Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-21 CVE-2024-38782 Cross-site Scripting vulnerability in Mapsmarker Leaflet Maps Marker
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MapsMarker.Com e.U.
network
low complexity
mapsmarker CWE-79
5.4
2024-07-21 CVE-2024-38784 Cross-site Scripting vulnerability in Livemesh Beaver Builder Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Livemesh Livemesh Addons for Beaver Builder allows Stored XSS.This issue affects Livemesh Addons for Beaver Builder: from n/a through 3.6.1.
network
low complexity
livemesh CWE-79
4.8
2024-07-21 CVE-2024-38785 Cross-site Scripting vulnerability in Jegstudio Gutenverse
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jegstudio Gutenverse allows Stored XSS.This issue affects Gutenverse: from n/a through 1.9.2.
network
low complexity
jegstudio CWE-79
5.4
2024-07-21 CVE-2024-38786 Cross-site Scripting vulnerability in Burgersoftwares Cozipress
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BurgerThemes CoziPress allows Stored XSS.This issue affects CoziPress: from n/a through 1.0.30.
network
low complexity
burgersoftwares CWE-79
5.4
2024-07-21 CVE-2024-6954 Cross-site Scripting vulnerability in Jkev Record Management System 1.0
A vulnerability was found in SourceCodester Record Management System 1.0.
network
low complexity
jkev CWE-79
6.1
2024-07-21 CVE-2024-6955 Cross-site Scripting vulnerability in Jkev Record Management System 1.0
A vulnerability was found in SourceCodester Record Management System 1.0.
network
low complexity
jkev CWE-79
6.1
2024-07-21 CVE-2024-6949 Path Traversal vulnerability in Gargaj Wuhu
A vulnerability classified as problematic was found in Gargaj wuhu up to 3faad49bfcc3895e9ff76a591d05c8941273d120.
network
low complexity
gargaj CWE-22
5.3
2024-07-21 CVE-2024-37487 Cross-site Scripting vulnerability in Wpdirectorykit WP Directory KIT
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wpdirectorykit.Com WP Directory Kit allows Reflected XSS.This issue affects WP Directory Kit: from n/a through 1.3.5.
network
low complexity
wpdirectorykit CWE-79
6.1
2024-07-21 CVE-2024-37488 Cross-site Scripting vulnerability in Helloasso
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in HelloAsso allows Stored XSS.This issue affects HelloAsso: from n/a through 1.1.9.
network
low complexity
helloasso CWE-79
5.4
2024-07-21 CVE-2024-37489 Cross-site Scripting vulnerability in Oceanwp Ocean Extra
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OceanWP Ocean Extra allows Stored XSS.This issue affects Ocean Extra: from n/a through 2.2.9.
network
low complexity
oceanwp CWE-79
5.4