Weekly Vulnerabilities Reports > September 30 to October 6, 2024
Overview
289 new vulnerabilities reported during this period, including 29 critical vulnerabilities and 91 high severity vulnerabilities. This weekly summary report vulnerabilities in 197 products from 123 vendors including Cisco, Dlink, Esri, Planet, and Randygaul. Vulnerabilities are notably categorized as "Cross-site Scripting", "Out-of-bounds Write", "Classic Buffer Overflow", "SQL Injection", and "Missing Authorization".
- 252 reported vulnerabilities are remotely exploitables.
- 138 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
- 148 reported vulnerabilities are exploitable by an anonymous user.
- Cisco has the most reported vulnerabilities, with 32 reported vulnerabilities.
- Cisco has the most reported critical vulnerabilities, with 4 reported vulnerabilities.
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
EXPLOITABLE
EXPLOITABLE
AVAILABLE
ANONYMOUSLY
WEB APPLICATION
Vulnerability Details
The following table list reported vulnerabilities for the period covered by this report:
29 Critical Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-10-05 | CVE-2024-47849 | Mediawiki | SQL Injection vulnerability in Mediawiki Cargo 3.6.0 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1. | 9.8 |
2024-10-04 | CVE-2024-43685 | Microchip | Improper Authentication vulnerability in Microchip Timeprovider 4100 Firmware Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | 9.8 |
2024-10-04 | CVE-2024-47656 | Shilpisoft | Improper Restriction of Excessive Authentication Attempts vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to missing restrictions for incorrect login attempts on its API based login. | 9.8 |
2024-10-03 | CVE-2024-43699 | Deltaww | SQL Injection vulnerability in Deltaww Diaenergie Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script AM_RegReport.aspx. | 9.8 |
2024-10-03 | CVE-2024-41593 | Draytek | Out-of-bounds Write vulnerability in Draytek products DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_dns(), because a byte sign-extension operation occurs for the length argument of a _memcpy call, leading to a heap-based Buffer Overflow. | 9.8 |
2024-10-03 | CVE-2024-7824 | Webroot | Type Confusion vulnerability in Webroot Secureanywhere web Shield Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3. | 9.8 |
2024-10-03 | CVE-2024-7825 | Webroot | Type Confusion vulnerability in Webroot Secureanywhere web Shield Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3. | 9.8 |
2024-10-03 | CVE-2024-7826 | Webroot | Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot Secureanywhere web Shield Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrURL.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3. | 9.8 |
2024-10-03 | CVE-2024-9460 | Codezips | SQL Injection vulnerability in Codezips Online Shopping Portal 1.0 A vulnerability was found in Codezips Online Shopping Portal 1.0. | 9.8 |
2024-10-02 | CVE-2024-45519 | Zimbra | Unspecified vulnerability in Zimbra Collaboration The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands. | 9.8 |
2024-10-02 | CVE-2024-24117 | Ruijie | Incorrect Permission Assignment for Critical Resource vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736) Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to gain privileges via the login check state component. | 9.8 |
2024-10-02 | CVE-2024-24116 | Ruijie | Unspecified vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736) An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm. | 9.8 |
2024-10-02 | CVE-2024-9429 | Code Projects | SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0 A vulnerability has been found in code-projects Restaurant Reservation System 1.0 and classified as critical. | 9.8 |
2024-10-01 | CVE-2024-45999 | Magicbug | SQL Injection vulnerability in Magicbug Cloudlog A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /application/models/Oqrs_model.php. | 9.8 |
2024-10-01 | CVE-2024-47608 | Definetlynotai | OS Command Injection vulnerability in Definetlynotai Logicytics Logicytics is designed to harvest and collect data for forensic analysis. | 9.8 |
2024-10-01 | CVE-2024-9265 | Coderevolution | Unspecified vulnerability in Coderevolution Echo RSS Feed Post Generator The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 5.4.6. | 9.8 |
2024-10-01 | CVE-2024-9289 | Redefiningtheweb | Missing Authentication for Critical Function vulnerability in Redefiningtheweb Affiliate PRO The WordPress & WooCommerce Affiliate Program plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 8.4.1. | 9.8 |
2024-10-01 | CVE-2024-9106 | The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.3.0. | 9.8 | |
2024-10-01 | CVE-2024-9108 | The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'convert_remoteimage_to_local' function in versions up to, and including, 1.3.0. | 9.8 | |
2024-10-01 | CVE-2024-9360 | Code Projects | SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0 A vulnerability was found in code-projects Restaurant Reservation System 1.0. | 9.8 |
2024-10-01 | CVE-2024-9359 | Code Projects | SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0 A vulnerability was found in code-projects Restaurant Reservation System 1.0 and classified as critical. | 9.8 |
2024-09-30 | CVE-2024-8456 | Planet | Missing Authentication for Critical Function vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology lack proper access control in firmware upload and download functionality, allowing unauthenticated remote attackers to download and upload firmware and system configurations, ultimately gaining full control of the devices. | 9.8 |
2024-09-30 | CVE-2024-8450 | Planet | Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have a Hard-coded community string in the SNMPv1 service, allowing unauthorized remote attackers to use this community string to access the SNMPv1 service with read-write privileges. | 9.8 |
2024-10-02 | CVE-2024-20518 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user. | 9.1 |
2024-10-02 | CVE-2024-20519 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user. | 9.1 |
2024-10-02 | CVE-2024-20520 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user. | 9.1 |
2024-10-02 | CVE-2024-20521 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user. | 9.1 |
2024-10-02 | CVE-2024-35293 | An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or erase the affected devices resulting in data loss and/or a DoS. | 9.1 | |
2024-10-01 | CVE-2023-3441 | Gitlab | Unspecified vulnerability in Gitlab An issue has been discovered in GitLab EE/CE affecting all versions starting from 8.0 before 16.4. | 9.1 |
91 High Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-10-06 | CVE-2024-9561 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9562 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability classified as critical was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9560 | Esafenet | SQL Injection vulnerability in Esafenet CDG 5 A vulnerability was found in ESAFENET CDG V5. | 8.8 |
2024-10-06 | CVE-2024-9559 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9558 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical. | 8.8 |
2024-10-06 | CVE-2024-9557 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. | 8.8 |
2024-10-06 | CVE-2024-9556 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9555 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability, which was classified as critical, has been found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9553 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9551 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9552 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9550 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-06 | CVE-2024-9549 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical. | 8.8 |
