Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-21 CVE-2024-10788 The Activity Log – Monitor & Record User Changes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the event parameters in all versions up to, and including, 2.11.1 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
7.2
2024-11-21 CVE-2024-10898 Unspecified vulnerability in Krishaweb Contact Form 7 Email ADD on
The Contact Form 7 Email Add on plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.9 via the cf7_email_add_on_add_admin_template() function.
network
low complexity
krishaweb
8.8
2024-11-20 CVE-2024-48982 Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0
An issue was discovered in MBed OS 6.16.0.
network
low complexity
arm CWE-120
7.5
2024-11-20 CVE-2024-48986 Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0
An issue was discovered in MBed OS 6.16.0.
network
low complexity
arm CWE-120
7.5
2024-11-20 CVE-2024-52581 Unspecified vulnerability in Litestar
Litestar is an Asynchronous Server Gateway Interface (ASGI) framework.
network
low complexity
litestar
7.5
2024-11-20 CVE-2024-48981 Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0
An issue was discovered in MBed OS 6.16.0.
network
low complexity
arm CWE-120
7.5
2024-11-20 CVE-2024-48983 Integer Overflow or Wraparound vulnerability in ARM Mbed 6.16.0
An issue was discovered in MBed OS 6.16.0.
network
low complexity
arm CWE-190
7.5
2024-11-20 CVE-2024-48985 Classic Buffer Overflow vulnerability in ARM Mbed 6.16.0
An issue was discovered in MBed OS 6.16.0.
network
low complexity
arm CWE-120
7.5
2024-11-20 CVE-2018-9470 Out-of-bounds Write vulnerability in Google Android
In bff_Scanner_addOutPos of Scanner.c, there is a possible out-of-bounds write due to an incorrect bounds check.
network
low complexity
google CWE-787
8.8
2024-11-20 CVE-2018-9471 Type Confusion vulnerability in Google Android
In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion.
local
low complexity
google CWE-843
7.8