Vulnerabilities
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-12-23 | CVE-2024-12902 | ANCHOR from Global Wisdom Software is an integrated product running on a Windows virtual machine. local low complexity | 8.4 |
2024-12-23 | CVE-2024-11230 | Cross-site Scripting vulnerability in Brainstormforce Elementor Header & Footer Builder The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘size’ parameter in all versions up to, and including, 1.6.46 due to insufficient input sanitization and output escaping. | 5.4 |
2024-12-23 | CVE-2024-12898 | SQL Injection vulnerability in 1000Projects Attendance Tracking Management System 1.0 A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. | 9.8 |
2024-12-23 | CVE-2024-12899 | SQL Injection vulnerability in 1000Projects Attendance Tracking Management System 1.0 A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. | 9.8 |
2024-12-22 | CVE-2024-12895 | SQL Injection vulnerability in Treasurehuntgame Treasurehunt A vulnerability has been found in TreasureHuntGame TreasureHunt up to 963e0e0 and classified as critical. | 9.8 |
2024-12-22 | CVE-2024-12894 | SQL Injection vulnerability in Treasurehuntgame Treasurehunt A vulnerability, which was classified as critical, was found in TreasureHuntGame TreasureHunt up to 963e0e0. | 9.8 |
2024-12-22 | CVE-2024-11852 | Missing Authorization vulnerability in Bdthemes Element Pack The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and Remote Arrows) plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_layouts() function in all versions up to, and including, 5.10.12. | 4.3 |
2024-12-21 | CVE-2024-12884 | SQL Injection vulnerability in Codezips E-Commerce Site 1.0 A vulnerability was found in Codezips E-Commerce Website 1.0. | 9.8 |
2024-12-21 | CVE-2024-51463 | IBM i 7.3, 7.4, and 7.5 is vulnerable to server-side request forgery (SSRF). | 5.4 |
2024-12-21 | CVE-2024-12883 | Cross-site Scripting vulnerability in Anisha JOB Recruitment 1.0 A vulnerability was found in code-projects Job Recruitment 1.0. | 6.1 |