2024-10-05 | CVE-2024-9534 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-05 | CVE-2024-9535 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-05 | CVE-2024-9533 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical. | 8.8 |
2024-10-05 | CVE-2024-9532 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. | 8.8 |
2024-10-05 | CVE-2024-47846 | Mediawiki | Cross-Site Request Forgery (CSRF) vulnerability in Mediawiki Cargo 3.6.0 Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross Site Request Forgery.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1. | 8.8 |
2024-10-04 | CVE-2024-37868 | Emiloimagtolis | Unrestricted Upload of File with Dangerous Type vulnerability in Emiloimagtolis Online Discussion Forum 1.0 File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "sendreply.php" file, and the uploaded file was received using the "$- FILES" variable. | 8.8 |
2024-10-04 | CVE-2024-37869 | Emiloimagtolis | Unrestricted Upload of File with Dangerous Type vulnerability in Emiloimagtolis Online Discussion Forum 1.0 File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "poster.php" file, and the uploaded file was received using the "$- FILES" variable | 8.8 |
2024-10-04 | CVE-2024-43684 | Microchip | Cross-Site Request Forgery (CSRF) vulnerability in Microchip Timeprovider 4100 Firmware Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0. | 8.8 |
2024-10-04 | CVE-2024-9054 | Microchip | OS Command Injection vulnerability in Microchip Timeprovider 4100 Firmware Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Microchip TimeProvider 4100 (Configuration modules) allows Command Injection.This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | 8.8 |
2024-10-04 | CVE-2024-9514 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-04 | CVE-2024-9515 | Dlink | Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01 A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. | 8.8 |
2024-10-04 | CVE-2024-47655 | Shilpisoft | Unrestricted Upload of File with Dangerous Type vulnerability in Shilpisoft Client Dashboard This vulnerability exists in the Shilpi Client Dashboard due to improper validation of files being uploaded other than the specified extension. | 8.8 |
2024-10-03 | CVE-2024-42417 | Deltaww | SQL Injection vulnerability in Deltaww Diaenergie Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script Handler_CFG.ashx. | 8.8 |
2024-10-02 | CVE-2024-20393 | Cisco | Unspecified vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability exists because the web-based management interface discloses sensitive information. | 8.8 |
2024-10-02 | CVE-2024-20432 | Cisco | Command Injection vulnerability in Cisco Nexus Dashboard Fabric Controller A vulnerability in the REST API and web UI of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to perform a command injection attack against an affected device. This vulnerability is due to improper user authorization and insufficient validation of command arguments. | 8.8 |
2024-10-02 | CVE-2024-20449 | Cisco | Path Traversal vulnerability in Cisco Nexus Dashboard Fabric Controller A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, remote attacker with low privileges to execute arbitrary code on an affected device. This vulnerability is due to improper path validation. | 8.8 |
2024-10-02 | CVE-2024-7855 | The WP Hotel Booking plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_review() function in all versions up to, and including, 2.1.2. | 8.8 | |
2024-10-01 | CVE-2024-9018 | Plugingarden | SQL Injection vulnerability in Plugingarden WP Easy Gallery The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘key’ parameter in all versions up to, and including, 4.8.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 8.8 |
2024-10-01 | CVE-2024-7432 | Ultrapress | Deserialization of Untrusted Data vulnerability in Ultrapress Unseen Blog The Unseen Blog theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.0 via deserialization of untrusted input. | 8.8 |
2024-10-01 | CVE-2024-7433 | Ultrapress | Deserialization of Untrusted Data vulnerability in Ultrapress Empowerment The Empowerment theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.2 via deserialization of untrusted input. | 8.8 |
2024-10-01 | CVE-2024-7434 | Ultrapress | Deserialization of Untrusted Data vulnerability in Ultrapress The UltraPress theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.2.1 via deserialization of untrusted input. | 8.8 |
2024-09-30 | CVE-2024-8458 | Planet | Cross-Site Request Forgery (CSRF) vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CSRF). | 8.8 |
2024-09-30 | CVE-2024-8448 | Planet | Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have a hard-coded credential in the specific command-line interface, allowing remote attackers with regular privilege to log in with this credential and obtain a Linux root shell. | 8.8 |
2024-10-02 | CVE-2024-20448 | Cisco | Cleartext Storage of Sensitive Information vulnerability in Cisco Nexus Dashboard Fabric Controller A vulnerability in the Cisco Nexus Dashboard Fabric Controller (NDFC) software, formerly Cisco Data Center Network Manager (DCNM), could allow an attacker with access to a backup file to view sensitive information. This vulnerability is due to the improper storage of sensitive information within config only and full backup files. | 8.6 |
2024-10-02 | CVE-2024-20490 | Cisco | Information Exposure Through Log Files vulnerability in Cisco products A vulnerability in a logging function of Cisco Nexus Dashboard Fabric Controller (NDFC) and Cisco Nexus Dashboard Orchestrator (NDO) could allow an attacker with access to a tech support file to view sensitive information. This vulnerability exists because HTTP proxy credentials could be recorded in an internal log that is stored in the tech support file. | 8.6 |
2024-10-02 | CVE-2024-20491 | Cisco | Information Exposure Through Log Files vulnerability in Cisco products A vulnerability in a logging function of Cisco Nexus Dashboard Insights could allow an attacker with access to a tech support file to view sensitive information. This vulnerability exists because remote controller credentials are recorded in an internal log that is stored in the tech support file. | 8.6 |
2024-10-05 | CVE-2024-47845 | Wikimedia | Improper Encoding or Escaping of Output vulnerability in Wikimedia Wikimedia-Extensions-Css Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2. | 8.2 |
2024-10-03 | CVE-2023-37822 | Eufy | Insufficient Entropy vulnerability in Eufy Homebase 2 Firmware The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network. | 8.2 |
2024-10-01 | CVE-2024-9341 | Containers Redhat | A flaw was found in Go. | 8.2 |
2024-10-04 | CVE-2024-47183 | Parseplatform | Incorrect Authorization vulnerability in Parseplatform Parse Server Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. | 8.1 |
2024-10-04 | CVE-2024-47768 | Lifplatforms | Missing Authorization vulnerability in Lifplatforms LIF Authentication Server Lif Authentication Server is a server used by Lif to do various tasks regarding Lif accounts. | 8.1 |
2024-10-04 | CVE-2024-47652 | Shilpisoft | Unspecified vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to implementation of inadequate authentication mechanism in the login module wherein access to any users account is granted with just their corresponding mobile number. | 8.1 |
2024-10-01 | CVE-2024-8548 | The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on several functions in all versions up to, and including, 1.6.6. | 8.1 | |
