Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-29 CVE-2024-43917 SQL Injection vulnerability in Templateinvaders TI Woocommerce Wishlist
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TemplateInvaders TI WooCommerce Wishlist allows SQL Injection.This issue affects TI WooCommerce Wishlist: from n/a through 2.8.2.
network
low complexity
templateinvaders CWE-89
critical
9.8
2024-08-29 CVE-2024-43918 SQL Injection vulnerability in Woobewoo Product Table
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW WBW Product Table PRO allows SQL Injection.This issue affects WBW Product Table PRO: from n/a through 1.9.4.
network
low complexity
woobewoo CWE-89
critical
9.8
2024-08-29 CVE-2024-43922 Code Injection vulnerability in Nitropack
Improper Control of Generation of Code ('Code Injection') vulnerability in NitroPack Inc.
network
low complexity
nitropack CWE-94
critical
9.8
2024-08-29 CVE-2024-43931 Deserialization of Untrusted Data vulnerability in Eyecix Jobsearch WP JOB Board 1.5.1/1.7.4
Deserialization of Untrusted Data vulnerability in eyecix JobSearch allows Object Injection.This issue affects JobSearch: from n/a through 2.5.3.
network
low complexity
eyecix CWE-502
critical
9.8
2024-08-29 CVE-2024-43941 SQL Injection vulnerability in Propovoice
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Propovoice Propovoice Pro allows SQL Injection.This issue affects Propovoice Pro: from n/a through 1.7.0.3.
network
low complexity
propovoice CWE-89
critical
9.8
2024-08-29 CVE-2024-5057 SQL Injection vulnerability in Sandhillsdev Easy Digital Downloads
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Easy Digital Downloads allows SQL Injection.This issue affects Easy Digital Downloads: from n/a through 3.2.12.
network
low complexity
sandhillsdev CWE-89
critical
9.8
2024-08-29 CVE-2024-8302 SQL Injection vulnerability in Geeeeeeeek Dingfanzu
A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c.
network
low complexity
geeeeeeeek CWE-89
critical
9.8
2024-08-29 CVE-2024-8296 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8301 SQL Injection vulnerability in Gitapp Dingfanzu
A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c.
network
low complexity
gitapp CWE-89
critical
9.8
2024-08-29 CVE-2024-8295 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8