Page(s) : 1 ... 944 945 946 947 948 949 950 951 952 953 [954] 955 956 957 958 959 960 961 962 963 964 ... | Result(s) : 300527 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
6.5 | 2025-02-15 | CVE-2024-13500 | cve | The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for WordPress is vulnerable to time-based SQL Injection via the... |
6.5 | 2025-02-15 | CVE-2025-0822 | cve | Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.2 via the fileID Parameter. This makes it possible for authenticated at... |
N/A | 2025-02-15 | CVE-2024-13208 | cve | The Maps Plugin using Google Maps for WordPress WordPress plugin before 1.9.4 does not sanitise and escape some of its settings, which could allow high privilege users such as ... |
N/A | 2025-02-15 | CVE-2024-13306 | cve | The Maps Plugin using Google Maps for WordPress WordPress plugin before 1.9.4 does not sanitise and escape some of its settings, which could allow high privilege users such as ... |
9.8 | 2025-02-15 | CVE-2024-13513 | cve | The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.2.3 via the log... |
6.5 | 2025-02-15 | CVE-2024-13525 | cve | The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.9.4 via Shortcode. T... |
5.4 | 2025-02-15 | CVE-2024-13563 | cve | The Front End Users plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's forgot-password shortcode in all versions up to, and including, 3.2.3... |
4.3 | 2025-02-15 | CVE-2025-0935 | cve | The Media Library Folders plugin for WordPress is vulnerable to unauthorized plugin settings change due to a missing capability check on several AJAX actions in all versions up ... |
N/A | 2025-02-15 | CVE-2025-22208 | cve | A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the ... |
N/A | 2025-02-15 | CVE-2025-22209 | cve | A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.3 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands via the ... |
9.8 | 2025-02-15 | CVE-2024-12562 | cve | The s2Member Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 241216 via deserialization of untrusted input from the 's2... |
6.5 | 2025-02-15 | CVE-2024-13752 | cve | The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for WordPress is vulnerable to unauthorized loss of data due to... |
5.4 | 2025-02-15 | CVE-2025-1005 | cve | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Accordion widget in all versions up to, and includ... |
N/A | 2025-02-15 | CVE-2024-37374 | cve | Rejected reason: This CVE record has been withdrawn due to a duplicate entry CVE-2024-13842. |
N/A | 2025-02-15 | CVE-2024-37375 | cve | Rejected reason: This CVE record has been withdrawn due to a duplicate entry CVE-2024-13843. |
N/A | 2025-02-15 | CVE-2025-0995 | cve | Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severit... |
N/A | 2025-02-15 | CVE-2025-0996 | cve | Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a craf... |
N/A | 2025-02-15 | CVE-2025-0997 | cve | Use after free in Navigation in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium s... |
N/A | 2025-02-15 | CVE-2025-0998 | cve | Rejected reason: Not exploitable |
N/A | 2025-02-15 | CVE-2025-1302 | cve | Versions of the package jsonpath-plus before 10.3.0 are vulnerable to Remote Code Execution (RCE) due to improper input sanitization. An attacker can execute aribitrary code on ... |
Page(s) : 1 ... 944 945 946 947 948 949 950 951 952 953 [954] 955 956 957 958 959 960 961 962 963 964 ... | Result(s) : 300527 |