6.5

CVSS3.1

CVE-2024-34457 - Apache StreamPark IDOR Vulnerability

On versions before 2.1.4, after a regular user successfully logs in, they can manually make a request using the authorization token to view everyone's user flink information, including executeSQL and config. Mitigation: all users should upgrade to 2.1.4

πŸ“… Published: July 22, 2024, 9:48 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:18 a.m.

3.9

CVSS3.1

CVE-2024-38503 - Apache Syncope: HTML tags can be injected into Console or Enduser text fields

When editing a user, group or any object in the Syncope Console, HTML tags could be added to any text field and could lead to potential exploits. The same vulnerability was found in the Syncope Enduser, when editing β€œPersonal Information” or β€œUser Requests”. Users are recommended to upgrade to ver…

πŸ“… Published: July 22, 2024, 9:46 a.m. πŸ”„ Last Modified: Dec. 6, 2024, 10:15 p.m.

6.5

CVSS3.1

CVE-2024-37114 - WordPress My Favorites plugin <= 1.4.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Takashi Matsuyama My Favorites my-favorites allows DOM-Based XSS.This issue affects My Favorites: from n/a through <= 1.4.3.

πŸ“… Published: July 22, 2024, 9:42 a.m. πŸ”„ Last Modified: April 23, 2026, 3:18 p.m.

6.5

CVSS3.1

CVE-2024-37116 - WordPress Sinatra theme <= 1.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sinatrateam Sinatra allows Stored XSS.This issue affects Sinatra: from n/a through 1.3.

πŸ“… Published: July 22, 2024, 9:41 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

7.1

CVSS3.1

CVE-2024-37117 - WordPress Uncanny Automator Pro plugin <= 5.3 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uncanny Owl Uncanny Automator Pro allows Reflected XSS.This issue affects Uncanny Automator Pro: from n/a through 5.3.

πŸ“… Published: July 22, 2024, 9:40 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

5.9

CVSS3.1

CVE-2024-37120 - WordPress Tabs plugin <= 4.0.6 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Tabs allows Stored XSS.This issue affects Tabs: from n/a through 4.0.6.

πŸ“… Published: July 22, 2024, 9:38 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

5.9

CVSS3.1

CVE-2024-37121 - WordPress Shortcode Addons plugin <= 3.2.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in biplob018 Shortcode Addons allows Stored XSS.This issue affects Shortcode Addons: from n/a through 3.2.5.

πŸ“… Published: July 22, 2024, 9:35 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

5.9

CVSS3.1

CVE-2024-37122 - WordPress Accordions plugin <= 2.3.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Accordions allows Stored XSS.This issue affects Accordions: from n/a through 2.3.5.

πŸ“… Published: July 22, 2024, 9:34 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

7.1

CVSS3.1

CVE-2024-37199 - WordPress Enfold theme <= 5.6.9 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kriesi.At Enfold allows Reflected XSS.This issue affects Enfold: from n/a through 5.6.9.

πŸ“… Published: July 22, 2024, 9:33 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.

7.1

CVSS3.1

CVE-2024-37206 - WordPress Demo Awesome plugin <= 1.0.1 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Theme4Press Demo Awesome allows Reflected XSS.This issue affects Demo Awesome: from n/a through 1.0.1.

πŸ“… Published: July 22, 2024, 9:31 a.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:23 a.m.
Total resulsts: 349182
Page 9076 of 34,919
Β« previous page Β» next page
Filters