4.3

CVSS3.1

CVE-2023-7049 - Custom Field For WP Job Manager <= 1.2 - Insecure Direct Object Reference to Sensitive Informationโ€ฆ

The Custom Field For WP Job Manager plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.2 via the the 'cm_fieldshow' shortcode due to missing validation on the 'job_id' user controlled key. This makes it possible for authenticated attackersโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, 1:59 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-7630 - Relevanssi <= 4.22.2 (Free) and <= 2.25.1 (Premium) - Unauthenticated Information Exposure

The Relevanssi โ€“ A Better Search plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.22.2 (Free) and 2.25.1 (Premium) via the relevanssi_do_query() due to insufficient limitations on the posts that are returned when searching. This makes it possible foโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, 1:59 a.m. ๐Ÿ”„ Last Modified: April 8, 2026, 6:22 p.m.

5.3

CVSS4.0

CVE-2024-7853 - SourceCodester Yoga Class Registration System sql injection

A vulnerability was found in SourceCodester Yoga Class Registration System up to 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/?page=categories/view_category. The manipulation of the argument id leads to sql injection. It is possible to launch the attacโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, 12:31 a.m. ๐Ÿ”„ Last Modified: Sept. 3, 2024, 5:59 p.m.

5.3

CVSS4.0

CVE-2024-7852 - SourceCodester Yoga Class Registration System view_inquiry.php cross site scripting

A vulnerability was found in SourceCodester Yoga Class Registration System 1.0 and classified as problematic. This issue affects some unknown processing of the file /admin/inquiries/view_inquiry.php. The manipulation of the argument message leads to cross site scripting. The attack may be initiatedโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, 12:31 a.m. ๐Ÿ”„ Last Modified: Aug. 29, 2024, 3:23 p.m.

5.3

CVSS4.0

CVE-2024-7851 - SourceCodester Yoga Class Registration System Add User Users.php improper authorization

A vulnerability has been found in SourceCodester Yoga Class Registration System 1.0 and classified as critical. This vulnerability affects unknown code of the file /classes/Users.php?f=save of the component Add User Handler. The manipulation leads to improper authorization. The attack can be initiaโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 3, 2024, 6 p.m.

5.4

CVSS3.1

CVE-2024-42758 -

A Cross-site Scripting (XSS) vulnerability exists in version v2024-01-05 of the indexmenu plugin when is used and enabled in Dokuwiki (Open Source Wiki Engine). A malicious attacker can input XSS payloads for example when creating or editing existing page, to trigger the XSS on Dokuwiki, which is tโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-42637 -

H3C R3010 v100R002L02 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: May 27, 2025, 4:19 p.m.

7.2

CVSS3.1

CVE-2024-42994 -

VTiger CRM <= 8.1.0 does not properly sanitize user input before using it in a SQL statement, leading to a SQL Injection in the "CompanyDetails" operation of the "MailManager" module.

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: April 28, 2025, 2:10 p.m.

5.4

CVSS3.1

CVE-2024-43006 -

A stored cross-site scripting (XSS) vulnerability exists in ZZCMS2023 in the ask/show.php file at line 21. An attacker can exploit this vulnerability by sending a specially crafted POST request to /user/ask_edit.php?action=add, which includes malicious JavaScript code in the 'content' parameter. Whโ€ฆ

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: April 21, 2025, 2:59 p.m.

9.8

CVSS3.1

CVE-2024-42850 -

An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requirements.

๐Ÿ“… Published: Aug. 16, 2024, midnight ๐Ÿ”„ Last Modified: June 5, 2025, 2:04 p.m.
Total resulsts: 349182
Page 8831 of 34,919
ยซ previous page ยป next page
Filters