2024-09-30 | CVE-2024-45772 | Apache | Deserialization of Untrusted Data vulnerability in Apache Lucene Deserialization of Untrusted Data vulnerability in Apache Lucene Replicator. This issue affects Apache Lucene's replicator module: from 4.4.0 before 9.12.0. The deprecated org.apache.lucene.replicator.http package is affected. The org.apache.lucene.replicator.nrt package is not affected. Users are recommended to upgrade to version 9.12.0, which fixes the issue. The deserialization can only be triggered if users actively deploy an network-accessible implementation and a corresponding client using a HTTP library that uses the API (e.g., a custom servlet and HTTPClient). | 8.0 |
2024-10-03 | CVE-2024-36474 | Gnome | Integer Overflow or Wraparound vulnerability in Gnome Libgsf 1.14.52 An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. | 7.8 |
2024-10-03 | CVE-2024-42415 | Gnome | Unspecified vulnerability in Gnome Libgsf 1.14.52 An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). | 7.8 |
2024-10-03 | CVE-2024-47134 | Electronics Jtekt | Out-of-bounds Write vulnerability in Electronics.Jtekt Kostac PLC Programming Software Out-of-bounds write vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. | 7.8 |
2024-10-03 | CVE-2024-47135 | Jtekt | Out-of-bounds Write vulnerability in Jtekt Kostac PLC 1.6.10.0/1.6.11.0/1.6.9.0 Stack-based buffer overflow vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. | 7.8 |
2024-10-03 | CVE-2024-47136 | Jtekt | Out-of-bounds Read vulnerability in Jtekt Kostac PLC 1.6.10.0/1.6.11.0/1.6.9.0 Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. | 7.8 |
2024-10-02 | CVE-2024-44193 | Apple | Unspecified vulnerability in Apple Itunes A logic issue was addressed with improved restrictions. | 7.8 |
2024-10-01 | CVE-2024-46258 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_load_png_mem() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46259 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_unfilter() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46261 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_make32() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46263 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a stack overflow via the cp_dynamic() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46264 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_find() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46267 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_block() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46274 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_stored() function at cute_png.h. | 7.8 |
2024-10-01 | CVE-2024-46276 | Randygaul | Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05 cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_chunk() function at cute_png.h. | 7.8 |
2024-09-30 | CVE-2024-7670 | Autodesk | Out-of-bounds Read vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an Out-of-Bounds Read. | 7.8 |
2024-09-30 | CVE-2024-7671 | Autodesk | Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write. | 7.8 |
2024-09-30 | CVE-2024-7672 | Autodesk | Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write. | 7.8 |
2024-09-30 | CVE-2024-7673 | Autodesk | Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. | 7.8 |
2024-09-30 | CVE-2024-7674 | Autodesk | Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. | 7.8 |
2024-09-30 | CVE-2024-7675 | Autodesk | Use After Free vulnerability in Autodesk Navisworks 2025/2025.1/2025.2 A maliciously crafted DWF file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Use-After-Free. | 7.8 |
2024-10-05 | CVE-2024-47841 | Wikimedia | Path Traversal vulnerability in Wikimedia Wikimedia-Extensions-Css Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue affects Mediawiki - CSS Extension: from 1.42.X before 1.42.2, from 1.41.X before 1.41.3, from 1.39.X before 1.39.9. | 7.5 |
2024-10-04 | CVE-2024-38040 | Esri | Unspecified vulnerability in Esri Portal for Arcgis There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2. | 7.5 |
2024-10-04 | CVE-2024-47769 | Idurarapp | Relative Path Traversal vulnerability in Idurarapp Idurar IDURAR is open source ERP CRM accounting invoicing software. | 7.5 |
2024-10-04 | CVE-2024-47654 | Shilpisoft | Unspecified vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint. | 7.5 |
2024-10-04 | CVE-2024-6400 | Finrota | Cleartext Storage of Sensitive Information vulnerability in Finrota Cleartext Storage of Sensitive Information vulnerability in Finrota Netahsilat allows Retrieve Embedded Sensitive Data.This issue solved in versions 1.21.10, 1.23.01, 1.23.08, 1.23.11 and 1.24.03. | 7.5 |
2024-10-03 | CVE-2024-41594 | Draytek | Inadequate Encryption Strength vulnerability in Draytek products An issue in DrayTek Vigor310 devices through 4.3.2.6 allows an attacker to obtain sensitive information because the httpd server of the Vigor management UI uses a static string for seeding the PRNG of OpenSSL. | 7.5 |
2024-10-03 | CVE-2024-8352 | Hypestudio | Path Traversal vulnerability in Hypestudio Social web Suite The Social Web Suite – Social Media Auto Post, Social Media Auto Publish plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.1.11 via the download_log function. | 7.5 |
2024-10-02 | CVE-2024-20498 | Cisco | Double Free vulnerability in Cisco products Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session. | 7.5 |
2024-10-02 | CVE-2024-20499 | Cisco | Out-of-bounds Write vulnerability in Cisco products Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session. | 7.5 |
2024-10-02 | CVE-2024-20500 | Cisco | Resource Exhaustion vulnerability in Cisco products A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. This vulnerability is due to insufficient resource management when establishing TLS/SSL sessions. | 7.5 |
2024-10-02 | CVE-2024-20501 | Cisco | Out-of-bounds Write vulnerability in Cisco products Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session. | 7.5 |
2024-10-02 | CVE-2024-20502 | Cisco | Resource Exhaustion vulnerability in Cisco products A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to insufficient resource management while establishing SSL VPN sessions. | 7.5 |
2024-10-02 | CVE-2024-47805 | Jenkins | Insufficiently Protected Credentials vulnerability in Jenkins Credentials Jenkins Credentials Plugin 1380.va_435002fa_924 and earlier, except 1371.1373.v4eb_fa_b_7161e9, does not redact encrypted values of credentials using the `SecretBytes` type when accessing item `config.xml` via REST API or CLI. | 7.5 |
2024-10-01 | CVE-2024-9393 | Mozilla | Unspecified vulnerability in Mozilla Firefox An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin. | 7.5 |
2024-10-01 | CVE-2024-9394 | Mozilla | Unspecified vulnerability in Mozilla Firefox An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin. | 7.5 |
2024-10-01 | CVE-2024-9399 | Mozilla | Unspecified vulnerability in Mozilla Thunderbird A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a denial of service condition. | 7.5 |
2024-09-30 | CVE-2024-8454 | Planet | Resource Exhaustion vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware The swctrl service is used to detect and remotely manage PLANET Technology devices. | 7.5 |
2024-09-30 | CVE-2024-8451 | Planet | Improper Handling of Insufficient Permissions or Privileges vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing unauthorized remote attackers to exploit this weakness to occupy connection slots and prevent legitimate users from accessing the SSH service. | 7.5 |
2024-09-30 | CVE-2024-8452 | Planet | Reversible One-Way Hash vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology only support obsolete algorithms for authentication protocol and encryption protocol in the SNMPv3 service, allowing attackers to obtain plaintext SNMPv3 credentials potentially. | 7.5 |
2024-10-02 | CVE-2024-20365 | Cisco | Command Injection vulnerability in Cisco Unified Computing System A vulnerability in the Redfish API of Cisco UCS B-Series, Cisco UCS Managed C-Series, and Cisco UCS X-Series Servers could allow an authenticated, remote attacker with administrative privileges to perform command injection attacks on an affected system and elevate privileges to root. This vulnerability is due to insufficient input validation. | 7.2 |
