Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-10-28 CVE-2024-44296 Unspecified vulnerability in Apple products
The issue was addressed with improved checks.
network
low complexity
apple
5.4
2024-10-28 CVE-2024-44297 Unspecified vulnerability in Apple products
The issue was addressed with improved bounds checks.
network
low complexity
apple
6.5
2024-10-28 CVE-2024-44301 Unspecified vulnerability in Apple Macos
The issue was addressed with improved checks.
local
low complexity
apple
5.5
2024-10-28 CVE-2024-44302 Unspecified vulnerability in Apple products
The issue was addressed with improved checks.
local
low complexity
apple
5.5
2024-10-28 CVE-2024-50495 Unrestricted Upload of File with Dangerous Type vulnerability in Widgilabs Plugin Propagator 0.1
Unrestricted Upload of File with Dangerous Type vulnerability in WidgiLabs Plugin Propagator allows Upload a Web Shell to a Web Server.This issue affects Plugin Propagator: from n/a through 0.1.
network
low complexity
widgilabs CWE-434
critical
9.8
2024-10-28 CVE-2024-50496 Unrestricted Upload of File with Dangerous Type vulnerability in Webandprint AR
Unrestricted Upload of File with Dangerous Type vulnerability in Web and Print Design AR For WordPress allows Upload a Web Shell to a Web Server.This issue affects AR For WordPress: from n/a through 6.2.
network
low complexity
webandprint CWE-434
critical
10.0
2024-10-28 CVE-2024-50453 Path Traversal vulnerability in Webangon the Pack Elementor Addons
Relative Path Traversal vulnerability in Webangon The Pack Elementor addons allows PHP Local File Inclusion.This issue affects The Pack Elementor addons: from n/a through 2.0.9.
network
low complexity
webangon CWE-22
8.8
2024-10-28 CVE-2024-50433 Cross-site Scripting vulnerability in Wowdevs SKY Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wowDevs Sky Addons for Elementor allows Stored XSS.This issue affects Sky Addons for Elementor: from n/a through 2.5.15.
network
low complexity
wowdevs CWE-79
5.4
2024-10-28 CVE-2024-50438 Cross-site Scripting vulnerability in Themoyles Church Admin
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Andy Moyle Church Admin allows Reflected XSS.This issue affects Church Admin: from n/a before 5.0.0.
network
low complexity
themoyles CWE-79
6.1
2024-10-28 CVE-2024-50439 Cross-site Scripting vulnerability in Brainstormforce Astra Widgets
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Brainstorm Force Astra Widgets allows Stored XSS.This issue affects Astra Widgets: from n/a through 1.2.14.
network
low complexity
brainstormforce CWE-79
5.4