CVE-2024-28939

CVSS v3 Score
8.8
High

Vulnerability Description

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability

CVSS:8.8(High)

Exposure of sensitive information in exceptions in ClichHouse's clickhouse-r2dbc, com.clickhouse:clickhouse-jdbc, and com.clickhouse:clickhouse-client versions less than 0.4.6 allows unauthorized user...

CVSS:8.6(High)

Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving errorhandler setup. NOTE: this issue exists because of an incomplete fix for CVE-20...

CVSS:8.6(High)

phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. Prior to 4.0.0, phpMyFAQ exposes the database (ie postgreSQL) server's credential when connection...

CVSS:9.1(Critical)

Generation of Error Message Containing Sensitive Information in GitHub repository nocodb/nocodb prior to 0.91.7+.

CVSS:9.1(Critical)

Valinor is a PHP library that helps to map any input into a strongly-typed value object structure. Prior to version 0.12.0, Valinor can use `Throwable#getMessage()` when it should not have permission ...

CVSS:9.4(Critical)

Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11.