2024-10-02 | CVE-2024-20470 | Cisco | Unspecified vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. | 7.2 |
2024-10-01 | CVE-2024-7869 | The 123.chat - Video Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping. | 7.2 | |
2024-09-30 | CVE-2024-8379 | Stylemixthemes | SQL Injection vulnerability in Stylemixthemes Cost Calculator Builder The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as Admin. | 7.2 |
2024-10-01 | CVE-2024-8981 | The Broken Link Checker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg in /app/admin-notices/features/class-view.php without appropriate escaping on the URL in all versions up to, and including, 2.4.0. | 7.1 |
165 Medium Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-10-05 | CVE-2024-8743 | The Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 6.5.7. | 6.8 | |
2024-10-02 | CVE-2024-20516 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition. | 6.8 |
2024-10-02 | CVE-2024-20517 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition. | 6.8 |
2024-10-02 | CVE-2024-20522 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition. | 6.8 |
2024-10-02 | CVE-2024-20523 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition. | 6.8 |
2024-10-02 | CVE-2024-20524 | Cisco | Out-of-bounds Write vulnerability in Cisco products A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition. | 6.8 |
2024-09-30 | CVE-2024-8449 | Planet | Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any user's password. | 6.8 |
2024-10-02 | CVE-2024-20492 | Cisco | Command Injection vulnerability in Cisco Telepresence Video Communication Server A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. | 6.7 |
2024-10-05 | CVE-2024-9161 | Rankmath | Missing Authorization vulnerability in Rankmath SEO The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'update_metadata' function in all versions up to, and including, 1.0.228. | 6.5 |
2024-10-04 | CVE-2024-7801 | Microchip | SQL Injection vulnerability in Microchip Timeprovider 4100 Firmware Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip TimeProvider 4100 (Data plot modules) allows SQL Injection.This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | 6.5 |
2024-10-04 | CVE-2024-47653 | Shilpisoft | Unspecified vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to lack of authorization for modification and cancellation requests through certain API endpoints. | 6.5 |
2024-10-04 | CVE-2024-47657 | Shilpisoft | Authorization Bypass Through User-Controlled Key vulnerability in Shilpisoft NET Back Office This vulnerability exists in the Shilpi Net Back Office due to improper access controls on certain API endpoints. | 6.5 |
2024-10-04 | CVE-2024-47651 | Shilpi | Unspecified vulnerability in Shilpi Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to improper handling of multiple parameters in the API endpoint. | 6.5 |
2024-10-04 | CVE-2024-6444 | Zephyrproject | Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01 No proper validation of the length of user input in olcp_ind_handler in zephyr/subsys/bluetooth/services/ots/ots_client.c. | 6.5 |
2024-10-04 | CVE-2024-6442 | Zephyrproject | Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01 In ascs_cp_rsp_add in /subsys/bluetooth/audio/ascs.c, an unchecked tailroom could lead to a global buffer overflow. | 6.5 |
2024-10-04 | CVE-2024-6443 | Zephyrproject | Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01 In utf8_trunc in zephyr/lib/utils/utf8.c, last_byte_p can point to one byte before the string pointer if the string is empty. | 6.5 |
2024-10-02 | CVE-2024-46977 | Openc3 | Path Traversal vulnerability in Openc3 Cosmos OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. | 6.5 |
2024-10-02 | CVE-2024-47529 | Openc3 | Unspecified vulnerability in Openc3 Cosmos OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. | 6.5 |
2024-10-02 | CVE-2024-20441 | Cisco | Unspecified vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to learn sensitive information on an affected device. This vulnerability is due to insufficient authorization controls on the affected REST API endpoint. | 6.5 |
2024-10-02 | CVE-2024-20515 | Cisco | Missing Encryption of Sensitive Data vulnerability in Cisco Identity Services Engine A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information from an affected device. This vulnerability is due to a lack of proper data protection mechanisms for certain configuration settings. | 6.5 |
2024-10-02 | CVE-2024-35294 | An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials. | 6.5 | |
2024-10-01 | CVE-2024-9224 | KAU Boys | Path Traversal vulnerability in Kau-Boys Hello World The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function. | 6.5 |
2024-10-01 | CVE-2024-8632 | The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'kbs_ajax_load_front_end_replies' and 'kbs_ajax_mark_reply_as_read' functions in all versions up to, and including, 1.6.6. | 6.5 | |
2024-09-30 | CVE-2024-47532 | Zope | Unspecified vulnerability in Zope Restrictedpython RestrictedPython is a restricted execution environment for Python to run untrusted code. | 6.5 |
2024-10-05 | CVE-2024-8486 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in the Modern Heading and Icon Picker widgets all versions up to, and including, 2.16.3 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-05 | CVE-2024-9455 | The WP Cleanup and Basic Functions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-03 | CVE-2024-8159 | Deep Freeze 9.00.020.5760 is vulnerable to an out-of-bounds read vulnerability by triggering the 0x70014 IOCTL code of the FarDisk.sys driver. | 6.4 | |
2024-10-01 | CVE-2024-9060 | The AVIF & SVG Uploader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in version 1.1.0 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-8288 | The Guten Post Layout – An Advanced Post Grid Collection for WordPress Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ attribute within the 'wp:guten-post-layout/post-grid' Gutenberg block in all versions up to, and including, 1.2.4 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-8324 | The XO Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘get_slider’ function in all versions up to, and including, 3.8.6 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-8720 | The RumbleTalk Live Group Chat – HTML5 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rumbletalk-admin-button' shortcode in all versions up to, and including, 6.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-10-01 | CVE-2024-8990 | The Geo Mashup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's geo_mashup_visible_posts_list shortcode in all versions up to, and including, 1.13.13 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2024-10-01 | CVE-2024-9269 | The Relogo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 0.4.2 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-9272 | The R Animated Icon Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-9274 | The Elastik Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 0.27.4 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-01 | CVE-2024-9304 | The LocateAndFilter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.14 due to insufficient input sanitization and output escaping. | 6.4 | |
2024-10-02 | CVE-2024-8254 | Icegram | Code Injection vulnerability in Icegram Email Subscribers & Newsletters The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.7.34. | 6.3 |
2024-10-05 | CVE-2024-47389 | Basixonline | Cross-site Scripting vulnerability in Basixonline Nex-Forms Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Basix NEX-Forms – Ultimate Form Builder allows Reflected XSS.This issue affects NEX-Forms – Ultimate Form Builder: from n/a through 8.7.3. | 6.1 |
