CVE-2024-32113 is a path traversal vulnerability affecting Apache OFBiz. CISA added it to the Known Exploited Vulnerabilities (KEV) catalog on 2024-08-07, which means defenders should treat it as a high-priority issue and act by the 2024-08-28 due date.
CVE-2015-3188 is a critical remote code execution issue in the Apache Storm UI daemon. The official CVE/NVD record associates the problem with Apache Storm 0.10.0 beta-era deployments and gives it a CVSS 3.0 score of 9.8, indicating that exposed instances should be treated as urgent remediation items.