Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-01-02 CVE-2024-37093 Cross-Site Request Forgery (CSRF) vulnerability in Stylemixthemes Masterstudy LMS
Cross-Site Request Forgery (CSRF) vulnerability in StylemixThemes MasterStudy LMS allows Cross Site Request Forgery.This issue affects MasterStudy LMS: from n/a through 3.2.1.
network
low complexity
stylemixthemes CWE-352
8.8
2025-01-02 CVE-2024-37469 Cross-Site Request Forgery (CSRF) vulnerability in Creativethemes Blocksy
Cross-Site Request Forgery (CSRF) vulnerability in CreativeThemes Blocksy allows Cross Site Request Forgery.This issue affects Blocksy: from n/a through 2.0.22.
network
low complexity
creativethemes CWE-352
8.8
2025-01-02 CVE-2024-56252 Cross-site Scripting vulnerability in Themelooks Enter Addons
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XSS.This issue affects Enter Addons: from n/a through 2.1.9.
network
low complexity
themelooks CWE-79
5.4
2025-01-02 CVE-2024-56254 Cross-site Scripting vulnerability in Moveaddons Move Addons for Elementor
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.6.
network
low complexity
moveaddons CWE-79
5.4
2025-01-02 CVE-2024-56266 Missing Authorization vulnerability in Sonaar MP3 Audio Player for Music, Radio & Podcast
Missing Authorization vulnerability in Sonaar Music MP3 Audio Player for Music, Radio & Podcast by Sonaar allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects MP3 Audio Player for Music, Radio & Podcast by Sonaar: from n/a through 5.8.
network
low complexity
sonaar CWE-862
8.8
2024-12-31 CVE-2024-13085 SQL Injection vulnerability in PHPgurukul Land Record System 1.0
A vulnerability, which was classified as critical, has been found in PHPGurukul Land Record System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-12-31 CVE-2024-13083 Cross-site Scripting vulnerability in PHPgurukul Land Record System 1.0
A vulnerability classified as problematic has been found in PHPGurukul Land Record System 1.0.
network
low complexity
phpgurukul CWE-79
5.4
2024-12-31 CVE-2024-13084 SQL Injection vulnerability in PHPgurukul Land Record System 1.0
A vulnerability classified as critical was found in PHPGurukul Land Record System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-12-31 CVE-2024-13081 Cross-site Scripting vulnerability in PHPgurukul Land Record System 1.0
A vulnerability was found in PHPGurukul Land Record System 1.0.
network
low complexity
phpgurukul CWE-79
5.4
2024-12-31 CVE-2024-13082 Cross-site Scripting vulnerability in PHPgurukul Land Record System 1.0
A vulnerability was found in PHPGurukul Land Record System 1.0.
network
low complexity
phpgurukul CWE-79
6.1