Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-43992 Cross-site Scripting vulnerability in Latepoint
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Latepoint LatePoint allows Stored XSS.This issue affects LatePoint: from n/a through 4.9.91.
network
low complexity
latepoint CWE-79
5.4
2024-09-18 CVE-2024-43993 Cross-site Scripting vulnerability in Cryoutcreations Liquido
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Liquido allows Stored XSS.This issue affects Liquido: from n/a through 1.0.1.2.
network
low complexity
cryoutcreations CWE-79
5.4
2024-09-18 CVE-2024-43994 Cross-site Scripting vulnerability in Cryoutcreations Kahuna
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Kahuna allows Stored XSS.This issue affects Kahuna: from n/a through 1.7.0.
network
low complexity
cryoutcreations CWE-79
5.4
2024-09-18 CVE-2024-43995 Cross-site Scripting vulnerability in Sktthemes Posterity
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sonalsinha21 Posterity allows Stored XSS.This issue affects Posterity: from n/a through 3.6.
network
low complexity
sktthemes CWE-79
5.4
2024-09-18 CVE-2024-43999 Cross-site Scripting vulnerability in Ninjaforms Ninja Forms
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saturday Drive Ninja Forms allows Stored XSS.This issue affects Ninja Forms: from n/a through 3.8.11.
network
low complexity
ninjaforms CWE-79
4.8
2024-09-18 CVE-2024-44001 Cross-site Scripting vulnerability in Royal-Elementor-Addons Royal Elementor Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons allows Stored XSS.This issue affects Royal Elementor Addons: from n/a through 1.3.982.
network
low complexity
royal-elementor-addons CWE-79
5.4
2024-09-18 CVE-2024-44002 Cross-site Scripting vulnerability in Pickplugins Team Showcase
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins Team Showcase allows Reflected XSS.This issue affects Team Showcase: from n/a through 1.22.25.
network
low complexity
pickplugins CWE-79
6.1
2024-09-18 CVE-2024-44003 Cross-site Scripting vulnerability in Spicethemes Spice Starter Sites
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in spicethemes Spice Starter Sites allows Reflected XSS.This issue affects Spice Starter Sites: from n/a through 1.2.5.
network
low complexity
spicethemes CWE-79
6.1
2024-09-18 CVE-2024-44005 Cross-site Scripting vulnerability in Greenshiftwp Greenshift - Animation and Page Builder Blocks
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wpsoul Greenshift – animation and page builder blocks allows Stored XSS.This issue affects Greenshift – animation and page builder blocks: from n/a through 9.3.7.
network
low complexity
greenshiftwp CWE-79
5.4
2024-09-17 CVE-2024-37985 Unspecified vulnerability in Microsoft Windows 11 22H2 and Windows 11 23H2
Windows Kernel Information Disclosure Vulnerability
local
high complexity
microsoft
5.6