7.6

CVSS3.1

CVE-2024-30246 - Tuleap deleting or moving an artifact can delete values from unrelated artifacts

Tuleap is an Open Source Suite to improve management of software developments and collaboration. A malicious user could exploit this issue on purpose to delete information on the instance or possibly gain access to restricted artifacts. It is however not possible to control exactly which informatio…

πŸ“… Published: March 29, 2024, 3:50 p.m. πŸ”„ Last Modified: July 10, 2025, 5:13 p.m.

6.5

CVSS3.1

CVE-2024-30513 - WordPress ProfileGrid plugin <= 5.7.2 - Insecure Direct Object References (IDOR) vulnerability

Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid : from n/a through 5.7.2.

πŸ“… Published: March 29, 2024, 3:50 p.m. πŸ”„ Last Modified: April 28, 2026, 4:09 p.m.

5.3

CVSS3.1

CVE-2024-30469 - WordPress Wholesale For WooCommerce plugin <= 2.3.0 - Unauthenticated Sensitive Data Exposure vulne…

Missing Authorization vulnerability in WPExperts Wholesale For WooCommerce.This issue affects Wholesale For WooCommerce: from n/a through 2.3.0.

πŸ“… Published: March 29, 2024, 3:47 p.m. πŸ”„ Last Modified: April 28, 2026, 4:09 p.m.

5.3

CVSS3.1

CVE-2024-30511 - WordPress FG PrestaShop to WooCommerce plugin <= 4.45.1 - Sensitive Data Exposure via Log File vuln…

Insertion of Sensitive Information into Log File vulnerability in FrΓ©dΓ©ric GILLES FG PrestaShop to WooCommerce.This issue affects FG PrestaShop to WooCommerce: from n/a through 4.45.1.

πŸ“… Published: March 29, 2024, 3:42 p.m. πŸ”„ Last Modified: April 28, 2026, 4:09 p.m.

5.3

CVSS3.1

CVE-2024-30514 - WordPress Paid Memberships Pro – Payfast Gateway Add On plugin <= 1.4.1 - Sensitive Data Exposure v…

Insertion of Sensitive Information into Log File vulnerability in Paid Memberships Pro Paid Memberships Pro – Payfast Gateway Add On.This issue affects Paid Memberships Pro – Payfast Gateway Add On: from n/a through 1.4.1.

πŸ“… Published: March 29, 2024, 3:40 p.m. πŸ”„ Last Modified: April 28, 2026, 4:09 p.m.

4.3

CVSS3.1

CVE-2024-30492 - WordPress Export and Import Users and Customers plugin <= 2.5.2 - Path Traversal vulnerability

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WebToffee Import Export WordPress Users.This issue affects Import Export WordPress Users: from n/a through 2.5.2.

πŸ“… Published: March 29, 2024, 3:35 p.m. πŸ”„ Last Modified: April 28, 2026, 4:09 p.m.

7.5

CVSS3.1

CVE-2024-29904 - CodeIgniter4 Language class DoS Vulnerability

CodeIgniter is a PHP full-stack web framework A vulnerability was found in the Language class that allowed DoS attacks. This vulnerability can be exploited by an attacker to consume a large amount of memory on the server. Upgrade to v4.4.7 or later.

πŸ“… Published: March 29, 2024, 3:32 p.m. πŸ”„ Last Modified: May 7, 2025, 5:28 p.m.

4.8

CVSS3.1

CVE-2024-29901 - @workos-inc/authkit-nextjs session replay vulnerability

The AuthKit library for Next.js provides helpers for authentication and session management using WorkOS & AuthKit with Next.js. A user can reuse an expired session by controlling the `x-workos-session` header. The vulnerability is patched in v0.4.2.

πŸ“… Published: March 29, 2024, 3:23 p.m. πŸ”„ Last Modified: Dec. 11, 2025, 5:45 p.m.

7.5

CVSS3.1

CVE-2024-29900 - @electron/packager's build process memory potentially leaked into final executable

Electron Packager bundles Electron-based application source code with a renamed Electron executable and supporting files into folders ready for distribution. A random segment of ~1-10kb of Node.js heap memory allocated either side of a known buffer will be leaked into the final executable. This mem…

πŸ“… Published: March 29, 2024, 3:15 p.m. πŸ”„ Last Modified: May 7, 2025, 5:02 p.m.

8.8

CVSS3.1

CVE-2024-29890 - Remote code execution in datalens-ui

DataLens is a business intelligence and data visualization system. A specifically crafted request allowed the creation of a special chart type with the ability to pass custom javascript code that would later be executed in an unprotected sandbox on subsequent requests to that chart. The problem was…

πŸ“… Published: March 29, 2024, 3 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 10508 of 34,919
Β« previous page Β» next page
Filters