Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-23 CVE-2024-41836 InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS).
local
low complexity
CWE-476
5.5
2024-07-23 CVE-2024-41839 Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Input Validation vulnerability that could lead to a security feature bypass.
network
low complexity
CWE-20
4.1
2024-07-22 CVE-2024-29073 An vulnerability in the handling of Latex exists in Ankitects Anki 24.04.
network
high complexity
5.3
2024-07-22 CVE-2024-37114 Cross-site Scripting vulnerability in Takashimatsuyama MY Favorites
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Takashi Matsuyama My Favorites allows Stored XSS.This issue affects My Favorites: from n/a through 1.4.1.
network
low complexity
takashimatsuyama CWE-79
5.4
2024-07-22 CVE-2024-37116 Cross-site Scripting vulnerability in Sinatrateam Sinatra
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sinatrateam Sinatra allows Stored XSS.This issue affects Sinatra: from n/a through 1.3.
network
low complexity
sinatrateam CWE-79
5.4
2024-07-22 CVE-2024-37117 Cross-site Scripting vulnerability in Uncannyowl Uncanny Automator
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uncanny Owl Uncanny Automator Pro allows Reflected XSS.This issue affects Uncanny Automator Pro: from n/a through 5.3.
network
low complexity
uncannyowl CWE-79
6.1
2024-07-22 CVE-2024-37120 Cross-site Scripting vulnerability in Oxilab Responsive Tabs
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Tabs allows Stored XSS.This issue affects Tabs: from n/a through 4.0.6.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37121 Cross-site Scripting vulnerability in Oxilab Shortcode Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in biplob018 Shortcode Addons allows Stored XSS.This issue affects Shortcode Addons: from n/a through 3.2.5.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37122 Cross-site Scripting vulnerability in Oxilab Accordions
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Accordions allows Stored XSS.This issue affects Accordions: from n/a through 2.3.5.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37199 Cross-site Scripting vulnerability in Kriesi Enfold
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kriesi.At Enfold allows Reflected XSS.This issue affects Enfold: from n/a through 5.6.9.
network
low complexity
kriesi CWE-79
6.1