Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-10-17 CVE-2024-43587 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
network
high complexity
microsoft
8.1
2024-10-17 CVE-2024-43595 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
network
low complexity
microsoft
8.8
2024-10-17 CVE-2024-43596 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
network
low complexity
microsoft
8.8
2024-10-17 CVE-2024-49288 Cross-site Scripting vulnerability in Villatheme Woocommerce Email Template Customizer
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in VillaTheme Email Template Customizer for WooCommerce allows Stored XSS.This issue affects Email Template Customizer for WooCommerce: from n/a through 1.2.5.
network
low complexity
villatheme CWE-79
4.8
2024-10-17 CVE-2024-10099 Cross-site Scripting vulnerability in Comfy Comfyui 0.2.2
A stored cross-site scripting (XSS) vulnerability exists in comfyanonymous/comfyui version 0.2.2 and possibly earlier.
network
low complexity
comfy CWE-79
6.1
2024-10-17 CVE-2024-49217 Unspecified vulnerability in Madirisalmanaashish Adding Drop Down Roles in Registration
Incorrect Privilege Assignment vulnerability in Madiri Salman Aashish Adding drop down roles in registration allows Privilege Escalation.This issue affects Adding drop down roles in registration: from n/a through 1.1.
network
low complexity
madirisalmanaashish
critical
9.8
2024-10-17 CVE-2024-49219 Unspecified vulnerability in Themexpo Rs-Members
Incorrect Privilege Assignment vulnerability in themexpo RS-Members allows Privilege Escalation.This issue affects RS-Members: from n/a through 1.0.3.
network
low complexity
themexpo
8.8
2024-10-17 CVE-2024-49220 Cross-Site Request Forgery (CSRF) vulnerability in Cookie-Scanner Cookie Scanner
Cross-Site Request Forgery (CSRF) vulnerability in Cookie Scanner – Nikel Schubert Cookie Scanner allows Stored XSS.This issue affects Cookie Scanner: from n/a through 1.1.
network
low complexity
cookie-scanner CWE-352
6.1
2024-10-17 CVE-2024-49221 Cross-Site Request Forgery (CSRF) vulnerability in Julianweinert Cslider
Cross-Site Request Forgery (CSRF) vulnerability in Julian Weinert // cs&m cSlider allows Stored XSS.This issue affects cSlider: from n/a through 2.4.2.
network
low complexity
julianweinert CWE-352
6.1
2024-10-17 CVE-2024-49223 Cross-Site Request Forgery (CSRF) vulnerability in Shibulijack CJ Change Howdy
Cross-Site Request Forgery (CSRF) vulnerability in Shibu Lijack a.K.A CyberJack CJ Change Howdy allows Stored XSS.This issue affects CJ Change Howdy: from n/a through 3.3.1.
network
low complexity
shibulijack CWE-352
6.1