8.6

CVSS3.1

CVE-2024-9186 - Automation By Autonami < 3.3.0 - Unauthenticated SQLi

The Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit WordPress plugin before 3.3.0 does not sanitize and escape the bwfan-track-id parameter before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks

πŸ“… Published: Nov. 14, 2024, 6 a.m. πŸ”„ Last Modified: May 15, 2025, 4:28 p.m.

5.4

CVSS3.1

CVE-2024-10146 - Simple File List < 6.1.13 - Reflected Cross-Site Scripting

The Simple File List WordPress plugin before 6.1.13 does not sanitise and escape a generated URL before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting which could be used against admins.

πŸ“… Published: Nov. 14, 2024, 6 a.m. πŸ”„ Last Modified: May 15, 2025, 4:29 p.m.

6.7

CVSS3.1

CVE-2023-34049 - Salt security advisory release - 2023-OCT-27

The Salt-SSH pre-flight option copies the script to the target at a predictable path, which allows an attacker to force Salt-SSH to run their script. If an attacker has access to the target VM and knows the path to the pre-flight script before it runs they can ensure Salt-SSH runs their script with…

πŸ“… Published: Nov. 14, 2024, 4:13 a.m. πŸ”„ Last Modified: Nov. 15, 2024, 1:58 p.m.

7.1

CVSS4.0

CVE-2024-5082 - Nexus Repository 2 - Remote Code Execution

A Remote Code Execution vulnerability has been discovered in Sonatype Nexus Repository 2.Β  This issue affects Nexus Repository 2 OSS/Pro versions up to and including 2.15.1.

πŸ“… Published: Nov. 14, 2024, 2:58 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 5:15 p.m.

5.1

CVSS4.0

CVE-2024-5083 - Nexus Repository 2 - Stored XSS

A storedΒ Cross-site Scripting vulnerability has been discovered in Sonatype Nexus Repository 2 This issue affects Nexus Repository 2 OSS/Pro versions up to and including 2.15.1.

πŸ“… Published: Nov. 14, 2024, 1:31 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 5:15 p.m.

8.8

CVSS3.1

CVE-2024-41209 -

A heap-based buffer overflow in tsMuxer version nightly-2024-03-14-01-51-12 allows attackers to cause Denial of Service (DoS) and Code Execution via a crafted MOV video file.

πŸ“… Published: Nov. 14, 2024, midnight πŸ”„ Last Modified: Sept. 5, 2025, 12:12 a.m.

6.5

CVSS3.1

CVE-2024-41217 -

A heap-based buffer overflow in tsMuxer version nightly-2024-05-10-02-00-45 allows attackers to cause Denial of Service (DoS) via a crafted MKV video file.

πŸ“… Published: Nov. 14, 2024, midnight πŸ”„ Last Modified: Sept. 5, 2025, 12:10 a.m.

9.8

CVSS3.1

CVE-2024-31695 -

A misconfiguration in the fingerprint authentication mechanism of Binance: BTC, Crypto and NFTS v2.85.4, allows attackers to bypass authentication when adding a new fingerprint.

πŸ“… Published: Nov. 14, 2024, midnight πŸ”„ Last Modified: Dec. 3, 2024, 5:15 p.m.

3.5

CVSS3.1

CVE-2024-50826 -

A SQL Injection vulnerability was found in /admin/add_content.php in kashipara E-learning Management System Project 1.0 via the title and content parameters.

πŸ“… Published: Nov. 14, 2024, midnight πŸ”„ Last Modified: Nov. 18, 2024, 4:39 p.m.

6.5

CVSS3.1

CVE-2024-41206 -

A stack-based buffer over-read in tsMuxer version nightly-2024-03-14-01-51-12 allows attackers to cause Information Disclosure via a crafted TS video file.

πŸ“… Published: Nov. 14, 2024, midnight πŸ”„ Last Modified: Sept. 5, 2025, 12:14 a.m.
Total resulsts: 343942
Page 7358 of 34,395
Β« previous page Β» next page
Filters