Weekly Vulnerabilities Reports > September 30 to October 6, 2024

Overview

289 new vulnerabilities reported during this period, including 29 critical vulnerabilities and 91 high severity vulnerabilities. This weekly summary report vulnerabilities in 197 products from 123 vendors including Cisco, Dlink, Esri, Planet, and Randygaul. Vulnerabilities are notably categorized as "Cross-site Scripting", "Out-of-bounds Write", "Classic Buffer Overflow", "SQL Injection", and "Missing Authorization".

  • 252 reported vulnerabilities are remotely exploitables.
  • 138 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
  • 148 reported vulnerabilities are exploitable by an anonymous user.
  • Cisco has the most reported vulnerabilities, with 32 reported vulnerabilities.
  • Cisco has the most reported critical vulnerabilities, with 4 reported vulnerabilities.

TOTAL
VULNERABILITIES
CRITICAL RISK
VULNERABILITIES
HIGH RISK
VULNERABILITIES
MEDIUM RISK
VULNERABILITIES
LOW RISK
VULNERABILITIES
REMOTELY
EXPLOITABLE
LOCALLY
EXPLOITABLE
EXPLOIT
AVAILABLE
EXPLOITABLE
ANONYMOUSLY
AFFECTING
WEB APPLICATION

Vulnerability Details

The following table list reported vulnerabilities for the period covered by this report:

Expand/Hide

29 Critical Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2024-10-05 CVE-2024-47849 Mediawiki SQL Injection vulnerability in Mediawiki Cargo 3.6.0

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.

9.8
2024-10-04 CVE-2024-43685 Microchip Improper Authentication vulnerability in Microchip Timeprovider 4100 Firmware

Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

9.8
2024-10-04 CVE-2024-47656 Shilpisoft Improper Restriction of Excessive Authentication Attempts vulnerability in Shilpisoft Client Dashboard

This vulnerability exists in Shilpi Client Dashboard due to missing restrictions for incorrect login attempts on its API based login.

9.8
2024-10-03 CVE-2024-43699 Deltaww SQL Injection vulnerability in Deltaww Diaenergie

Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script AM_RegReport.aspx.

9.8
2024-10-03 CVE-2024-41593 Draytek Out-of-bounds Write vulnerability in Draytek products

DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_dns(), because a byte sign-extension operation occurs for the length argument of a _memcpy call, leading to a heap-based Buffer Overflow.

9.8
2024-10-03 CVE-2024-7824 Webroot Type Confusion vulnerability in Webroot Secureanywhere web Shield

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3.

9.8
2024-10-03 CVE-2024-7825 Webroot Type Confusion vulnerability in Webroot Secureanywhere web Shield

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3.

9.8
2024-10-03 CVE-2024-7826 Webroot Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot Secureanywhere web Shield

Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrURL.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3.

9.8
2024-10-03 CVE-2024-9460 Codezips SQL Injection vulnerability in Codezips Online Shopping Portal 1.0

A vulnerability was found in Codezips Online Shopping Portal 1.0.

9.8
2024-10-02 CVE-2024-45519 Zimbra Unspecified vulnerability in Zimbra Collaboration

The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands.

9.8
2024-10-02 CVE-2024-24117 Ruijie Incorrect Permission Assignment for Critical Resource vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736)

Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to gain privileges via the login check state component.

9.8
2024-10-02 CVE-2024-24116 Ruijie Unspecified vulnerability in Ruijie Rg-Nbs2009G-P Firmware 10.4(1)P2Release(9736)

An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.

9.8
2024-10-02 CVE-2024-9429 Code Projects SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0

A vulnerability has been found in code-projects Restaurant Reservation System 1.0 and classified as critical.

9.8
2024-10-01 CVE-2024-45999 Magicbug SQL Injection vulnerability in Magicbug Cloudlog

A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /application/models/Oqrs_model.php.

9.8
2024-10-01 CVE-2024-47608 Definetlynotai OS Command Injection vulnerability in Definetlynotai Logicytics

Logicytics is designed to harvest and collect data for forensic analysis.

9.8
2024-10-01 CVE-2024-9265 Coderevolution Unspecified vulnerability in Coderevolution Echo RSS Feed Post Generator

The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 5.4.6.

9.8
2024-10-01 CVE-2024-9289 Redefiningtheweb Missing Authentication for Critical Function vulnerability in Redefiningtheweb Affiliate PRO

The WordPress & WooCommerce Affiliate Program plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 8.4.1.

9.8
2024-10-01 CVE-2024-9106 The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.3.0.
9.8
2024-10-01 CVE-2024-9108 The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'convert_remoteimage_to_local' function in versions up to, and including, 1.3.0.
9.8
2024-10-01 CVE-2024-9360 Code Projects SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0

A vulnerability was found in code-projects Restaurant Reservation System 1.0.

9.8
2024-10-01 CVE-2024-9359 Code Projects SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0

A vulnerability was found in code-projects Restaurant Reservation System 1.0 and classified as critical.

9.8
2024-09-30 CVE-2024-8456 Planet Missing Authentication for Critical Function vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology lack proper access control in firmware upload and download functionality, allowing unauthenticated remote attackers to download and upload firmware and system configurations, ultimately gaining full control of the devices.

9.8
2024-09-30 CVE-2024-8450 Planet Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have a Hard-coded community string in the SNMPv1 service, allowing unauthorized remote attackers to use this community string to access the SNMPv1 service with read-write privileges.

9.8
2024-10-02 CVE-2024-20518 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user.

9.1
2024-10-02 CVE-2024-20519 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user.

9.1
2024-10-02 CVE-2024-20520 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user.

9.1
2024-10-02 CVE-2024-20521 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user.

9.1
2024-10-02 CVE-2024-35293 An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or erase the affected devices resulting in data loss and/or a DoS.
9.1
2024-10-01 CVE-2023-3441 Gitlab Unspecified vulnerability in Gitlab

An issue has been discovered in GitLab EE/CE affecting all versions starting from 8.0 before 16.4.

9.1

91 High Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2024-10-06 CVE-2024-9561 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9562 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability classified as critical was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9560 Esafenet SQL Injection vulnerability in Esafenet CDG 5

A vulnerability was found in ESAFENET CDG V5.

8.8
2024-10-06 CVE-2024-9559 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9558 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical.

8.8
2024-10-06 CVE-2024-9557 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical.

8.8
2024-10-06 CVE-2024-9556 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9555 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability, which was classified as critical, has been found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9553 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9551 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9552 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9550 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-06 CVE-2024-9549 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical.

8.8
2024-10-05 CVE-2024-9534 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-05 CVE-2024-9535 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-05 CVE-2024-9533 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical.

8.8
2024-10-05 CVE-2024-9532 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical.

