7.8

CVSS3.1

CVE-2024-30275 - Adobe Aero Beta has an arbitrary code execution vulnerability when parsing svg files

Adobe Aero Desktop versions 23.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: May 16, 2024, 8:44 a.m. πŸ”„ Last Modified: Dec. 4, 2024, 4:39 p.m.

6.4

CVSS3.1

CVE-2024-4391 - Happy Addons for Elementor Authenticated (Contributor+) Stored-XSS <= 3.10.7 - Authenticated (Contr…

The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Event Calendar widget in all versions up to, and including, 3.10.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut…

πŸ“… Published: May 16, 2024, 8:32 a.m. πŸ”„ Last Modified: April 8, 2026, 7:21 p.m.

9.8

CVSS3.1

CVE-2024-4223 - Tutor LMS <= 2.7.0 - Missing Authorization

The Tutor LMS plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check on multiple functions in all versions up to, and including, 2.7.0. This makes it possible for unauthenticated attackers to add, modify, or delete dat…

πŸ“… Published: May 16, 2024, 8:32 a.m. πŸ”„ Last Modified: April 8, 2026, 7:21 p.m.

5.4

CVSS3.1

CVE-2024-3887 - Royal Elementor Addons and Templates <= 1.3.974 - Authenticated (Contributor+) Stored Cross-Site Sc…

The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Form Builder widget in all versions up to, and including, 1.3.974 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut…

πŸ“… Published: May 16, 2024, 8:32 a.m. πŸ”„ Last Modified: April 8, 2026, 6:21 p.m.

5.3

CVSS4.0

CVE-2024-4968 - SourceCodester Interactive Map with Marker Add Marker Marker Name cross site scripting

A vulnerability was found in SourceCodester Interactive Map with Marker 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file Marker Name of the component Add Marker. The manipulation leads to cross site scripting. The attack may be launched remotel…

πŸ“… Published: May 16, 2024, 8:31 a.m. πŸ”„ Last Modified: Feb. 10, 2025, 1:42 p.m.

5.3

CVSS4.0

CVE-2024-4967 - SourceCodester Interactive Map with Marker delete-mark.php sql injection

A vulnerability was found in SourceCodester Interactive Map with Marker 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /endpoint/delete-mark.php. The manipulation of the argument mark leads to sql injection. The attack can be launched r…

πŸ“… Published: May 16, 2024, 8:31 a.m. πŸ”„ Last Modified: Feb. 10, 2025, 1:42 p.m.

7.8

CVSS3.1

CVE-2024-30307 - Adobe Substance 3D Painter BMP File Parsing Out Of Bounds Write Vulnerability

Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: May 16, 2024, 8:25 a.m. πŸ”„ Last Modified: Dec. 2, 2024, 8:16 p.m.

5.5

CVSS3.1

CVE-2024-30308 - Adobe Substance 3D Painter PSD File Parsing Acces Violation Read Vulnerability

Substance3D - Painter versions 9.1.2 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in t…

πŸ“… Published: May 16, 2024, 8:25 a.m. πŸ”„ Last Modified: Dec. 2, 2024, 10:25 p.m.

7.8

CVSS3.1

CVE-2024-30274 - Adobe Substance 3D Painter ABC File Parsing An Out-Of-Bounds Write Vulnerability

Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: May 16, 2024, 8:25 a.m. πŸ”„ Last Modified: Dec. 16, 2025, 6:13 p.m.

5.5

CVSS3.1

CVE-2024-30309 - Adobe Substance 3D Painter TGA File Parsing Acces Violation Read Vulnerability

Substance3D - Painter versions 9.1.2 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in t…

πŸ“… Published: May 16, 2024, 8:25 a.m. πŸ”„ Last Modified: Dec. 2, 2024, 10:25 p.m.
Total resulsts: 349182
Page 9838 of 34,919
Β« previous page Β» next page
Filters