低了 27%,辉瑞/Bio NTech 疫苗的发病率降低了 20%。此前的研究发现,接种某些 COVID-19 疫苗后,罕见心血管并发症的发生率更高。这项研究支持了这些发现,但重要的是,它没有发现与 COVID-19 疫苗接种相关的新的不良心血管疾病,并进一步保证了疫苗接种的益处大于风险。
英国研究发现接种新冠疫苗有助于降低心脏病和中风风险
1 year 10 months ago
英国的一项研究发现,接种 COVID-19 疫苗后心脏病发作和中风的发病率低于接种前或未接种前。这项研究分析了 2020 年 12 月 8 日至 2022 年 1 月 23 日期间英格兰
CVE-2024-42005 | Django up to 4.2.14/5.0.7 QuerySet.values/values_list sql injection
1 year 10 months ago
A vulnerability, which was classified as critical, was found in Django up to 4.2.14/5.0.7. This affects the function QuerySet.values/values_list. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-42005. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41991 | Django up to 4.2.14/5.0.7 Template Filter urlize/urlizetrunc denial of service
1 year 10 months ago
A vulnerability, which was classified as problematic, has been found in Django up to 4.2.14/5.0.7. Affected by this issue is the function urlize/urlizetrunc of the component Template Filter. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-41991. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41990 | gofiber Django up to 4.2.14/5.0.7 Template Filter urlize/urlizetrunc denial of service
1 year 10 months ago
A vulnerability classified as problematic was found in gofiber Django up to 4.2.14/5.0.7. Affected by this vulnerability is the function urlize/urlizetrunc of the component Template Filter. The manipulation leads to denial of service.
This vulnerability is known as CVE-2024-41990. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41989 | Django up to 4.2.14/5.0.7 Template Filter django.utils.numberformat.floatformat memory allocation
1 year 10 months ago
A vulnerability classified as problematic has been found in Django up to 4.2.14/5.0.7. Affected is the function django.utils.numberformat.floatformat of the component Template Filter. The manipulation leads to uncontrolled memory allocation.
This vulnerability is traded as CVE-2024-41989. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-7353 | Accept Stripe Payments Plugin up to 2.0.86 on WordPress Shortcode accept_stripe_payment_ng cross site scripting
1 year 10 months ago
A vulnerability was found in Accept Stripe Payments Plugin up to 2.0.86 on WordPress. It has been rated as problematic. This issue affects the function accept_stripe_payment_ng of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-7353. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-7355 | Organization Chart Plugin up to 1.5.0 on WordPress title_input/node_description cross site scripting
1 year 10 months ago
A vulnerability was found in Organization Chart Plugin up to 1.5.0 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation of the argument title_input/node_description leads to cross site scripting.
This vulnerability was named CVE-2024-7355. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-6522 | Modern Events Calendar Plugin up to 7.12.1 on WordPress server-side request forgery
1 year 10 months ago
A vulnerability was found in Modern Events Calendar Plugin up to 7.12.1 on WordPress. It has been classified as critical. This affects an unknown part. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2024-6522. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-34612 | Samsung Devices libcodec2secmp4vdec.so heap-based overflow
1 year 10 months ago
A vulnerability was found in Samsung Devices and classified as critical. Affected by this issue is some unknown functionality in the library libcodec2secmp4vdec.so. The manipulation leads to heap-based buffer overflow.
This vulnerability is handled as CVE-2024-34612. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34611 | Samsung Devices KnoxService access control
1 year 10 months ago
A vulnerability has been found in Samsung Devices and classified as problematic. Affected by this vulnerability is an unknown functionality of the component KnoxService. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2024-34611. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34610 | Samsung Devices ExtControlDeviceService access control
1 year 10 months ago
A vulnerability, which was classified as critical, was found in Samsung Devices. Affected is an unknown function of the component ExtControlDeviceService. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2024-34610. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34609 | Samsung Devices VoiceNoteService access control
1 year 10 months ago
A vulnerability, which was classified as critical, has been found in Samsung Devices. This issue affects some unknown processing of the component VoiceNoteService. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2024-34609. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34608 | Samsung Devices PaymentManagerService access control
1 year 10 months ago
A vulnerability classified as critical was found in Samsung Devices. This vulnerability affects unknown code of the component PaymentManagerService. The manipulation leads to improper access controls.
This vulnerability was named CVE-2024-34608. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34607 | Samsung Devices SamsungNotesService access control
1 year 10 months ago
A vulnerability classified as critical has been found in Samsung Devices. This affects an unknown part of the component SamsungNotesService. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2024-34607. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34606 | Samsung Devices SmartThingsService access control
1 year 10 months ago
A vulnerability was found in Samsung Devices. It has been rated as critical. Affected by this issue is some unknown functionality of the component SmartThingsService. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2024-34606. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34604 | Samsung Devices LedCoverService access control
1 year 10 months ago
A vulnerability was found in Samsung Devices. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component LedCoverService. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2024-34604. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-34605 | Samsung Devices SamsungHealthService access control
1 year 10 months ago
A vulnerability was found in Samsung Devices. It has been classified as critical. Affected is an unknown function of the component SamsungHealthService. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2024-34605. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com