Vulnerabilities
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-10-29 | CVE-2024-48921 | Incorrect Authorization vulnerability in Nirmata Kyverno Kyverno is a policy engine designed for Kubernetes. | 2.7 |
2024-10-29 | CVE-2024-49768 | Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Agendaless Waitress Waitress is a Web Server Gateway Interface server for Python 2 and 3. | 4.8 |
2024-10-29 | CVE-2024-49769 | Unspecified vulnerability in Agendaless Waitress Waitress is a Web Server Gateway Interface server for Python 2 and 3. | 7.5 |
2024-10-29 | CVE-2024-50334 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Erudika Scoold Scoold is a Q&A and a knowledge sharing platform for teams. | 5.3 |
2024-10-29 | CVE-2024-10226 | Cross-site Scripting vulnerability in Tychesoftwares Arconix Shortcodes The Arconix Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'box' shortcode in all versions up to, and including, 2.1.13 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-10-29 | CVE-2024-47640 | Cross-site Scripting vulnerability in Wedevs WP ERP Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in weDevs WP ERP allows Reflected XSS.This issue affects WP ERP: from n/a through 1.13.2. | 6.1 |
2024-10-29 | CVE-2024-49632 | Cross-site Scripting vulnerability in Coralwebdesign CWD 3D Image Gallery Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Coral Web Design CWD 3D Image Gallery allows Reflected XSS.This issue affects CWD 3D Image Gallery: from n/a through 1.0. | 6.1 |
2024-10-29 | CVE-2024-49634 | Cross-site Scripting vulnerability in Rimonhabib BP Member Type Manager Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Rimon Habib BP Member Type Manager allows Reflected XSS.This issue affects BP Member Type Manager: from n/a through 1.01. | 6.1 |
2024-10-29 | CVE-2024-51075 | Cross-site Scripting vulnerability in PHPgurukul Online DJ Booking Management System 1.0 A Reflected Cross Site Scripting (XSS) vulnerability was found in /odms/admin/user-search.php in PHPGurukul Online DJ Booking Management System v1.0, which allows remote attackers to execute arbitrary code via the searchdata parameter. | 6.1 |
2024-10-29 | CVE-2024-51076 | Cross-site Scripting vulnerability in PHPgurukul Online DJ Booking Management System 1.0 A Reflected Cross Site Scripting (XSS) vulnerability was found in /odms/admin/booking-search.php in PHPGurukul Online DJ Booking Management System 1.0, which allows remote attackers to execute arbitrary code via the "searchdata" parameter. | 6.1 |