Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2025-01-18 CVE-2024-45662 IBM Safer Payments 6.4.0.00 through 6.4.2.07, 6.5.0.00 through 6.5.0.05, and 6.6.0.00 through 6.6.0.03 could allow a remote attacker to cause a denial of service due to improper allocation of resources.
network
low complexity
CWE-770
7.5
2025-01-18 CVE-2024-47113 IBM ICP - Voice Gateway 1.0.2, 1.0.2.4, 1.0.3, 1.0.4, 1.0.5, 1.0.6.
network
low complexity
CWE-91
8.1
2025-01-18 CVE-2024-13184 The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to time-based SQL Injection via the Login Attempts module in all versions up to, and including, 3.0.12 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
low complexity
CWE-89
7.5
2025-01-18 CVE-2025-0308 SQL Injection vulnerability in Ultimatemember Ultimate Member
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the search parameter in all versions up to, and including, 2.9.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
low complexity
ultimatemember CWE-89
7.5
2025-01-18 CVE-2025-23209 Code Injection vulnerability in Craftcms Craft CMS
Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond.
network
high complexity
craftcms CWE-94
8.1
2025-01-18 CVE-2018-9389 Out-of-bounds Write vulnerability in Google Android
In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2025-01-17 CVE-2025-0530 Cross-site Scripting vulnerability in Anisha JOB Recruitment 1.0
A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic.
network
low complexity
anisha CWE-79
8.2
2025-01-17 CVE-2025-0531 SQL Injection vulnerability in Fabianros Chat System 1.0
A vulnerability was found in code-projects Chat System 1.0 and classified as critical.
network
low complexity
fabianros CWE-89
7.5
2025-01-17 CVE-2025-0528 A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.10.20.
network
low complexity
CWE-74
7.2
2025-01-17 CVE-2025-0529 Out-of-bounds Write vulnerability in Fabianros Train Ticket Reservation System 1.0
A vulnerability, which was classified as critical, was found in code-projects Train Ticket Reservation System 1.0.
local
low complexity
fabianros CWE-787
7.8