2024-10-05 | CVE-2024-9417 | The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to limited file uploads due to a misconfigured file type validation in the 'handleUpload' function in all versions up to, and including, 1.1.9. | 6.1 | |
2024-10-05 | CVE-2024-47847 | Mediawiki | Cross-site Scripting vulnerability in Mediawiki Cargo 3.6.0 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross-Site Scripting (XSS).This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1. | 6.1 |
2024-10-04 | CVE-2024-43683 | Microchip | Open Redirect vulnerability in Microchip Timeprovider 4100 Firmware URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0. | 6.1 |
2024-10-04 | CVE-2024-43686 | Microchip | Cross-site Scripting vulnerability in Microchip Timeprovider 4100 Firmware Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (data plot modules) allows Reflected XSS.This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | 6.1 |
2024-10-04 | CVE-2024-43687 | Microchip | Cross-site Scripting vulnerability in Microchip Timeprovider 4100 Firmware Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (banner config modules) allows Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0 before 2.4.7. | 6.1 |
2024-10-04 | CVE-2024-25691 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.8.1/10.9.1/11.1 There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1, 10.9.1 and 10.8.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 6.1 |
2024-10-04 | CVE-2024-38037 | Esri | Open Redirect vulnerability in Esri Portal for Arcgis 10.9.1/11.0 There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.0 and 10.9.1 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary website, simplifying phishing attacks. | 6.1 |
2024-10-04 | CVE-2024-38038 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.7.1/10.8.1/10.9.1 There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1, 10.8.1 and 10.7.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 6.1 |
2024-10-04 | CVE-2024-8148 | Esri | Open Redirect vulnerability in Esri Portal for Arcgis There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 10.8.1 - 11.2 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary website, simplifying phishing attacks. | 6.1 |
2024-10-04 | CVE-2024-8149 | Esri | Unspecified vulnerability in Esri Portal for Arcgis 11.1/11.2 There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and 11.2 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 6.1 |
2024-10-04 | CVE-2024-47765 | Jgniecki | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Jgniecki Minecraft Motd Parser Minecraft MOTD Parser is a PHP library to parse minecraft server motd. | 6.1 |
2024-10-04 | CVE-2024-8499 | Themehigh | Cross-site Scripting vulnerability in Themehigh Checkout Field Editor The Checkout Field Editor (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘render_review_request_notice’ function in all versions up to, and including, 2.0.3 due to insufficient input sanitization and output escaping. | 6.1 |
2024-10-04 | CVE-2024-9435 | Plainware | Cross-site Scripting vulnerability in Plainware Shiftcontroller The ShiftController Employee Shift Scheduling plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URL keys in all versions up to, and including, 4.9.66 due to insufficient input sanitization and output escaping. | 6.1 |
2024-10-04 | CVE-2024-47854 | Veritas | Cross-site Scripting vulnerability in Veritas Data Insight An XSS vulnerability was discovered in Veritas Data Insight before 7.1. | 6.1 |
2024-10-04 | CVE-2024-8802 | Clio | Cross-site Scripting vulnerability in Clio Grow 1.0/1.0.1/1.0.2 The Clio Grow plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.2. | 6.1 |
2024-10-04 | CVE-2024-9204 | Nerdpress | Cross-site Scripting vulnerability in Nerdpress Smart Custom 404 Error Page The Smart Custom 404 Error Page plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via $_SERVER['REQUEST_URI'] in all versions up to, and including, 11.4.7 due to insufficient input sanitization and output escaping. | 6.1 |
2024-10-04 | CVE-2024-9237 | WP Centrics | Cross-site Scripting vulnerability in Wp-Centrics Fish and Ships The Fish and Ships – Most flexible shipping table rate. | 6.1 |
2024-10-04 | CVE-2024-9345 | Tychesoftwares | Cross-site Scripting vulnerability in Tychesoftwares Product Delivery Date for Woocommerce The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.7.3. | 6.1 |
2024-10-04 | CVE-2024-9349 | Michaeluno | Cross-site Scripting vulnerability in Michaeluno Auto Amazon Links The Auto Amazon Links – Amazon Associates Affiliate Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 5.4.2. | 6.1 |
2024-10-04 | CVE-2024-9353 | Themes4Wp | Cross-site Scripting vulnerability in Themes4Wp Popularis Extra The Popularis Extra plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.2.6. | 6.1 |
2024-10-04 | CVE-2024-9375 | Techbanker | Cross-site Scripting vulnerability in Techbanker Captcha Bank The WordPress Captcha Plugin by Captcha Bank plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 4.0.36. | 6.1 |
2024-10-04 | CVE-2024-9384 | Wpfactory | Cross-site Scripting vulnerability in Wpfactory Quantity Dynamic Pricing & Bulk Discounts for Woocommerce The Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.8.0. | 6.1 |
2024-10-03 | CVE-2024-41591 | Draytek | Cross-site Scripting vulnerability in Draytek products DrayTek Vigor3910 devices through 4.3.2.6 allow unauthenticated DOM-based reflected XSS. | 6.1 |
2024-10-03 | CVE-2024-47617 | Sulu | Cross-site Scripting vulnerability in Sulu 2.5.20/2.6.4 Sulu is a PHP content management system. | 6.1 |
2024-10-02 | CVE-2024-43795 | Openc3 | Cross-site Scripting vulnerability in Openc3 Cosmos OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. | 6.1 |
2024-10-02 | CVE-2024-9440 | Slimselectjs | Cross-site Scripting vulnerability in Slimselectjs Slim Select Slim Select 2.0 versions through 2.9.0 are affected by a potential cross-site scripting vulnerability. | 6.1 |
2024-10-02 | CVE-2024-9218 | Themegrill | Cross-site Scripting vulnerability in Themegrill Magazine Blocks The Magazine Blocks – Blog Designer, Magazine & Newspaper Website Builder, Page Builder with Posts Blocks, Post Grid plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.3.14. | 6.1 |
2024-10-02 | CVE-2024-9344 | Berqier | Cross-site Scripting vulnerability in Berqier Berqwp The BerqWP – Automated All-In-One PageSpeed Optimization Plugin for Core Web Vitals, Cache, CDN, Images, CSS, and JavaScript plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter in all versions up to, and including, 2.1.1 due to insufficient input sanitization and output escaping. | 6.1 |
2024-10-02 | CVE-2024-9378 | Icopydoc | Cross-site Scripting vulnerability in Icopydoc YML for Yandex Market The YML for Yandex Market plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 4.7.2 due to insufficient input sanitization and output escaping. | 6.1 |
2024-10-02 | CVE-2024-8800 | Yoginetwork | Cross-site Scripting vulnerability in Yoginetwork Rabbitloader The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.21.0. | 6.1 |
2024-10-02 | CVE-2024-9210 | Ibericode | Cross-site Scripting vulnerability in Ibericode Mailchimp TOP BAR The MC4WP: Mailchimp Top Bar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.6.0. | 6.1 |
2024-10-02 | CVE-2024-9222 | Cozmoslabs | Cross-site Scripting vulnerability in Cozmoslabs Membership & Content Restriction - Paid Member Subscriptions The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.12.8. | 6.1 |
2024-10-02 | CVE-2024-9225 | Seopress | Cross-site Scripting vulnerability in Seopress The SEOPress – On-site SEO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 8.1.1. | 6.1 |
