Page(s) : 1 ... 148 149 150 151 152 153 154 155 156 157 [158] 159 160 161 162 163 164 165 166 167 168 ... | Result(s) : 114981 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
4.8 | 2025-02-14 | CVE-2024-56463 | cve | IBM QRadar SIEM 7.5 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intende... |
4.9 | 2025-02-14 | CVE-2024-13791 | cve | Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.2 via the downloadResponseFile() function. This makes it possible for a... |
6.5 | 2025-02-14 | CVE-2025-0821 | cve | Bit Assist plugin for WordPress is vulnerable to time-based SQL Injection via the ‘id’ parameter in all versions up to, and including, 1.5.2 due to insufficient escaping on the ... |
6.1 | 2025-02-14 | CVE-2025-23857 | cve | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Essential WP Real Estate allows Reflected XSS. This issu... |
5.4 | 2025-02-14 | CVE-2024-13692 | cve | The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Insecure Direct O... |
5.4 | 2025-02-14 | CVE-2024-9601 | cve | The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ and 'UniqueID' parameter in all versions up t... |
5.4 | 2025-02-14 | CVE-2024-13735 | cve | The HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and... |
6.6 | 2025-02-13 | CVE-2025-20615 | cve | The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accoun... |
6.5 | 2025-02-13 | CVE-2025-23411 | cve | mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the v... |
4.3 | 2025-02-13 | CVE-2025-0661 | cve | The DethemeKit For Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.36 via the duplicate_post() function due to insuf... |
4.3 | 2025-02-13 | CVE-2024-13639 | cve | The Read More & Accordion plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the expmDeleteData() function in ... |
6.1 | 2025-02-13 | CVE-2024-13867 | cve | The Listivo - Classified Ads WordPress Theme theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and inclu... |
5.4 | 2025-02-13 | CVE-2024-13644 | cve | The DethemeKit For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's De Gallery widget in all versions up to, and including, 2.1.... |
5.4 | 2025-02-13 | CVE-2024-13227 | cve | The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Rank Math API in all versions u... |
4.3 | 2025-02-13 | CVE-2024-13229 | cve | The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the update_metadat... |
5.4 | 2025-02-13 | CVE-2025-0837 | cve | The Puzzles theme for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 4.2.4 due to insufficient input sanitization and ou... |
6.3 | 2025-02-12 | CVE-2025-1225 | cve | A vulnerability, which was classified as problematic, has been found in ywoa up to 2024.07.03. This issue affects the function extract of the file c-main/src/main/java/com/redmo... |
6.5 | 2025-02-12 | CVE-2025-0111 | cve | An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the management web interface to read ... |
5.4 | 2025-02-12 | CVE-2024-56938 | cve | LearnDash v6.7.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the materials-content class. |
5.4 | 2025-02-12 | CVE-2024-56939 | cve | LearnDash v6.7.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the ld-comment-body class. |
Page(s) : 1 ... 148 149 150 151 152 153 154 155 156 157 [158] 159 160 161 162 163 164 165 166 167 168 ... | Result(s) : 114981 |