CVE-2024-34060 - Arbitrary File Write and Remote Code Execution in IrisEVTXModule Before 1..
Published: June 2024
Severity: High
Components Affected: iris-evtx-module (used by iris-web web application)
Quick Summary
A critical security flaw existed in all versions of IrisEVTXModule
CVE-2024-4706 - How a Simple XSS Flaw in WordPress Plugin "Microsoft Office 365 / Azure AD | LOGIN" Exposes Sites
WordPress is no stranger to vulnerabilities, but CVE-2024-4706 is a fresh exploit that doesn’t need a security expert to understand — just a little knowledge
CVE-2024-36012 - Slab Use-After-Free in Linux Kernel Bluetooth `msft_do_close()`
CVE-2024-36012 is a newly resolved vulnerability in the Linux kernel’s Bluetooth stack, specifically relating to Microsoft's Bluetooth extensions (msft feature). The vulnerability
CVE-2024-4978 - Justice AV Solutions (JAVS) Viewer Setup 8.3.7.250-1 Ships Malicious Binary—How Attackers Deliver Remote PowerShell Exploits
A critical vulnerability, CVE-2024-4978, has been discovered in the *Justice AV Solutions (JAVS) Viewer* installer, specifically version 8.3.7.250-1. This vulnerability means that
CVE-2024-5160: Heap Buffer Overflow in Google Chrome's Dawn - Exploit Details, Potential Impact, and Patch Availability
A vulnerability has been discovered in Google Chrome that allows for a heap buffer overflow in the browser's rendering engine, known as Dawn.
Episode
00:00:00
00:00:00