2024-10-01 | CVE-2024-47604 | Microsoft | Cross-site Scripting vulnerability in Microsoft Nugetgallery NuGet Gallery is a package repository that powers nuget.org. | 6.1 |
2024-10-01 | CVE-2024-9397 | Mozilla | Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking. | 6.1 |
2024-10-01 | CVE-2024-8793 | Visser | Cross-site Scripting vulnerability in Visser Store Exporter for Woocommerce The Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.7.2.1. | 6.1 |
2024-10-01 | CVE-2024-8799 | Goldplugins | Cross-site Scripting vulnerability in Goldplugins Custom Banners The Custom Banners plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.3. | 6.1 |
2024-10-01 | CVE-2024-9209 | Cornelraiu | Cross-site Scripting vulnerability in Cornelraiu WP Search Analytics The WP Search Analytics plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.10. | 6.1 |
2024-10-01 | CVE-2024-9220 | Petershaw | Cross-site Scripting vulnerability in Petershaw LH Copy Media File The LH Copy Media File plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.08. | 6.1 |
2024-10-01 | CVE-2024-9228 | Duckdev | Cross-site Scripting vulnerability in Duckdev Loggedin The Loggedin – Limit Active Logins plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.3.1. | 6.1 |
2024-10-01 | CVE-2024-9241 | Contempo | Cross-site Scripting vulnerability in Contempo PDF Image Generator The PDF Image Generator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.5.6. | 6.1 |
2024-10-01 | CVE-2024-8718 | The Gravity Forms Toolbar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in all versions up to, and including, 1.7.0 due to insufficient input sanitization and output escaping. | 6.1 | |
2024-10-01 | CVE-2024-8727 | The DK PDF plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.9.6. | 6.1 | |
2024-10-01 | CVE-2024-8728 | The Easy Load More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.3. | 6.1 | |
2024-10-01 | CVE-2024-9267 | The Easy WordPress Subscribe – Optin Hound plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.3. | 6.1 | |
2024-09-30 | CVE-2024-47067 | Alist Project | Cross-site Scripting vulnerability in Alist Project Alist AList is a file list program that supports multiple storages. | 6.1 |
2024-09-30 | CVE-2024-47530 | Clinical Genomics | Open Redirect vulnerability in Clinical-Genomics Scout Scout is a web-based visualizer for VCF-files. | 6.1 |
2024-09-30 | CVE-2024-47063 | Cvat | Cross-site Scripting vulnerability in Cvat Computer Vision Annotation Tool Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. | 6.1 |
2024-09-30 | CVE-2024-47064 | Cvat | Improper Neutralization of Script in an Error Message Web Page vulnerability in Cvat Computer Vision Annotation Tool Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. | 6.1 |
2024-09-30 | CVE-2024-9329 | Eclipse | Open Redirect vulnerability in Eclipse Glassfish In Eclipse Glassfish versions before 7.0.17, The Host HTTP parameter could cause the web application to redirect to the specified URL, when the requested endpoint is '/management/domain'. | 6.1 |
2024-10-02 | CVE-2024-20509 | Cisco | Race Condition vulnerability in Cisco products A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to hijack an AnyConnect VPN session or cause a denial of service (DoS) condition for individual users of the AnyConnect VPN service on an affected device. This vulnerability is due to weak entropy for handlers that are used during the VPN authentication process as well as a race condition that exists in the same process. | 5.9 |
2024-10-02 | CVE-2024-20385 | Cisco | Improper Certificate Validation vulnerability in Cisco Nexus Dashboard Orchestrator A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated, remote attacker to intercept sensitive information from an affected device. This vulnerability exists because the Cisco NDO Validate Peer Certificate site management feature validates the certificates for Cisco Application Policy Infrastructure Controller (APIC), Cisco Cloud Network Controller (CNC), and Cisco Nexus Dashboard only when a new site is added or an existing one is reregistered. | 5.9 |
2024-10-01 | CVE-2024-9358 | Thingsboard | Unspecified vulnerability in Thingsboard A vulnerability has been found in ThingsBoard up to 3.7.0 and classified as problematic. | 5.9 |
2024-09-30 | CVE-2024-8455 | Planet | Inadequate Encryption Strength vulnerability in Planet products The swctrl service is used to detect and remotely manage PLANET Technology devices. | 5.9 |
2024-10-04 | CVE-2024-9481 | AVG Avast | Out-of-bounds Write vulnerability in multiple products An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed eml file to crash the application during file processing. | 5.5 |
2024-10-04 | CVE-2024-9482 | AVG Avast | Out-of-bounds Write vulnerability in multiple products An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed Mach-O file to crash the application during file processing. | 5.5 |
2024-10-04 | CVE-2024-9483 | AVG Avast | NULL Pointer Dereference vulnerability in multiple products A null-pointer-dereference in the signature verification module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS may allow a malformed xar file to crash the application during processing. | 5.5 |
2024-10-04 | CVE-2024-9484 | AVG Avast | NULL Pointer Dereference vulnerability in multiple products An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed xar file to crash the application during file processing. | 5.5 |
2024-10-04 | CVE-2024-44204 | Apple | Unspecified vulnerability in Apple Iphone OS A logic issue was addressed with improved validation. | 5.5 |
2024-10-02 | CVE-2024-20444 | Cisco | Argument Injection or Modification vulnerability in Cisco Nexus Dashboard Fabric Controller A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC), formerly Cisco Data Center Network Manager (DCNM), could allow an authenticated, remote attacker with network-admin privileges to perform a command injection attack against an affected device. This vulnerability is due to insufficient validation of command arguments. | 5.5 |
2024-09-30 | CVE-2024-46869 | Linux | Unspecified vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel_pcie: Allocate memory for driver private data Fix driver not allocating memory for struct btintel_data which is used to store internal data. | 5.5 |
2024-10-06 | CVE-2024-47298 | Bold Themes | Cross-site Scripting vulnerability in Bold-Themes Bold Page Builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.This issue affects Bold Page Builder: from n/a through 5.1.1. | 5.4 |
2024-10-06 | CVE-2024-47357 | Leevio | Cross-site Scripting vulnerability in Leevio Happy Addons for Elementor Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Leevio Happy Addons for Elementor allows Stored XSS.This issue affects Happy Addons for Elementor: from n/a through 3.12.0. | 5.4 |
2024-10-06 | CVE-2024-47364 | Moveaddons | Cross-site Scripting vulnerability in Moveaddons Move Addons for Elementor Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Move addons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.4. | 5.4 |
2024-10-06 | CVE-2024-47366 | Webtechstreet | Cross-site Scripting vulnerability in Webtechstreet Elementor Addon Elements Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPVibes Elementor Addon Elements allows Stored XSS.This issue affects Elementor Addon Elements: from n/a through 1.13.6. | 5.4 |
2024-10-05 | CVE-2024-47390 | Jegtheme | Cross-site Scripting vulnerability in Jegtheme JEG Elementor KIT Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jegtheme Jeg Elementor Kit allows Stored XSS.This issue affects Jeg Elementor Kit: from n/a through 2.6.8. | 5.4 |
2024-10-05 | CVE-2024-47391 | Bold Themes | Cross-site Scripting vulnerability in Bold-Themes Bold Page Builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.This issue affects Bold Page Builder: from n/a before 5.1.1. | 5.4 |