8.8
2024-10-05 CVE-2024-47846 Mediawiki Cross-Site Request Forgery (CSRF) vulnerability in Mediawiki Cargo 3.6.0

Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross Site Request Forgery.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.

8.8
2024-10-04 CVE-2024-37868 Emiloimagtolis Unrestricted Upload of File with Dangerous Type vulnerability in Emiloimagtolis Online Discussion Forum 1.0

File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "sendreply.php" file, and the uploaded file was received using the "$- FILES" variable.

8.8
2024-10-04 CVE-2024-37869 Emiloimagtolis Unrestricted Upload of File with Dangerous Type vulnerability in Emiloimagtolis Online Discussion Forum 1.0

File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "poster.php" file, and the uploaded file was received using the "$- FILES" variable

8.8
2024-10-04 CVE-2024-43684 Microchip Cross-Site Request Forgery (CSRF) vulnerability in Microchip Timeprovider 4100 Firmware

Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0.

8.8
2024-10-04 CVE-2024-9054 Microchip OS Command Injection vulnerability in Microchip Timeprovider 4100 Firmware

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Microchip TimeProvider 4100 (Configuration modules) allows Command Injection.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

8.8
2024-10-04 CVE-2024-9514 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-04 CVE-2024-9515 Dlink Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.

8.8
2024-10-04 CVE-2024-47655 Shilpisoft Unrestricted Upload of File with Dangerous Type vulnerability in Shilpisoft Client Dashboard

This vulnerability exists in the Shilpi Client Dashboard due to improper validation of files being uploaded other than the specified extension.

8.8
2024-10-03 CVE-2024-42417 Deltaww SQL Injection vulnerability in Deltaww Diaenergie

Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script Handler_CFG.ashx.

8.8
2024-10-02 CVE-2024-20393 Cisco Unspecified vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability exists because the web-based management interface discloses sensitive information.

8.8
2024-10-02 CVE-2024-20432 Cisco Command Injection vulnerability in Cisco Nexus Dashboard Fabric Controller

A vulnerability in the REST API and web UI of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to perform a command injection attack against an affected device.   This vulnerability is due to improper user authorization and insufficient validation of command arguments.

8.8
2024-10-02 CVE-2024-20449 Cisco Path Traversal vulnerability in Cisco Nexus Dashboard Fabric Controller

A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, remote attacker with low privileges to execute arbitrary code on an affected device. This vulnerability is due to improper path validation.

8.8
2024-10-02 CVE-2024-7855 The WP Hotel Booking plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_review() function in all versions up to, and including, 2.1.2.
8.8
2024-10-01 CVE-2024-9018 Plugingarden SQL Injection vulnerability in Plugingarden WP Easy Gallery

The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘key’ parameter in all versions up to, and including, 4.8.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

8.8
2024-10-01 CVE-2024-7432 Ultrapress Deserialization of Untrusted Data vulnerability in Ultrapress Unseen Blog

The Unseen Blog theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.0 via deserialization of untrusted input.

8.8
2024-10-01 CVE-2024-7433 Ultrapress Deserialization of Untrusted Data vulnerability in Ultrapress Empowerment

The Empowerment theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.2 via deserialization of untrusted input.

8.8
2024-10-01 CVE-2024-7434 Ultrapress Deserialization of Untrusted Data vulnerability in Ultrapress

The UltraPress theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.2.1 via deserialization of untrusted input.

8.8
2024-09-30 CVE-2024-8458 Planet Cross-Site Request Forgery (CSRF) vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CSRF).

8.8
2024-09-30 CVE-2024-8448 Planet Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have a hard-coded credential in the specific command-line interface, allowing remote attackers with regular privilege to log in with this credential and obtain a Linux root shell.

8.8
2024-10-02 CVE-2024-20448 Cisco Cleartext Storage of Sensitive Information vulnerability in Cisco Nexus Dashboard Fabric Controller

A vulnerability in the Cisco Nexus Dashboard Fabric Controller (NDFC) software, formerly Cisco Data Center Network Manager (DCNM), could allow an attacker with access to a backup file to view sensitive information. This vulnerability is due to the improper storage of sensitive information within config only and full backup files.

8.6
2024-10-02 CVE-2024-20490 Cisco Information Exposure Through Log Files vulnerability in Cisco products

A vulnerability in a logging function of Cisco Nexus Dashboard Fabric Controller (NDFC) and Cisco Nexus Dashboard Orchestrator (NDO) could allow an attacker with access to a tech support file to view sensitive information. This vulnerability exists because HTTP proxy credentials could be recorded in an internal log that is stored in the tech support file.

8.6
2024-10-02 CVE-2024-20491 Cisco Information Exposure Through Log Files vulnerability in Cisco products

A vulnerability in a logging function of Cisco Nexus Dashboard Insights could allow an attacker with access to a tech support file to view sensitive information. This vulnerability exists because remote controller credentials are recorded in an internal log that is stored in the tech support file.

8.6
2024-10-05 CVE-2024-47845 Wikimedia Improper Encoding or Escaping of Output vulnerability in Wikimedia Wikimedia-Extensions-Css

Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.

8.2
2024-10-03 CVE-2023-37822 Eufy Insufficient Entropy vulnerability in Eufy Homebase 2 Firmware

The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network.

8.2
2024-10-01 CVE-2024-9341 Containers
Redhat
A flaw was found in Go.
8.2
2024-10-04 CVE-2024-47183 Parseplatform Incorrect Authorization vulnerability in Parseplatform Parse Server

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js.

8.1
2024-10-04 CVE-2024-47768 Lifplatforms Missing Authorization vulnerability in Lifplatforms LIF Authentication Server

Lif Authentication Server is a server used by Lif to do various tasks regarding Lif accounts.

8.1
2024-10-04 CVE-2024-47652 Shilpisoft Unspecified vulnerability in Shilpisoft Client Dashboard

This vulnerability exists in Shilpi Client Dashboard due to implementation of inadequate authentication mechanism in the login module wherein access to any users account is granted with just their corresponding mobile number.

8.1
2024-10-01 CVE-2024-8548 The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on several functions in all versions up to, and including, 1.6.6.
8.1
2024-09-30 CVE-2024-45772 Apache Deserialization of Untrusted Data vulnerability in Apache Lucene

Deserialization of Untrusted Data vulnerability in Apache Lucene Replicator. This issue affects Apache Lucene's replicator module: from 4.4.0 before 9.12.0. The deprecated org.apache.lucene.replicator.http package is affected. The org.apache.lucene.replicator.nrt package is not affected. Users are recommended to upgrade to version 9.12.0, which fixes the issue. The deserialization can only be triggered if users actively deploy an network-accessible implementation and a corresponding client using a HTTP library that uses the API (e.g., a custom servlet and HTTPClient).

8.0
2024-10-03 CVE-2024-36474 Gnome Integer Overflow or Wraparound vulnerability in Gnome Libgsf 1.14.52

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52.

