6.5

CVSS3.1

CVE-2024-47396 - WordPress Move Addons for Elementor plugin <= 1.3.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor move-addons allows Stored XSS.This issue affects Move Addons for Elementor: from n/a through <= 1.3.3.

πŸ“… Published: Oct. 1, 2024, 1:25 a.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

7.8

CVSS3.0

CVE-2024-47560 -

RevoWorks Cloud Client 3.0.91 and earlier contains an incorrect authorization vulnerability. If this vulnerability is exploited, unintended processes may be executed in the sandbox environment. Even if malware is executed in the sandbox environment, it does not compromise the client's local environ…

πŸ“… Published: Oct. 1, 2024, 1 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6

CVSS4.0

CVE-2024-9358 - ThingsBoard HTTP RPC API resource consumption

A vulnerability has been found in ThingsBoard up to 3.7.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component HTTP RPC API. The manipulation leads to resource consumption. The attack can be launched remotely. The complexity of an attack is rath…

πŸ“… Published: Oct. 1, 2024, 1 a.m. πŸ”„ Last Modified: Dec. 3, 2025, 2:26 p.m.

7.8

CVSS3.1

CVE-2024-46259 -

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_unfilter() function at cute_png.h.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 5:15 p.m.

5.4

CVSS3.1

CVE-2024-46081 -

Scriptcase v9.10.023 and before is vulnerable to Cross Site Scripting (XSS). An authenticated user can craft malicious payloads in the To-Do List. The assigned user will trigger a stored XSS, which is particularly dangerous because tasks are assigned to various users on the platform.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: April 28, 2025, 5:16 p.m.

7.7

CVSS3.1

CVE-2024-25661 -

In Infinera TNMS (Transcend Network Management System) 19.10.3, cleartext storage of sensitive information in memory of the desktop application TNMS Client allows guest OS administrators to obtain various users' passwords by reading memory dumps of the desktop application.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: Oct. 4, 2024, 1:51 p.m.

7.8

CVSS3.1

CVE-2024-46276 -

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_chunk() function at cute_png.h.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 2:15 p.m.

7.8

CVSS3.1

CVE-2024-46258 -

cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_load_png_mem() function at cute_png.h.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 4:15 p.m.

8.1

CVSS3.1

CVE-2024-42514 -

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.1.0.4 could allow an unauthenticated attacker to conduct an unauthorized access attack due to inadequate access control checks. A successful exploit requires user interaction and could allow an attacker to ac…

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: May 30, 2025, 1:26 a.m.

7.2

CVSS3.1

CVE-2024-25659 -

In Infinera TNMS (Transcend Network Management System) 19.10.3, an insecure default configuration of the internal SFTP server on Linux servers allows remote attacker to access files and directories outside the SFTP user home directory.

πŸ“… Published: Oct. 1, 2024, midnight πŸ”„ Last Modified: July 3, 2025, 2:36 p.m.
Total resulsts: 349182
Page 8431 of 34,919
Β« previous page Β» next page
Filters