2024-10-05 | CVE-2024-47392 | Bdthemes | Cross-site Scripting vulnerability in Bdthemes Element Pack Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 5.7.5. | 5.4 |
2024-10-05 | CVE-2024-47625 | Themelooks | Cross-site Scripting vulnerability in Themelooks Enter Addons Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XSS.This issue affects Enter Addons: from n/a through 2.1.8. | 5.4 |
2024-10-04 | CVE-2024-38036 | Esri | Unspecified vulnerability in Esri Portal for Arcgis 10.7.1/10.8.1/10.9.1 There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1, 10.8.1 and 10.7.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 5.4 |
2024-10-04 | CVE-2024-38039 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, authenticated attacker to create a crafted link which when clicked could render arbitrary HTML in the victim’s browser (no stateful change made or customer data rendered). | 5.4 |
2024-10-04 | CVE-2024-9071 | Sigmadevs | Cross-site Scripting vulnerability in Sigmadevs Easy Demo Importer The Easy Demo Importer – A Modern One-Click Demo Import Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.1.2 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-04 | CVE-2024-9271 | Remilia | Cross-site Scripting vulnerability in Remilia Re:Wp The Re:WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-04 | CVE-2024-8804 | Davidartiss | Cross-site Scripting vulnerability in Davidartiss Code Embed The Code Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's script embed functionality in all versions up to, and including, 2.4 due to insufficient restrictions on who can utilize the functionality. | 5.4 |
2024-10-04 | CVE-2024-9242 | Memberful | Cross-site Scripting vulnerability in Memberful The Memberful – Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'memberful_buy_subscription_link' and 'memberful_podcasts_link' shortcodes in all versions up to, and including, 1.73.7 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-10-04 | CVE-2024-8519 | Ultimatemember | Cross-site Scripting vulnerability in Ultimatemember Ultimate Member The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'um_loggedin' shortcode in all versions up to, and including, 2.8.6 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-10-04 | CVE-2024-9368 | Miguelmello | Cross-site Scripting vulnerability in Miguelmello Aggregator Advanced Settings The Aggregator Advanced Settings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-04 | CVE-2024-9372 | Wpblockshub | Cross-site Scripting vulnerability in Wpblockshub WP Blocks HUB The WP Blocks Hub plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.2 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-04 | CVE-2024-9421 | Prontotools | Cross-site Scripting vulnerability in Prontotools Login Logout Shortcode The Login Logout Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'class' parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-04 | CVE-2024-9445 | Acekyd | Cross-site Scripting vulnerability in Acekyd Display Medium Posts The Display Medium Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's display_medium_posts shortcode in all versions up to, and including, 5.0.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2024-10-03 | CVE-2024-41587 | Draytek | Cross-site Scripting vulnerability in Draytek products Stored XSS, by authenticated users, is caused by poor sanitization of the Login Page Greeting message in DrayTek Vigor310 devices through 4.3.2.6. | 5.4 |
2024-10-03 | CVE-2024-47618 | Sulu | Cross-site Scripting vulnerability in Sulu Sulu is a PHP content management system. | 5.4 |
2024-10-02 | CVE-2024-20438 | Cisco | Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to read or write files on an affected device. This vulnerability exists because of missing authorization controls on some REST API endpoints. | 5.4 |
2024-10-02 | CVE-2024-20442 | Cisco | Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller A vulnerability in the REST API endpoints of Cisco Nexus Dashboard could allow an authenticated, low-privileged, remote attacker to perform limited Administrator actions on an affected device. This vulnerability is due to insufficient authorization controls on some REST API endpoints. | 5.4 |
2024-10-02 | CVE-2024-20477 | Cisco | Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to upload or delete files on an affected device. This vulnerability exists because of missing authorization controls on the affected REST API endpoint. | 5.4 |
2024-10-02 | CVE-2024-33209 | Flatpress | Cross-site Scripting vulnerability in Flatpress 1.3 FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). | 5.4 |
2024-10-02 | CVE-2024-8282 | Vowelweb | Cross-site Scripting vulnerability in Vowelweb Ibtana The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ attribute within the 'wp:ive/ive-productscarousel' Gutenberg block in all versions up to, and including, 1.2.4.4 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-02 | CVE-2024-8505 | Connekthq | Cross-site Scripting vulnerability in Connekthq Ajax Load More The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘button_label’ parameter in all versions up to, and including, 7.1.2 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-02 | CVE-2024-8967 | Iworks | Cross-site Scripting vulnerability in Iworks PWA The PWA — easy way to Progressive Web App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.3 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-02 | CVE-2024-9172 | Kraftplugins | Cross-site Scripting vulnerability in Kraftplugins Demo Importer Plus The Demo Importer Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.0.1 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-01 | CVE-2024-47523 | Librenms | Cross-site Scripting vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 5.4 |
2024-10-01 | CVE-2024-47525 | Librenms | Cross-site Scripting vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 5.4 |
2024-10-01 | CVE-2024-47527 | Librenms | Cross-site Scripting vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 5.4 |
2024-10-01 | CVE-2024-8107 | Themepunch | Cross-site Scripting vulnerability in Themepunch Slider Revolution The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.7.18 due to insufficient input sanitization and output escaping. | 5.4 |
2024-10-01 | CVE-2024-47396 | Moveaddons | Cross-site Scripting vulnerability in Moveaddons Move Addons for Elementor Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.3. | 5.4 |
2024-09-30 | CVE-2024-47172 | Cvat | Incorrect Authorization vulnerability in Cvat Computer Vision Annotation Tool Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. | 5.4 |
2024-09-30 | CVE-2024-8239 | Squirrly | Cross-site Scripting vulnerability in Squirrly Starbox The Starbox WordPress plugin before 3.5.3 does not properly render social media profiles URLs in certain contexts, like the malicious user's profile or pages where the starbox shortcode is used, which may be abused by users with at least the contributor role to conduct Stored XSS attacks. | 5.4 |
2024-09-30 | CVE-2024-8536 | Dotcamp | Cross-site Scripting vulnerability in Dotcamp Ultimate Blocks The Ultimate Blocks WordPress plugin before 3.2.2 does not validate and escape some of its block attributes before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks | 5.4 |
2024-10-04 | CVE-2024-9410 | ADA | Server-Side Request Forgery (SSRF) vulnerability in ADA Ada.cx's Sentry configuration allowed for blind server-side request forgeries (SSRF) through the use of a data scraping endpoint. | 5.3 |
2024-10-03 | CVE-2024-8508 | Nlnetlabs Debian | Improper Validation of Specified Quantity in Input vulnerability in multiple products NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling replies with very large RRsets that it needs to perform name compression for. | 5.3 |