7.8
2024-10-03 CVE-2024-42415 Gnome Unspecified vulnerability in Gnome Libgsf 1.14.52

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf).

7.8
2024-10-03 CVE-2024-47134 Electronics Jtekt Out-of-bounds Write vulnerability in Electronics.Jtekt Kostac PLC Programming Software

Out-of-bounds write vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier.

7.8
2024-10-03 CVE-2024-47135 Jtekt Out-of-bounds Write vulnerability in Jtekt Kostac PLC 1.6.10.0/1.6.11.0/1.6.9.0

Stack-based buffer overflow vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier.

7.8
2024-10-03 CVE-2024-47136 Jtekt Out-of-bounds Read vulnerability in Jtekt Kostac PLC 1.6.10.0/1.6.11.0/1.6.9.0

Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier.

7.8
2024-10-02 CVE-2024-44193 Apple Unspecified vulnerability in Apple Itunes

A logic issue was addressed with improved restrictions.

7.8
2024-10-01 CVE-2024-46258 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_load_png_mem() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46259 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_unfilter() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46261 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_make32() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46263 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a stack overflow via the cp_dynamic() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46264 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_find() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46267 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_block() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46274 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_stored() function at cute_png.h.

7.8
2024-10-01 CVE-2024-46276 Randygaul Out-of-bounds Write vulnerability in Randygaul Cute PNG 1.05

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_chunk() function at cute_png.h.

7.8
2024-09-30 CVE-2024-7670 Autodesk Out-of-bounds Read vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an Out-of-Bounds Read.

7.8
2024-09-30 CVE-2024-7671 Autodesk Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write.

7.8
2024-09-30 CVE-2024-7672 Autodesk Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write.

7.8
2024-09-30 CVE-2024-7673 Autodesk Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow.

7.8
2024-09-30 CVE-2024-7674 Autodesk Out-of-bounds Write vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow.

7.8
2024-09-30 CVE-2024-7675 Autodesk Use After Free vulnerability in Autodesk Navisworks 2025/2025.1/2025.2

A maliciously crafted DWF file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Use-After-Free.

7.8
2024-10-05 CVE-2024-47841 Wikimedia Path Traversal vulnerability in Wikimedia Wikimedia-Extensions-Css

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue affects Mediawiki - CSS Extension: from 1.42.X before 1.42.2, from 1.41.X before 1.41.3, from 1.39.X before 1.39.9.

7.5
2024-10-04 CVE-2024-38040 Esri Unspecified vulnerability in Esri Portal for Arcgis

There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2.

7.5
2024-10-04 CVE-2024-47769 Idurarapp Relative Path Traversal vulnerability in Idurarapp Idurar

IDURAR is open source ERP CRM accounting invoicing software.

7.5
2024-10-04 CVE-2024-47654 Shilpisoft Unspecified vulnerability in Shilpisoft Client Dashboard

This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint.

7.5
2024-10-04 CVE-2024-6400 Finrota Cleartext Storage of Sensitive Information vulnerability in Finrota

Cleartext Storage of Sensitive Information vulnerability in Finrota Netahsilat allows Retrieve Embedded Sensitive Data.This issue solved in versions 1.21.10, 1.23.01, 1.23.08, 1.23.11 and 1.24.03.

7.5
2024-10-03 CVE-2024-41594 Draytek Inadequate Encryption Strength vulnerability in Draytek products

An issue in DrayTek Vigor310 devices through 4.3.2.6 allows an attacker to obtain sensitive information because the httpd server of the Vigor management UI uses a static string for seeding the PRNG of OpenSSL.

7.5
2024-10-03 CVE-2024-8352 Hypestudio Path Traversal vulnerability in Hypestudio Social web Suite

The Social Web Suite – Social Media Auto Post, Social Media Auto Publish plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.1.11 via the download_log function.

7.5
2024-10-02 CVE-2024-20498 Cisco Double Free vulnerability in Cisco products

Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session.

7.5
2024-10-02 CVE-2024-20499 Cisco Out-of-bounds Write vulnerability in Cisco products

Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session.

7.5
2024-10-02 CVE-2024-20500 Cisco Resource Exhaustion vulnerability in Cisco products

A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. This vulnerability is due to insufficient resource management when establishing TLS/SSL sessions.

7.5
2024-10-02 CVE-2024-20501 Cisco Out-of-bounds Write vulnerability in Cisco products

Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in the AnyConnect service on an affected device. These vulnerabilities are due to insufficient validation of client-supplied parameters while establishing an SSL VPN session.

7.5
2024-10-02 CVE-2024-20502 Cisco Resource Exhaustion vulnerability in Cisco products

A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to insufficient resource management while establishing SSL VPN sessions.

7.5
2024-10-02 CVE-2024-47805 Jenkins Insufficiently Protected Credentials vulnerability in Jenkins Credentials

Jenkins Credentials Plugin 1380.va_435002fa_924 and earlier, except 1371.1373.v4eb_fa_b_7161e9, does not redact encrypted values of credentials using the `SecretBytes` type when accessing item `config.xml` via REST API or CLI.

7.5
2024-10-01 CVE-2024-9393 Mozilla Unspecified vulnerability in Mozilla Firefox

An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin.

7.5
2024-10-01 CVE-2024-9394 Mozilla Unspecified vulnerability in Mozilla Firefox

An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin.

7.5
2024-10-01 CVE-2024-9399 Mozilla Unspecified vulnerability in Mozilla Thunderbird

A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a denial of service condition.

7.5
2024-09-30 CVE-2024-8454 Planet Resource Exhaustion vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

The swctrl service is used to detect and remotely manage PLANET Technology devices.

7.5
2024-09-30 CVE-2024-8451 Planet Improper Handling of Insufficient Permissions or Privileges vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing unauthorized remote attackers to exploit this weakness to occupy connection slots and prevent legitimate users from accessing the SSH service.

7.5
2024-09-30 CVE-2024-8452 Planet Reversible One-Way Hash vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology only support obsolete algorithms for authentication protocol and encryption protocol in the SNMPv3 service, allowing attackers to obtain plaintext SNMPv3 credentials potentially.

7.5
2024-10-02 CVE-2024-20365 Cisco Command Injection vulnerability in Cisco Unified Computing System

A vulnerability in the Redfish API of Cisco UCS B-Series, Cisco UCS Managed C-Series, and Cisco UCS X-Series Servers could allow an authenticated, remote attacker with administrative privileges to perform command injection attacks on an affected system and elevate privileges to root. This vulnerability is due to insufficient input validation.

7.2
2024-10-02 CVE-2024-20470 Cisco Unspecified vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device.

7.2
2024-10-01 CVE-2024-7869 The 123.chat - Video Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping.
7.2
2024-09-30 CVE-2024-8379 Stylemixthemes SQL Injection vulnerability in Stylemixthemes Cost Calculator Builder

The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as Admin.

7.2
2024-10-01 CVE-2024-8981 The Broken Link Checker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg in /app/admin-notices/features/class-view.php without appropriate escaping on the URL in all versions up to, and including, 2.4.0.
7.1

165 Medium Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2024-10-05 CVE-2024-8743 The Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 6.5.7.
6.8
2024-10-02 CVE-2024-20516 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition.

6.8
2024-10-02 CVE-2024-20517 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition.

6.8
2024-10-02 CVE-2024-20522 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition.

6.8
2024-10-02 CVE-2024-20523 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition.

6.8
2024-10-02 CVE-2024-20524 Cisco Out-of-bounds Write vulnerability in Cisco products

A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected device, resulting in a denial of service (DoS) condition.

6.8
2024-09-30 CVE-2024-8449 Planet Use of Hard-coded Credentials vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any user's password.

6.8
2024-10-02 CVE-2024-20492 Cisco Command Injection vulnerability in Cisco Telepresence Video Communication Server

A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root.

6.7
2024-10-05 CVE-2024-9161 Rankmath Missing Authorization vulnerability in Rankmath SEO

The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'update_metadata' function in all versions up to, and including, 1.0.228.

6.5
2024-10-04 CVE-2024-7801 Microchip SQL Injection vulnerability in Microchip Timeprovider 4100 Firmware

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip TimeProvider 4100 (Data plot modules) allows SQL Injection.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

6.5
2024-10-04 CVE-2024-47653 Shilpisoft Unspecified vulnerability in Shilpisoft Client Dashboard

This vulnerability exists in Shilpi Client Dashboard due to lack of authorization for modification and cancellation requests through certain API endpoints.

6.5
2024-10-04 CVE-2024-47657 Shilpisoft Authorization Bypass Through User-Controlled Key vulnerability in Shilpisoft NET Back Office

This vulnerability exists in the Shilpi Net Back Office due to improper access controls on certain API endpoints.

6.5
2024-10-04 CVE-2024-47651 Shilpi Unspecified vulnerability in Shilpi Client Dashboard

This vulnerability exists in Shilpi Client Dashboard due to improper handling of multiple parameters in the API endpoint.

6.5
2024-10-04 CVE-2024-6444 Zephyrproject Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01

No proper validation of the length of user input in olcp_ind_handler in zephyr/subsys/bluetooth/services/ots/ots_client.c.

6.5
2024-10-04 CVE-2024-6442 Zephyrproject Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01

In ascs_cp_rsp_add in /subsys/bluetooth/audio/ascs.c, an unchecked tailroom could lead to a global buffer overflow.

6.5
2024-10-04 CVE-2024-6443 Zephyrproject Out-of-bounds Write vulnerability in Zephyrproject Zephyr 3.2.01

In utf8_trunc in zephyr/lib/utils/utf8.c, last_byte_p can point to one byte before the string pointer if the string is empty.

6.5
2024-10-02 CVE-2024-46977 Openc3 Path Traversal vulnerability in Openc3 Cosmos

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems.

6.5
2024-10-02 CVE-2024-47529 Openc3 Unspecified vulnerability in Openc3 Cosmos

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems.

6.5
2024-10-02 CVE-2024-20441 Cisco Unspecified vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller

A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to learn sensitive information on an affected device. This vulnerability is due to insufficient authorization controls on the affected REST API endpoint.

6.5
2024-10-02 CVE-2024-20515 Cisco Missing Encryption of Sensitive Data vulnerability in Cisco Identity Services Engine

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information from an affected device. This vulnerability is due to a lack of proper data protection mechanisms for certain configuration settings.

6.5
2024-10-02 CVE-2024-35294 An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials.
6.5
2024-10-01 CVE-2024-9224 KAU Boys Path Traversal vulnerability in Kau-Boys Hello World

The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function.

6.5
2024-10-01 CVE-2024-8632 The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'kbs_ajax_load_front_end_replies' and 'kbs_ajax_mark_reply_as_read' functions in all versions up to, and including, 1.6.6.
6.5
2024-09-30 CVE-2024-47532 Zope Unspecified vulnerability in Zope Restrictedpython

RestrictedPython is a restricted execution environment for Python to run untrusted code.

6.5
2024-10-05 CVE-2024-8486 The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in the Modern Heading and Icon Picker widgets all versions up to, and including, 2.16.3 due to insufficient input sanitization and output escaping.
6.4
2024-10-05 CVE-2024-9455 The WP Cleanup and Basic Functions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping.
6.4
2024-10-03 CVE-2024-8159 Deep Freeze 9.00.020.5760 is vulnerable to an out-of-bounds read vulnerability by triggering the 0x70014 IOCTL code of the FarDisk.sys driver.
6.4
2024-10-01 CVE-2024-9060 The AVIF & SVG Uploader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in version 1.1.0 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-8288 The Guten Post Layout – An Advanced Post Grid Collection for WordPress Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ attribute within the 'wp:guten-post-layout/post-grid' Gutenberg block in all versions up to, and including, 1.2.4 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-8324 The XO Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘get_slider’ function in all versions up to, and including, 3.8.6 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-8720 The RumbleTalk Live Group Chat – HTML5 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rumbletalk-admin-button' shortcode in all versions up to, and including, 6.3.0 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2024-10-01 CVE-2024-8990 The Geo Mashup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's geo_mashup_visible_posts_list shortcode in all versions up to, and including, 1.13.13 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2024-10-01 CVE-2024-9269 The Relogo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 0.4.2 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-9272 The R Animated Icon Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-9274 The Elastik Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 0.27.4 due to insufficient input sanitization and output escaping.
6.4
2024-10-01 CVE-2024-9304 The LocateAndFilter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.14 due to insufficient input sanitization and output escaping.
6.4
2024-10-02 CVE-2024-8254 Icegram Code Injection vulnerability in Icegram Email Subscribers & Newsletters

The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.7.34.

6.3
2024-10-05 CVE-2024-47389 Basixonline Cross-site Scripting vulnerability in Basixonline Nex-Forms

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Basix NEX-Forms – Ultimate Form Builder allows Reflected XSS.This issue affects NEX-Forms – Ultimate Form Builder: from n/a through 8.7.3.

6.1
2024-10-05 CVE-2024-9417 The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to limited file uploads due to a misconfigured file type validation in the 'handleUpload' function in all versions up to, and including, 1.1.9.
6.1
2024-10-05 CVE-2024-47847 Mediawiki Cross-site Scripting vulnerability in Mediawiki Cargo 3.6.0

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross-Site Scripting (XSS).This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.

6.1
2024-10-04 CVE-2024-43683 Microchip Open Redirect vulnerability in Microchip Timeprovider 4100 Firmware

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0.

6.1
2024-10-04 CVE-2024-43686 Microchip Cross-site Scripting vulnerability in Microchip Timeprovider 4100 Firmware

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (data plot modules) allows Reflected XSS.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

6.1
2024-10-04 CVE-2024-43687 Microchip Cross-site Scripting vulnerability in Microchip Timeprovider 4100 Firmware

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (banner config modules) allows Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

6.1
2024-10-04 CVE-2024-25691 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.8.1/10.9.1/11.1

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1, 10.9.1 and 10.8.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

6.1
2024-10-04 CVE-2024-38037 Esri Open Redirect vulnerability in Esri Portal for Arcgis 10.9.1/11.0

There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.0 and 10.9.1 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary website, simplifying phishing attacks.

6.1
2024-10-04 CVE-2024-38038 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.7.1/10.8.1/10.9.1

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1, 10.8.1 and 10.7.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

6.1
2024-10-04 CVE-2024-8148 Esri Open Redirect vulnerability in Esri Portal for Arcgis

There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 10.8.1 - 11.2 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary website, simplifying phishing attacks.

6.1
2024-10-04 CVE-2024-8149 Esri Unspecified vulnerability in Esri Portal for Arcgis 11.1/11.2

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and 11.2 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

6.1
2024-10-04 CVE-2024-47765 Jgniecki Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Jgniecki Minecraft Motd Parser

Minecraft MOTD Parser is a PHP library to parse minecraft server motd.

6.1
2024-10-04 CVE-2024-8499 Themehigh Cross-site Scripting vulnerability in Themehigh Checkout Field Editor

The Checkout Field Editor (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘render_review_request_notice’ function in all versions up to, and including, 2.0.3 due to insufficient input sanitization and output escaping.

6.1
2024-10-04 CVE-2024-9435 Plainware Cross-site Scripting vulnerability in Plainware Shiftcontroller

The ShiftController Employee Shift Scheduling plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URL keys in all versions up to, and including, 4.9.66 due to insufficient input sanitization and output escaping.

6.1
2024-10-04 CVE-2024-47854 Veritas Cross-site Scripting vulnerability in Veritas Data Insight

An XSS vulnerability was discovered in Veritas Data Insight before 7.1.

6.1
2024-10-04 CVE-2024-8802 Clio Cross-site Scripting vulnerability in Clio Grow 1.0/1.0.1/1.0.2

The Clio Grow plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.2.

6.1
2024-10-04 CVE-2024-9204 Nerdpress Cross-site Scripting vulnerability in Nerdpress Smart Custom 404 Error Page

The Smart Custom 404 Error Page plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via $_SERVER['REQUEST_URI'] in all versions up to, and including, 11.4.7 due to insufficient input sanitization and output escaping.

6.1
2024-10-04 CVE-2024-9237 WP Centrics Cross-site Scripting vulnerability in Wp-Centrics Fish and Ships

The Fish and Ships – Most flexible shipping table rate.

6.1
2024-10-04 CVE-2024-9345 Tychesoftwares Cross-site Scripting vulnerability in Tychesoftwares Product Delivery Date for Woocommerce

The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.7.3.

6.1
2024-10-04 CVE-2024-9349 Michaeluno Cross-site Scripting vulnerability in Michaeluno Auto Amazon Links

The Auto Amazon Links – Amazon Associates Affiliate Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 5.4.2.

6.1
2024-10-04 CVE-2024-9353 Themes4Wp Cross-site Scripting vulnerability in Themes4Wp Popularis Extra

The Popularis Extra plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.2.6.

6.1
2024-10-04 CVE-2024-9375 Techbanker Cross-site Scripting vulnerability in Techbanker Captcha Bank

The WordPress Captcha Plugin by Captcha Bank plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 4.0.36.

6.1
2024-10-04 CVE-2024-9384 Wpfactory Cross-site Scripting vulnerability in Wpfactory Quantity Dynamic Pricing & Bulk Discounts for Woocommerce

The Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.8.0.

6.1
2024-10-03 CVE-2024-41591 Draytek Cross-site Scripting vulnerability in Draytek products

DrayTek Vigor3910 devices through 4.3.2.6 allow unauthenticated DOM-based reflected XSS.

6.1
2024-10-03 CVE-2024-47617 Sulu Cross-site Scripting vulnerability in Sulu 2.5.20/2.6.4

Sulu is a PHP content management system.

6.1
2024-10-02 CVE-2024-43795 Openc3 Cross-site Scripting vulnerability in Openc3 Cosmos

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems.

6.1
2024-10-02 CVE-2024-9440 Slimselectjs Cross-site Scripting vulnerability in Slimselectjs Slim Select

Slim Select 2.0 versions through 2.9.0 are affected by a potential cross-site scripting vulnerability.

6.1
2024-10-02 CVE-2024-9218 Themegrill Cross-site Scripting vulnerability in Themegrill Magazine Blocks

The Magazine Blocks – Blog Designer, Magazine & Newspaper Website Builder, Page Builder with Posts Blocks, Post Grid plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.3.14.

6.1
2024-10-02 CVE-2024-9344 Berqier Cross-site Scripting vulnerability in Berqier Berqwp

The BerqWP – Automated All-In-One PageSpeed Optimization Plugin for Core Web Vitals, Cache, CDN, Images, CSS, and JavaScript plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter in all versions up to, and including, 2.1.1 due to insufficient input sanitization and output escaping.

6.1
2024-10-02 CVE-2024-9378 Icopydoc Cross-site Scripting vulnerability in Icopydoc YML for Yandex Market

The YML for Yandex Market plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 4.7.2 due to insufficient input sanitization and output escaping.

6.1
2024-10-02 CVE-2024-8800 Yoginetwork Cross-site Scripting vulnerability in Yoginetwork Rabbitloader

The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.21.0.

6.1
2024-10-02 CVE-2024-9210 Ibericode Cross-site Scripting vulnerability in Ibericode Mailchimp TOP BAR

The MC4WP: Mailchimp Top Bar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.6.0.

6.1
2024-10-02 CVE-2024-9222 Cozmoslabs Cross-site Scripting vulnerability in Cozmoslabs Membership & Content Restriction - Paid Member Subscriptions

The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.12.8.

6.1
2024-10-02 CVE-2024-9225 Seopress Cross-site Scripting vulnerability in Seopress

The SEOPress – On-site SEO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 8.1.1.

6.1
2024-10-01 CVE-2024-47604 Microsoft Cross-site Scripting vulnerability in Microsoft Nugetgallery

NuGet Gallery is a package repository that powers nuget.org.

6.1
2024-10-01 CVE-2024-9397 Mozilla Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox

A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking.

6.1
2024-10-01 CVE-2024-8793 Visser Cross-site Scripting vulnerability in Visser Store Exporter for Woocommerce

The Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.7.2.1.

6.1
2024-10-01 CVE-2024-8799 Goldplugins Cross-site Scripting vulnerability in Goldplugins Custom Banners

The Custom Banners plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.3.

6.1
2024-10-01 CVE-2024-9209 Cornelraiu Cross-site Scripting vulnerability in Cornelraiu WP Search Analytics

The WP Search Analytics plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.10.

6.1
2024-10-01 CVE-2024-9220 Petershaw Cross-site Scripting vulnerability in Petershaw LH Copy Media File

The LH Copy Media File plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.08.

6.1
2024-10-01 CVE-2024-9228 Duckdev Cross-site Scripting vulnerability in Duckdev Loggedin

The Loggedin – Limit Active Logins plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.3.1.

6.1
2024-10-01 CVE-2024-9241 Contempo Cross-site Scripting vulnerability in Contempo PDF Image Generator

The PDF Image Generator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.5.6.

6.1
2024-10-01 CVE-2024-8718 The Gravity Forms Toolbar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in all versions up to, and including, 1.7.0 due to insufficient input sanitization and output escaping.
6.1
2024-10-01 CVE-2024-8727 The DK PDF plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.9.6.
6.1
2024-10-01 CVE-2024-8728 The Easy Load More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.3.
6.1
2024-10-01 CVE-2024-9267 The Easy WordPress Subscribe – Optin Hound plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.3.
6.1
2024-09-30 CVE-2024-47067 Alist Project Cross-site Scripting vulnerability in Alist Project Alist

AList is a file list program that supports multiple storages.

6.1
2024-09-30 CVE-2024-47530 Clinical Genomics Open Redirect vulnerability in Clinical-Genomics Scout

Scout is a web-based visualizer for VCF-files.

6.1
2024-09-30 CVE-2024-47063 Cvat Cross-site Scripting vulnerability in Cvat Computer Vision Annotation Tool

Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision.

6.1
2024-09-30 CVE-2024-47064 Cvat Improper Neutralization of Script in an Error Message Web Page vulnerability in Cvat Computer Vision Annotation Tool

Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision.

6.1
2024-09-30 CVE-2024-9329 Eclipse Open Redirect vulnerability in Eclipse Glassfish

In Eclipse Glassfish versions before 7.0.17, The Host HTTP parameter could cause the web application to redirect to the specified URL, when the requested endpoint is '/management/domain'.

6.1
2024-10-02 CVE-2024-20509 Cisco Race Condition vulnerability in Cisco products

A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to hijack an AnyConnect VPN session or cause a denial of service (DoS) condition for individual users of the AnyConnect VPN service on an affected device. This vulnerability is due to weak entropy for handlers that are used during the VPN authentication process as well as a race condition that exists in the same process.

5.9
2024-10-02 CVE-2024-20385 Cisco Improper Certificate Validation vulnerability in Cisco Nexus Dashboard Orchestrator

A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated, remote attacker to intercept sensitive information from an affected device.  This vulnerability exists because the Cisco NDO Validate Peer Certificate site management feature validates the certificates for Cisco Application Policy Infrastructure Controller (APIC), Cisco Cloud Network Controller (CNC), and Cisco Nexus Dashboard only when a new site is added or an existing one is reregistered.

5.9
2024-10-01 CVE-2024-9358 Thingsboard Unspecified vulnerability in Thingsboard

A vulnerability has been found in ThingsBoard up to 3.7.0 and classified as problematic.

5.9
2024-09-30 CVE-2024-8455 Planet Inadequate Encryption Strength vulnerability in Planet products

The swctrl service is used to detect and remotely manage PLANET Technology devices.

5.9
2024-10-04 CVE-2024-9481 AVG
Avast
Out-of-bounds Write vulnerability in multiple products

An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed eml file to crash the application during file processing.

5.5
2024-10-04 CVE-2024-9482 AVG
Avast
Out-of-bounds Write vulnerability in multiple products

An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed Mach-O file to crash the application during file processing.

5.5
2024-10-04 CVE-2024-9483 AVG
Avast
NULL Pointer Dereference vulnerability in multiple products

A null-pointer-dereference in the signature verification module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS may allow a malformed xar file to crash the application during processing.

5.5
2024-10-04 CVE-2024-9484 AVG
Avast
NULL Pointer Dereference vulnerability in multiple products

An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed xar file to crash the application during file processing.

5.5
2024-10-04 CVE-2024-44204 Apple Unspecified vulnerability in Apple Iphone OS

A logic issue was addressed with improved validation.

5.5
2024-10-02 CVE-2024-20444 Cisco Argument Injection or Modification vulnerability in Cisco Nexus Dashboard Fabric Controller

A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC), formerly Cisco Data Center Network Manager (DCNM), could allow an authenticated, remote attacker with network-admin privileges to perform a command injection attack against an affected device. &nbsp; This vulnerability is due to insufficient validation of command arguments.

5.5
2024-09-30 CVE-2024-46869 Linux Unspecified vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel_pcie: Allocate memory for driver private data Fix driver not allocating memory for struct btintel_data which is used to store internal data.

5.5
2024-10-06 CVE-2024-47298 Bold Themes Cross-site Scripting vulnerability in Bold-Themes Bold Page Builder

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.This issue affects Bold Page Builder: from n/a through 5.1.1.

5.4
2024-10-06 CVE-2024-47357 Leevio Cross-site Scripting vulnerability in Leevio Happy Addons for Elementor

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Leevio Happy Addons for Elementor allows Stored XSS.This issue affects Happy Addons for Elementor: from n/a through 3.12.0.

5.4
2024-10-06 CVE-2024-47364 Moveaddons Cross-site Scripting vulnerability in Moveaddons Move Addons for Elementor

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Move addons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.4.

5.4
2024-10-06 CVE-2024-47366 Webtechstreet Cross-site Scripting vulnerability in Webtechstreet Elementor Addon Elements

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPVibes Elementor Addon Elements allows Stored XSS.This issue affects Elementor Addon Elements: from n/a through 1.13.6.

5.4
2024-10-05 CVE-2024-47390 Jegtheme Cross-site Scripting vulnerability in Jegtheme JEG Elementor KIT

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jegtheme Jeg Elementor Kit allows Stored XSS.This issue affects Jeg Elementor Kit: from n/a through 2.6.8.

5.4
2024-10-05 CVE-2024-47391 Bold Themes Cross-site Scripting vulnerability in Bold-Themes Bold Page Builder

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.This issue affects Bold Page Builder: from n/a before 5.1.1.

5.4
2024-10-05 CVE-2024-47392 Bdthemes Cross-site Scripting vulnerability in Bdthemes Element Pack

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack Elementor Addons: from n/a through 5.7.5.

5.4
2024-10-05 CVE-2024-47625 Themelooks Cross-site Scripting vulnerability in Themelooks Enter Addons

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XSS.This issue affects Enter Addons: from n/a through 2.1.8.

5.4
2024-10-04 CVE-2024-38036 Esri Unspecified vulnerability in Esri Portal for Arcgis 10.7.1/10.8.1/10.9.1

There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1, 10.8.1 and 10.7.1 which may allow a remote, unauthenticated attacker to create a crafted link which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

5.4
2024-10-04 CVE-2024-38039 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis

There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, authenticated attacker to create a crafted link which when clicked could render arbitrary HTML in the victim’s browser (no stateful change made or customer data rendered).

5.4
2024-10-04 CVE-2024-9071 Sigmadevs Cross-site Scripting vulnerability in Sigmadevs Easy Demo Importer

The Easy Demo Importer – A Modern One-Click Demo Import Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.1.2 due to insufficient input sanitization and output escaping.

5.4
2024-10-04 CVE-2024-9271 Remilia Cross-site Scripting vulnerability in Remilia Re:Wp

The Re:WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping.

5.4
2024-10-04 CVE-2024-8804 Davidartiss Cross-site Scripting vulnerability in Davidartiss Code Embed

The Code Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's script embed functionality in all versions up to, and including, 2.4 due to insufficient restrictions on who can utilize the functionality.

5.4
2024-10-04 CVE-2024-9242 Memberful Cross-site Scripting vulnerability in Memberful

The Memberful – Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'memberful_buy_subscription_link' and 'memberful_podcasts_link' shortcodes in all versions up to, and including, 1.73.7 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2024-10-04 CVE-2024-8519 Ultimatemember Cross-site Scripting vulnerability in Ultimatemember Ultimate Member

The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'um_loggedin' shortcode in all versions up to, and including, 2.8.6 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2024-10-04 CVE-2024-9368 Miguelmello Cross-site Scripting vulnerability in Miguelmello Aggregator Advanced Settings

The Aggregator Advanced Settings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping.

5.4
2024-10-04 CVE-2024-9372 Wpblockshub Cross-site Scripting vulnerability in Wpblockshub WP Blocks HUB

The WP Blocks Hub plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.2 due to insufficient input sanitization and output escaping.

5.4
2024-10-04 CVE-2024-9421 Prontotools Cross-site Scripting vulnerability in Prontotools Login Logout Shortcode

The Login Logout Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'class' parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping.

5.4
2024-10-04 CVE-2024-9445 Acekyd Cross-site Scripting vulnerability in Acekyd Display Medium Posts

The Display Medium Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's display_medium_posts shortcode in all versions up to, and including, 5.0.1 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2024-10-03 CVE-2024-41587 Draytek Cross-site Scripting vulnerability in Draytek products

Stored XSS, by authenticated users, is caused by poor sanitization of the Login Page Greeting message in DrayTek Vigor310 devices through 4.3.2.6.

5.4
2024-10-03 CVE-2024-47618 Sulu Cross-site Scripting vulnerability in Sulu

Sulu is a PHP content management system.

5.4
2024-10-02 CVE-2024-20438 Cisco Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller

A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to read or write files on an affected device. This vulnerability exists because of missing authorization controls on some REST API endpoints.

5.4
2024-10-02 CVE-2024-20442 Cisco Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller

A vulnerability in the REST API endpoints of Cisco Nexus Dashboard could allow an authenticated, low-privileged, remote attacker to perform limited Administrator actions on an affected device. This vulnerability is due to insufficient authorization controls on some REST API endpoints.

5.4
2024-10-02 CVE-2024-20477 Cisco Missing Authorization vulnerability in Cisco Nexus Dashboard and Nexus Dashboard Fabric Controller

A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to upload or delete files on an affected device. This vulnerability exists because of missing authorization controls on the affected REST API endpoint.

5.4
2024-10-02 CVE-2024-33209 Flatpress Cross-site Scripting vulnerability in Flatpress 1.3

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS).

5.4
2024-10-02 CVE-2024-8282 Vowelweb Cross-site Scripting vulnerability in Vowelweb Ibtana

The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ attribute within the 'wp:ive/ive-productscarousel' Gutenberg block in all versions up to, and including, 1.2.4.4 due to insufficient input sanitization and output escaping.

5.4
2024-10-02 CVE-2024-8505 Connekthq Cross-site Scripting vulnerability in Connekthq Ajax Load More

The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘button_label’ parameter in all versions up to, and including, 7.1.2 due to insufficient input sanitization and output escaping.

5.4
2024-10-02 CVE-2024-8967 Iworks Cross-site Scripting vulnerability in Iworks PWA

The PWA — easy way to Progressive Web App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.3 due to insufficient input sanitization and output escaping.

5.4
2024-10-02 CVE-2024-9172 Kraftplugins Cross-site Scripting vulnerability in Kraftplugins Demo Importer Plus

The Demo Importer Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.0.1 due to insufficient input sanitization and output escaping.

5.4
2024-10-01 CVE-2024-47523 Librenms Cross-site Scripting vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

5.4
2024-10-01 CVE-2024-47525 Librenms Cross-site Scripting vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

5.4
2024-10-01 CVE-2024-47527 Librenms Cross-site Scripting vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

5.4
2024-10-01 CVE-2024-8107 Themepunch Cross-site Scripting vulnerability in Themepunch Slider Revolution

The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.7.18 due to insufficient input sanitization and output escaping.

5.4
2024-10-01 CVE-2024-47396 Moveaddons Cross-site Scripting vulnerability in Moveaddons Move Addons for Elementor

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through 1.3.3.

5.4
2024-09-30 CVE-2024-47172 Cvat Incorrect Authorization vulnerability in Cvat Computer Vision Annotation Tool

Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision.

5.4
2024-09-30 CVE-2024-8239 Squirrly Cross-site Scripting vulnerability in Squirrly Starbox

The Starbox WordPress plugin before 3.5.3 does not properly render social media profiles URLs in certain contexts, like the malicious user's profile or pages where the starbox shortcode is used, which may be abused by users with at least the contributor role to conduct Stored XSS attacks.

5.4
2024-09-30 CVE-2024-8536 Dotcamp Cross-site Scripting vulnerability in Dotcamp Ultimate Blocks

The Ultimate Blocks WordPress plugin before 3.2.2 does not validate and escape some of its block attributes before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

5.4
2024-10-04 CVE-2024-9410 ADA Server-Side Request Forgery (SSRF) vulnerability in ADA

Ada.cx's Sentry configuration allowed for blind server-side request forgeries (SSRF) through the use of a data scraping endpoint.

5.3
2024-10-03 CVE-2024-8508 Nlnetlabs
Debian
Improper Validation of Specified Quantity in Input vulnerability in multiple products

NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling replies with very large RRsets that it needs to perform name compression for.

5.3
2024-10-02 CVE-2024-20513 Cisco Authorization Bypass Through User-Controlled Key vulnerability in Cisco products

A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition for targeted users of the AnyConnect service on an affected device. This vulnerability is due to insufficient entropy for handlers that are used during SSL VPN session establishment.

5.3
2024-10-01 CVE-2024-9398 Mozilla Unspecified vulnerability in Mozilla Firefox

By checking the result of calls to `window.open` with specifically set protocol handlers, an attacker could determine if the application which implements that protocol handler is installed.

5.3
2024-10-01 CVE-2024-8430 The Spice Starter Sites plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the spice_starter_sites_importer_creater function in all versions up to, and including, 1.2.5.
5.3
2024-09-30 CVE-2024-47178 Expressjs Unspecified vulnerability in Expressjs Basic-Auth-Connect

basic-auth-connect is Connect's Basic Auth middleware in its own module.

5.3
2024-10-05 CVE-2024-9528 The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via form label fields in all versions up to, and including, 5.1.19 due to insufficient input sanitization and output escaping.
4.9
2024-09-30 CVE-2024-8453 Planet Use of a One-Way Hash without a Salt vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology use an insecure hashing function to hash user passwords without being salted.

4.9
2024-09-30 CVE-2024-8459 Planet Cleartext Storage of Sensitive Information vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology store SNMPv3 users' passwords in plaintext within the configuration files, allowing remote attackers with administrator privileges to read the file and obtain the credentials.

4.9
2024-10-05 CVE-2024-47383 Webangon Cross-site Scripting vulnerability in Webangon the Pack Elementor Addons

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webangon The Pack Elementor addons allows Stored XSS.This issue affects The Pack Elementor addons: from n/a through 2.0.8.8.

4.8
2024-10-05 CVE-2024-47840 Wikimedia Cross-site Scripting vulnerability in Wikimedia Apex

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Apex skin allows Stored XSS.This issue affects Mediawiki - Apex skin: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.

4.8
2024-10-04 CVE-2024-25694 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis 10.8.1/10.9/10.9.1

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise versions 10.8.1 – 10.9.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the Layer Showcase application configuration which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

4.8
2024-10-04 CVE-2024-25701 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Experience Builder versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the Experience Builder Embed widget which when loaded could potentially execute arbitrary JavaScript code in the victim’s browser.

4.8
2024-10-04 CVE-2024-25702 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis

There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Sites versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted link that is stored in the site configuration which when clicked could potentially execute arbitrary JavaScript code in the victim’s browser.

4.8
2024-10-04 CVE-2024-25707 Esri Cross-site Scripting vulnerability in Esri Portal for Arcgis

There is a reflected cross site scripting in Esri Portal for ArcGIS 11.1 and below on Windows and Linux x64 allows a remote authenticated attacker with administrative access to supply a crafted string which could potentially execute arbitrary JavaScript code in the their own browser (Self XSS).

4.8
2024-10-04 CVE-2024-9306 Wpbookingcalendar Cross-site Scripting vulnerability in Wpbookingcalendar WP Booking Calendar

The WP Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 10.6 due to insufficient input sanitization and output escaping.

4.8
2024-10-01 CVE-2024-47524 Librenms Cross-site Scripting vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

4.8
2024-10-01 CVE-2024-47528 Librenms Unspecified vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

4.8
2024-10-01 CVE-2024-31835 Flatpress Cross-site Scripting vulnerability in Flatpress

Cross Site Scripting vulnerability in flatpress CMS Flatpress v1.3 allows a remote attacker to execute arbitrary code via a crafted payload to the file name parameter.

4.8
2024-09-30 CVE-2024-45073 IBM Cross-site Scripting vulnerability in IBM Websphere Application Server 8.5/9.0

IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to stored cross-site scripting.

4.8
2024-09-30 CVE-2024-8457 Planet Cross-site Scripting vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware

Certain switch models from PLANET Technology have a web application that does not properly validate specific parameters, allowing remote authenticated users with administrator privileges to inject arbitrary JavaScript, leading to Stored XSS attack.

4.8
2024-09-30 CVE-2024-3635 Radiustheme Cross-site Scripting vulnerability in Radiustheme the Post Grid

The Post Grid WordPress plugin before 7.5.0 does not sanitise and escape some of its Grid settings, which could allow high privilege users such as Editor and above to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

4.8
2024-09-30 CVE-2024-8283 10Web Cross-site Scripting vulnerability in 10Web Slider

The Slider by 10Web WordPress plugin before 1.2.59 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

4.8
2024-09-30 CVE-2024-9158 Tenable Cross-site Scripting vulnerability in Tenable Nessus Network Monitor

A stored cross site scripting vulnerability exists in Nessus Network Monitor where an authenticated, privileged local attacker could inject arbitrary code into the NNM UI via the local CLI.

4.6
2024-10-04 CVE-2024-8520 Ultimatemember Cross-Site Request Forgery (CSRF) vulnerability in Ultimatemember Ultimate Member

The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.6.

4.3
2024-10-04 CVE-2024-44207 Apple Unspecified vulnerability in Apple Iphone OS

This issue was addressed with improved checks.

4.3
2024-10-02 CVE-2024-47803 Jenkins Information Exposure Through an Error Message vulnerability in Jenkins

Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field.

4.3
2024-10-02 CVE-2024-47804 Jenkins Unspecified vulnerability in Jenkins

If an attempt is made to create an item of a type prohibited by `ACL#hasCreatePermission2` or `TopLevelItemDescriptor#isApplicableIn(ItemGroup)` through the Jenkins CLI or the REST API and either of these checks fail, Jenkins 2.478 and earlier, LTS 2.462.2 and earlier creates the item in memory, only deleting it from disk, allowing attackers with Item/Configure permission to save the item to persist it, effectively bypassing the item creation restriction.

4.3
2024-10-01 CVE-2024-8675 The Soumettre.fr plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the soumettre_disconnect_gateway function in all versions up to, and including, 2.1.2.
4.3

4 Low Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2024-10-04 CVE-2024-9513 Netadmin Information Exposure Through Discrepancy vulnerability in Netadmin IAM

A vulnerability was found in Netadmin Software NetAdmin IAM up to 3.5 and classified as problematic.

3.7
2024-09-30 CVE-2024-47531 Clinical Genomics Improper Encoding or Escaping of Output vulnerability in Clinical-Genomics Scout

Scout is a web-based visualizer for VCF-files.

3.5
2024-10-02 CVE-2024-24122 Wondershare Unspecified vulnerability in Wondershare Edraw 3.2.2

A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.

3.3
2024-10-01 CVE-2024-47526 Librenms Unspecified vulnerability in Librenms

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system.

2.4