Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 [1145] 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 ... Result(s) : 301595

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2025-01-23 CVE-2024-55195 cve An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much sp...
N/A 2025-01-23 CVE-2024-57326 cve A Reflected Cross-Site Scripting (XSS) vulnerability exists in the search.php file of the Online Pizza Delivery System 1.0. The vulnerability allows an attacker to execute arbit...
9.8 2025-01-23 CVE-2024-57328 cve A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not prope...
N/A 2025-01-23 CVE-2024-57329 cve HortusFox v3.9 contains a stored XSS vulnerability in the "Add Plant" function. The name input field does not sanitize or escape user inputs, allowing attackers to inject and ex...
6.1 2025-01-23 CVE-2024-57386 cve Cross Site Scripting vulnerability in Wallos v.2.41.0 allows a remote attacker to execute arbitrary code via the profile picture function.
6.1 2025-01-23 CVE-2024-57556 cve Cross Site Scripting vulnerability in nbubna store v.2.14.2 and before allows a remote attacker to execute arbitrary code via the store.deep.js component
N/A 2025-01-23 CVE-2025-0693 cve Variable response times in the AWS Sign-in IAM user login flow allowed for the use of brute force enumeration techniques to identify valid IAM usernames in an arbitrary AWS acco...
N/A 2025-01-23 CVE-2024-10846 cve The compose-go library component in versions v2.10-v2.4.0 allows an authorized user who sends malicious YAML payloads to cause the compose-go to consume excessive amount of Memo...
N/A 2025-01-23 CVE-2024-52325 cve ECOVACS robot lawnmowers and vacuums are vulnerable to command injection via SetNetPin() over an unauthenticated BLE connection.
N/A 2025-01-23 CVE-2024-55971 cve SQL Injection vulnerability in the default configuration of the Logitime WebClock application
N/A 2025-01-23 CVE-2025-0637 cve It has been found that the Beta10 software does not provide for proper authorisation control in multiple areas of the application. This deficiency could allow a malicious actor,...
N/A 2025-01-23 CVE-2025-22264 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tarak Patel WP Query Creator allows Reflected XSS. This issue aff...
N/A 2025-01-23 CVE-2025-22768 cve Cross-Site Request Forgery (CSRF) vulnerability in Qwerty23 Rocket Media Library Mime Type allows Stored XSS. This issue affects Rocket Media Library Mime Type: from n/a through...
N/A 2025-01-23 CVE-2025-23540 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mohsin khan WP Front-end login and register allows Reflected XSS....
N/A 2025-01-23 CVE-2025-23541 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in edmon Download, Downloads allows Reflected XSS. This issue affec...
N/A 2025-01-23 CVE-2025-23544 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in heart5 StatPressCN allows Reflected XSS. This issue affects StatP...
N/A 2025-01-23 CVE-2025-23545 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Navnish Bhardwaj WP Social Broadcast allows Reflected XSS. This i...
N/A 2025-01-23 CVE-2025-23624 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alessandro Benoit WpDevTool allows Reflected XSS. This issue affe...
N/A 2025-01-23 CVE-2025-23626 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hidetoshi Fukushima Kumihimo allows Reflected XSS. This issue aff...
N/A 2025-01-23 CVE-2025-23628 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in New Media One GeoDigs allows Reflected XSS. This issue affects Ge...
Page(s) : 1 ... 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 [1145] 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 ... Result(s) : 301595