
CVE-2024-3834 – Debian Security Advisory 5668-1
https://notcve.org/view.php?id=CVE-2024-3834
17 Apr 2024 — (Severidad de seguridad de Chrome: alta) Security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure. • https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_16.html • CWE-416: Use After Free •

CVE-2024-3833 – Debian Security Advisory 5668-1
https://notcve.org/view.php?id=CVE-2024-3833
17 Apr 2024 — (Severidad de seguridad de Chrome: alta) Security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure. • https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_16.html • CWE-374: Passing Mutable Objects to an Untrusted Method •

CVE-2024-3832 – Debian Security Advisory 5668-1
https://notcve.org/view.php?id=CVE-2024-3832
17 Apr 2024 — (Severidad de seguridad de Chrome: alta) Security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure. • https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_16.html •

CVE-2024-22440 – HPE Compute Scale-up Server 3200 Server, Disclosure of Sensitive Information
https://notcve.org/view.php?id=CVE-2024-22440
17 Apr 2024 — This vulnerability could cause disclosure of sensitive information in log files. • https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbhf04634en_us&docLocale=en_US • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2024-32686 – WordPress Backup Migration plugin <= 1.4.3 - Sensitive Data Exposure via Log vulnerability
https://notcve.org/view.php?id=CVE-2024-32686
17 Apr 2024 — Insertion of Sensitive Information into Log File vulnerability in Inisev Backup Migration.This issue affects Backup Migration: from n/a through 1.4.3. ... The Backup Migration plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.3 via log files. This makes it possible for unauthenticated attackers to extract potentially sensitive information via log files. • https://patchstack.com/database/vulnerability/backup-backup/wordpress-backup-migration-plugin-1-4-3-sensitive-data-exposure-via-log-vulnerability? • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2024-21113 – Oracle VirtualBox E1000 Uninitialized Memory Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-21113
16 Apr 2024 — This vulnerability allows local attackers to disclose sensitive information on affected installations of Oracle VirtualBox. • https://www.oracle.com/security-alerts/cpuapr2024.html •

CVE-2024-21112 – Oracle VirtualBox AHCI Controller Uninitialized Memory Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-21112
16 Apr 2024 — This vulnerability allows remote attackers to disclose sensitive information on affected installations of Oracle VirtualBox. • https://www.oracle.com/security-alerts/cpuapr2024.html •

CVE-2024-21109 – Oracle VirtualBox Web Service Exposure of Resource to Wrong Sphere Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-21109
16 Apr 2024 — This vulnerability allows remote attackers to disclose sensitive information on affected installations of Oracle VirtualBox. ... An attacker can leverage this vulnerability to disclose sensitive session information, leading to further compromise. • https://www.oracle.com/security-alerts/cpuapr2024.html •

CVE-2024-31887 – IBM Security Verify Privilege information disclosure
https://notcve.org/view.php?id=CVE-2024-31887
16 Apr 2024 — IBM Security Verify Privilege 11.6.25 could allow an unauthenticated actor to obtain sensitive information from the SOAP API. • https://exchange.xforce.ibmcloud.com/vulnerabilities/287651 • CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •

CVE-2024-3571 – Path Traversal in langchain-ai/langchain
https://notcve.org/view.php?id=CVE-2024-3571
16 Apr 2024 — An attacker can leverage this vulnerability to read or write files anywhere on the filesystem, potentially leading to information disclosure or remote code execution. • https://github.com/langchain-ai/langchain/commit/aad3d8bd47d7f5598156ff2bdcc8f736f24a7412 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •