4.3

CVSS3.1

CVE-2024-8667 - HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce <= 2.10.0 - Missin…

The HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce plugin for WordPress is vulnerable to unauthorized post publication due to a missing capability check on the activateCampaign() function in all versions up to, and including, 2.10.0. This makes it possible for auth…

πŸ“… Published: Oct. 24, 2024, 7:35 a.m. πŸ”„ Last Modified: April 8, 2026, 5:02 p.m.

4.3

CVSS3.1

CVE-2024-9531 - MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution <= 4.2.4 - Missing Authori…

The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'mvx_sent_deactivation_request' function in all versions up to, and including, 4.2.4. This makes it possible …

πŸ“… Published: Oct. 24, 2024, 7:35 a.m. πŸ”„ Last Modified: April 8, 2026, 4:55 p.m.

6.1

CVSS3.1

CVE-2024-9864 - EventPrime – Modern Events Calendar, Bookings and Tickets <= 4.0.4.7 - Unauthenticated Stored Cross…

The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ticket names in all versions up to, and including, 4.0.4.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to…

πŸ“… Published: Oct. 24, 2024, 6:50 a.m. πŸ”„ Last Modified: April 8, 2026, 5:18 p.m.

6.1

CVSS3.1

CVE-2024-9865 - EventPrime – Modern Events Calendar, Bookings and Tickets <= 4.0.4.7 - Unauthenticated Stored Cross…

The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜ep_booking_attendee_fields’ fields in all versions up to, and including, 4.0.4.7 due to insufficient input sanitization and output escaping. This makes it possible for u…

πŸ“… Published: Oct. 24, 2024, 6:50 a.m. πŸ”„ Last Modified: April 8, 2026, 4:37 p.m.

6.1

CVSS3.1

CVE-2024-9374 - Terms descriptions <= 3.4.6 - Reflected Cross-Site Scripting

The Terms descriptions plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.4.6. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pa…

πŸ“… Published: Oct. 24, 2024, 4:32 a.m. πŸ”„ Last Modified: April 8, 2026, 5:34 p.m.

9.8

CVSS3.1

CVE-2024-48514 -

php-heic-to-jpg <= 1.0.5 is vulnerable to code injection (fixed in 1.0.6). An attacker who can upload heic images is able to execute code on the remote server via the file name. As a result, the CIA is no longer guaranteed. This affects php-heic-to-jpg 1.0.5 and below.

πŸ“… Published: Oct. 24, 2024, midnight πŸ”„ Last Modified: Dec. 19, 2024, 4:15 p.m.

9.3

CVSS3.1

CVE-2024-48548 -

The APK file in Cloud Smart Lock v2.0.1 has a leaked a URL that can call an API for binding physical devices. This vulnerability allows attackers to arbitrarily construct a request to use the app to bind to unknown devices by finding a valid serial number via a bruteforce attack.

πŸ“… Published: Oct. 24, 2024, midnight πŸ”„ Last Modified: Oct. 25, 2024, 12:56 p.m.

8.6

CVSS3.1

CVE-2024-48208 -

pure-ftpd before 1.0.52 is vulnerable to Buffer Overflow. There is an out of bounds read in the domlsd() function of the ls.c file.

πŸ“… Published: Oct. 24, 2024, midnight πŸ”„ Last Modified: Sept. 4, 2025, 4:33 p.m.

9.8

CVSS3.1

CVE-2024-48539 -

Neye3C v4.5.2.0 was discovered to contain a hardcoded encryption key in the firmware update mechanism.

πŸ“… Published: Oct. 24, 2024, midnight πŸ”„ Last Modified: Oct. 25, 2024, 12:56 p.m.

9.8

CVSS3.1

CVE-2024-48538 -

Incorrect access control in the firmware update and download processes of Neye3C v4.5.2.0 allows attackers to access sensitive information by analyzing the code and data within the APK file.

πŸ“… Published: Oct. 24, 2024, midnight πŸ”„ Last Modified: Oct. 25, 2024, 12:56 p.m.
Total resulsts: 343942
Page 7634 of 34,395
Β« previous page Β» next page
Filters