2024-10-02 | CVE-2024-20513 | Cisco | Authorization Bypass Through User-Controlled Key vulnerability in Cisco products A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition for targeted users of the AnyConnect service on an affected device. This vulnerability is due to insufficient entropy for handlers that are used during SSL VPN session establishment. | 5.3 |
2024-10-01 | CVE-2024-9398 | Mozilla | Unspecified vulnerability in Mozilla Firefox By checking the result of calls to `window.open` with specifically set protocol handlers, an attacker could determine if the application which implements that protocol handler is installed. | 5.3 |
2024-10-01 | CVE-2024-8430 | The Spice Starter Sites plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the spice_starter_sites_importer_creater function in all versions up to, and including, 1.2.5. | 5.3 | |
2024-09-30 | CVE-2024-47178 | Expressjs | Unspecified vulnerability in Expressjs Basic-Auth-Connect basic-auth-connect is Connect's Basic Auth middleware in its own module. | 5.3 |
2024-10-05 | CVE-2024-9528 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via form label fields in all versions up to, and including, 5.1.19 due to insufficient input sanitization and output escaping. | 4.9 | |
2024-09-30 | CVE-2024-8453 | Planet | Use of a One-Way Hash without a Salt vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology use an insecure hashing function to hash user passwords without being salted. | 4.9 |
2024-09-30 | CVE-2024-8459 | Planet | Cleartext Storage of Sensitive Information vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology store SNMPv3 users' passwords in plaintext within the configuration files, allowing remote attackers with administrator privileges to read the file and obtain the credentials. | 4.9 |
2024-10-05 | CVE-2024-47383 | Webangon | Cross-site Scripting vulnerability in Webangon the Pack Elementor Addons Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webangon The Pack Elementor addons allows Stored XSS.This issue affects The Pack Elementor addons: from n/a through 2.0.8.8. | 4.8 |
2024-10-05 | CVE-2024-47840 | Wikimedia | Cross-site Scripting vulnerability in Wikimedia Apex Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Apex skin allows Stored XSS.This issue affects Mediawiki - Apex skin: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2. | 4.8 |
2024-10-04 | CVE-2024-25694 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.8.1/10.9/10.9.1 There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise versions 10.8.1 – 10.9.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the Layer Showcase application configuration which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 4.8 |
2024-10-04 | CVE-2024-25701 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Experience Builder versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the Experience Builder Embed widget which when loaded could potentially execute arbitrary JavaScript code in the victim’s browser. | 4.8 |
2024-10-04 | CVE-2024-25702 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Sites versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the site configuration which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser. | 4.8 |
2024-10-04 | CVE-2024-25707 | Esri | Cross-site Scripting vulnerability in Esri Portal for Arcgis There is a reflected cross site scripting in Esri Portal for ArcGIS 11.1 and below on Windows and Linux x64 allows a remote authenticated attacker with administrative access to supply a crafted string which could potentially execute arbitrary JavaScript code in the their own browser (Self XSS). | 4.8 |
2024-10-04 | CVE-2024-9306 | Wpbookingcalendar | Cross-site Scripting vulnerability in Wpbookingcalendar WP Booking Calendar The WP Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 10.6 due to insufficient input sanitization and output escaping. | 4.8 |
2024-10-01 | CVE-2024-47524 | Librenms | Cross-site Scripting vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 4.8 |
2024-10-01 | CVE-2024-47528 | Librenms | Unspecified vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 4.8 |
2024-10-01 | CVE-2024-31835 | Flatpress | Cross-site Scripting vulnerability in Flatpress Cross Site Scripting vulnerability in flatpress CMS Flatpress v1.3 allows a remote attacker to execute arbitrary code via a crafted payload to the file name parameter. | 4.8 |
2024-09-30 | CVE-2024-45073 | IBM | Cross-site Scripting vulnerability in IBM Websphere Application Server 8.5/9.0 IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to stored cross-site scripting. | 4.8 |
2024-09-30 | CVE-2024-8457 | Planet | Cross-site Scripting vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware Certain switch models from PLANET Technology have a web application that does not properly validate specific parameters, allowing remote authenticated users with administrator privileges to inject arbitrary JavaScript, leading to Stored XSS attack. | 4.8 |
2024-09-30 | CVE-2024-3635 | Radiustheme | Cross-site Scripting vulnerability in Radiustheme the Post Grid The Post Grid WordPress plugin before 7.5.0 does not sanitise and escape some of its Grid settings, which could allow high privilege users such as Editor and above to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). | 4.8 |
2024-09-30 | CVE-2024-8283 | 10Web | Cross-site Scripting vulnerability in 10Web Slider The Slider by 10Web WordPress plugin before 1.2.59 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). | 4.8 |
2024-09-30 | CVE-2024-9158 | Tenable | Cross-site Scripting vulnerability in Tenable Nessus Network Monitor A stored cross site scripting vulnerability exists in Nessus Network Monitor where an authenticated, privileged local attacker could inject arbitrary code into the NNM UI via the local CLI. | 4.6 |
2024-10-04 | CVE-2024-8520 | Ultimatemember | Cross-Site Request Forgery (CSRF) vulnerability in Ultimatemember Ultimate Member The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.6. | 4.3 |
2024-10-04 | CVE-2024-44207 | Apple | Unspecified vulnerability in Apple Iphone OS This issue was addressed with improved checks. | 4.3 |
2024-10-02 | CVE-2024-47803 | Jenkins | Information Exposure Through an Error Message vulnerability in Jenkins Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field. | 4.3 |
2024-10-02 | CVE-2024-47804 | Jenkins | Unspecified vulnerability in Jenkins If an attempt is made to create an item of a type prohibited by `ACL#hasCreatePermission2` or `TopLevelItemDescriptor#isApplicableIn(ItemGroup)` through the Jenkins CLI or the REST API and either of these checks fail, Jenkins 2.478 and earlier, LTS 2.462.2 and earlier creates the item in memory, only deleting it from disk, allowing attackers with Item/Configure permission to save the item to persist it, effectively bypassing the item creation restriction. | 4.3 |
2024-10-01 | CVE-2024-8675 | The Soumettre.fr plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the soumettre_disconnect_gateway function in all versions up to, and including, 2.1.2. | 4.3 |
4 Low Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2024-10-04 | CVE-2024-9513 | Netadmin | Information Exposure Through Discrepancy vulnerability in Netadmin IAM A vulnerability was found in Netadmin Software NetAdmin IAM up to 3.5 and classified as problematic. | 3.7 |
2024-09-30 | CVE-2024-47531 | Clinical Genomics | Improper Encoding or Escaping of Output vulnerability in Clinical-Genomics Scout Scout is a web-based visualizer for VCF-files. | 3.5 |
2024-10-02 | CVE-2024-24122 | Wondershare | Unspecified vulnerability in Wondershare Edraw 3.2.2 A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script. | 3.3 |
2024-10-01 | CVE-2024-47526 | Librenms | Unspecified vulnerability in Librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. | 2.4 |