5.3

CVSS3.1

CVE-2024-50312 - Graphql: information disclosure via graphql introspection in openshift

A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure to this flaw increases the attack surface, as it can facilitate the discovery of…

πŸ“… Published: Oct. 17, 2024, 1:17 p.m. πŸ”„ Last Modified: Nov. 11, 2025, 4:10 p.m.

6.5

CVSS3.1

CVE-2024-50311 - Graphql: denial of service (dos) vulnerability via graphql batching

A denial of service (DoS) vulnerability was found in OpenShift. This flaw allows attackers to exploit the GraphQL batching functionality. The vulnerability arises when multiple queries can be sent within a single request, enabling an attacker to submit a request containing thousands of aliases in o…

πŸ“… Published: Oct. 17, 2024, 1:16 p.m. πŸ”„ Last Modified: Nov. 20, 2025, 7:37 p.m.

5.3

CVSS3.1

CVE-2024-49580 -

In JetBrains Ktor before 2.3.13 improper caching in HttpCache Plugin could lead to response information disclosure

πŸ“… Published: Oct. 17, 2024, 1 p.m. πŸ”„ Last Modified: Dec. 6, 2024, 2:15 p.m.

8.1

CVSS3.1

CVE-2024-49579 -

In JetBrains YouTrack before 2024.3.47197 insecure plugin iframe allowed arbitrary JavaScript execution and unauthorized API requests

πŸ“… Published: Oct. 17, 2024, 1 p.m. πŸ”„ Last Modified: Nov. 14, 2024, 7:24 p.m.

7.1

CVSS3.1

CVE-2024-48021 - WordPress Contact Form 7 – PayPal & Stripe Add-on plugin <= 2.3 - Reflected Cross Site Scripting (X…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Contact Form 7 – PayPal & Stripe Add-on contact-form-7-paypal-add-on allows Reflected XSS.This issue affects Contact Form 7 – PayPal & Stripe Add-on: from n/a through <= 2.3.

πŸ“… Published: Oct. 17, 2024, 12:29 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

6.5

CVSS3.1

CVE-2024-48022 - WordPress Shortcode For Elementor Templates plugin <= 1.0.0 - Cross Site Scripting (XSS) vulnerabil…

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SysBasics Shortcode For Elementor Templates allows Stored XSS.This issue affects Shortcode For Elementor Templates: from n/a through 1.0.0.

πŸ“… Published: Oct. 17, 2024, 12:28 p.m. πŸ”„ Last Modified: April 28, 2026, 7:26 p.m.

7.1

CVSS3.1

CVE-2024-48023 - WordPress Restaurant Reservations Widget plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulne…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in rconnect305 Restaurant Reservations Widget restaurantconnect-reswidget allows Reflected XSS.This issue affects Restaurant Reservations Widget: from n/a through <= 1.0.

πŸ“… Published: Oct. 17, 2024, 12:27 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

6.5

CVSS3.1

CVE-2024-48025 - WordPress Simple Baseball Scoreboard plugin <= 1.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dogrow Simple Baseball Scoreboard simple-baseball-scoreboard allows Stored XSS.This issue affects Simple Baseball Scoreboard: from n/a through <= 1.3.

πŸ“… Published: Oct. 17, 2024, 12:23 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

7.1

CVSS3.1

CVE-2024-48032 - WordPress Featured Posts with Multiple Custom Groups (FPMCG) plugin <= 4.0 - Reflected Cross Site S…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sumitsurai Featured Posts with Multiple Custom Groups (FPMCG) featured-posts-with-multiple-custom-groups-fpmcg allows Reflected XSS.This issue affects Featured Posts with Multiple Custom Groups (FP…

πŸ“… Published: Oct. 17, 2024, 12:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

6.5

CVSS3.1

CVE-2024-48036 - WordPress SKT Blocks plugin <= 1.6 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 SKT Blocks skt-blocks.This issue affects SKT Blocks: from n/a through <= 1.6.

πŸ“… Published: Oct. 17, 2024, 12:21 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.
Total resulsts: 349182
Page 8253 of 34,919
Β« previous page Β» next page
Filters