0.0

CVE-2024-53781 - WordPress SpatialMatch IDX plugin <= 3.0.9 - CSRF to Stored XSS vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in homejunction SpatialMatch IDX spatialmatch-free-lifestyle-search allows Stored XSS.This issue affects SpatialMatch IDX: from n/a through <= 3.0.9.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53782 - WordPress Photo Video Store plugin <= 21.07 - CSRF to Cross Site Scripting (XSS) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in cmsaccount Photo Video Store photo-video-store allows Cross-Site Scripting (XSS).This issue affects Photo Video Store: from n/a through <= 21.07.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53784 - WordPress Smart Marketing SMS and Newsletters Forms plugin <= 5.0.4 - Broken Access Control vulnera…

Missing Authorization vulnerability in E-goi Smart Marketing SMS and Newsletters Forms smart-marketing-for-wp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Smart Marketing SMS and Newsletters Forms: from n/a through <= 5.0.4.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53789 - WordPress Advanced What should we write next about plugin <=1.0.3 - CSRF to Stored Cross Site Scrip…

Cross-Site Request Forgery (CSRF) vulnerability in Ritesh Sanap Advanced What should we write next about advanced-what-should-we-write-about-next allows Stored XSS.This issue affects Advanced What should we write next about: from n/a through <= 1.0.3.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

8.8

CVSS3.1

CVE-2024-53792 - WordPress Watu Quiz plugin <= 3.4.1.2 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz watu allows SQL Injection.This issue affects Watu Quiz: from n/a through <= 3.4.1.2.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53793 - WordPress eDoc Easy Tables plugin <= 1.29 - CSRF to SQL Injection vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in jerodmoore eDoc Easy Tables edoc-easy-tables allows Blind SQL Injection.This issue affects eDoc Easy Tables: from n/a through <= 1.29.

πŸ“… Published: Dec. 2, 2024, 1:48 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53730 - WordPress April's Call Posts plugin <= 2.1.1 - CSRF to Stored XSS vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in springthistle April's Call Posts aprils-call-posts allows Stored XSS.This issue affects April's Call Posts: from n/a through <= 2.1.1.

πŸ“… Published: Dec. 2, 2024, 1:43 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

0.0

CVE-2024-53740 - WordPress WooCommerce Ultimate Gift Card plugin < 2.9.1 - Reflected Cross Site Scripting (XSS) vuln…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPSwings WooCommerce Ultimate Gift Card woocommerce-ultimate-gift-card allows Reflected XSS.This issue affects WooCommerce Ultimate Gift Card: from n/a through < 2.9.1.

πŸ“… Published: Dec. 2, 2024, 1:42 p.m. πŸ”„ Last Modified: April 1, 2026, 4:20 p.m.

7.7

CVSS3.1

CVE-2024-12015 - SQL Injection in WordPress Project Manager Plugin

The 'Project Manager' WordPress Plugin is affected by an authenticated SQL injection vulnerability in the 'orderby' parameter in the '/pm/v2/activites' route.

πŸ“… Published: Dec. 2, 2024, 1:23 p.m. πŸ”„ Last Modified: Dec. 2, 2024, 7:18 p.m.

7.8

CVSS3.1

CVE-2024-43053 - Improper Restriction of Operations within the Bounds of a Memory Buffer in WLAN Windows Host

Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.

πŸ“… Published: Dec. 2, 2024, 10:18 a.m. πŸ”„ Last Modified: Dec. 12, 2024, 3:29 p.m.
Total resulsts: 344058
Page 7143 of 34,406
Β« previous page Β» next page
Filters