Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-05 CVE-2024-51530 Unspecified vulnerability in Huawei Emui and Harmonyos
LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-9657 Cross-site Scripting vulnerability in Bdthemes Element Pack
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘tooltip' parameter in all versions up to, and including, 5.10.2 due to insufficient input sanitization and output escaping.
network
low complexity
bdthemes CWE-79
5.4
2024-11-05 CVE-2024-9867 Cross-site Scripting vulnerability in Bdthemes Element Pack
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Open Map Widget' marker_content parameter in all versions up to, and including, 5.10.2 due to insufficient input sanitization and output escaping.
network
low complexity
bdthemes CWE-79
5.4
2024-11-05 CVE-2024-10319 Unspecified vulnerability in Wpxpro Xpro Addons for Elementor
The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6 via the render function in widgets/content-toggle/layout/frontend.php.
network
low complexity
wpxpro
4.3
2024-11-05 CVE-2024-9178 Cross-site Scripting vulnerability in Xplodedthemes XT Floating Cart for Woocommerce
The XT Floating Cart for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.8.2 due to insufficient input sanitization and output escaping.
network
low complexity
xplodedthemes CWE-79
5.4
2024-11-05 CVE-2024-51517 Improper Validation of Array Index vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of improper memory access in the phone service module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei CWE-129
5.5
2024-11-05 CVE-2024-51518 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of this vulnerability may affect availability.
network
low complexity
huawei
7.5
2024-11-05 CVE-2024-51519 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of input parameters not being verified in the HDC module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51520 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of input parameters not being verified in the HDC module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51521 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Input parameter verification vulnerability in the background service module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei
5.5