Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-30058 Microsoft Edge (Chromium-based) Spoofing Vulnerability
network
low complexity
5.4
2024-06-13 CVE-2024-38083 Microsoft Edge (Chromium-based) Spoofing Vulnerability
network
low complexity
4.3
2024-06-13 CVE-2024-34116 Creative Cloud Desktop versions 6.1.0.587 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in a security feature bypass.
local
low complexity
CWE-427
5.5
2024-06-13 CVE-2024-34129 Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a security feature bypass.
local
high complexity
CWE-22
6.3
2024-06-13 CVE-2024-34130 Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass.
local
low complexity
5.5
2024-06-13 CVE-2024-30278 Media Encoder versions 23.6.5, 24.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
CWE-125
5.5
2024-06-13 CVE-2024-0979 The Dashboard Widgets Suite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in all versions up to, and including, 3.4.3 due to insufficient input sanitization and output escaping.
network
low complexity
6.1
2024-06-13 CVE-2024-1565 The EmbedPress – Embed PDF, YouTube, Google Docs, Vimeo, Wistia Videos, Audios, Maps & Any Documents in Gutenberg & Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the PDF Widget URL in all versions up to, and including, 3.9.10 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
6.4
2024-06-13 CVE-2024-30276 Audition versions 24.2, 23.6.4 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
CWE-125
5.5
2024-06-13 CVE-2024-30285 Audition versions 24.2, 23.6.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service condition.
local
low complexity
CWE-476
5.5