Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-21 CVE-2024-37480 Cross-site Scripting vulnerability in Apollo13Themes Apollo13 Framework Extensions
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Apollo13Themes Apollo13 Framework Extensions apollo13-framework-extensions allows Stored XSS.This issue affects Apollo13 Framework Extensions: from n/a through 1.9.3.
network
low complexity
apollo13themes CWE-79
5.4
2024-07-21 CVE-2024-37485 Cross-site Scripting vulnerability in Usestrict Bbpress Notify
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Vinny Alves (UseStrict Consulting) bbPress Notify allows Reflected XSS.This issue affects bbPress Notify: from n/a through 2.18.3.
network
low complexity
usestrict CWE-79
6.1
2024-07-21 CVE-2024-38781 Cross-site Scripting vulnerability in Artistscope Copysafe web Protection
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ArtistScope CopySafe Web Protection allows Reflected XSS.This issue affects CopySafe Web Protection: from n/a through 3.15.
network
low complexity
artistscope CWE-79
6.1
2024-07-21 CVE-2024-38782 Cross-site Scripting vulnerability in Mapsmarker Leaflet Maps Marker
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MapsMarker.Com e.U.
network
low complexity
mapsmarker CWE-79
5.4
2024-07-21 CVE-2024-38784 Cross-site Scripting vulnerability in Livemesh Beaver Builder Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Livemesh Livemesh Addons for Beaver Builder allows Stored XSS.This issue affects Livemesh Addons for Beaver Builder: from n/a through 3.6.1.
network
low complexity
livemesh CWE-79
4.8
2024-07-21 CVE-2024-38785 Cross-site Scripting vulnerability in Jegstudio Gutenverse
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jegstudio Gutenverse allows Stored XSS.This issue affects Gutenverse: from n/a through 1.9.2.
network
low complexity
jegstudio CWE-79
5.4
2024-07-21 CVE-2024-38786 Cross-site Scripting vulnerability in Burgersoftwares Cozipress
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BurgerThemes CoziPress allows Stored XSS.This issue affects CoziPress: from n/a through 1.0.30.
network
low complexity
burgersoftwares CWE-79
5.4
2024-07-21 CVE-2024-6954 Cross-site Scripting vulnerability in Jkev Record Management System 1.0
A vulnerability was found in SourceCodester Record Management System 1.0.
network
low complexity
jkev CWE-79
6.1
2024-07-21 CVE-2024-6955 Cross-site Scripting vulnerability in Jkev Record Management System 1.0
A vulnerability was found in SourceCodester Record Management System 1.0.
network
low complexity
jkev CWE-79
6.1
2024-07-21 CVE-2024-6949 Path Traversal vulnerability in Gargaj Wuhu
A vulnerability classified as problematic was found in Gargaj wuhu up to 3faad49bfcc3895e9ff76a591d05c8941273d120.
network
low complexity
gargaj CWE-22
5.3