7.1
CVE-2024-53789 - WordPress Advanced What should we write next about plugin <=1.0.3 - CSRF to Stored Cross Site Scripβ¦
Cross-Site Request Forgery (CSRF) vulnerability in Ritesh Sanap Advanced What should we write next about advanced-what-should-we-write-about-next allows Stored XSS.This issue affects Advanced What should we write next about: from n/a through <= 1.0.3.
8.5
CVE-2024-53792 - WordPress Watu Quiz plugin <= 3.4.1.2 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz watu allows SQL Injection.This issue affects Watu Quiz: from n/a through <= 3.4.1.2.
8.2
CVE-2024-53793 - WordPress eDoc Easy Tables plugin <= 1.29 - CSRF to SQL Injection vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in jerodmoore eDoc Easy Tables edoc-easy-tables allows Blind SQL Injection.This issue affects eDoc Easy Tables: from n/a through <= 1.29.
7.1
CVE-2024-53730 - WordPress April's Call Posts plugin <= 2.1.1 - CSRF to Stored XSS vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in springthistle April's Call Posts aprils-call-posts allows Stored XSS.This issue affects April's Call Posts: from n/a through <= 2.1.1.
7.1
CVE-2024-53740 - WordPress WooCommerce Ultimate Gift Card plugin < 2.9.1 - Reflected Cross Site Scripting (XSS) vulnβ¦
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPSwings WooCommerce Ultimate Gift Card woocommerce-ultimate-gift-card allows Reflected XSS.This issue affects WooCommerce Ultimate Gift Card: from n/a through < 2.9.1.
7.7
CVE-2024-12015 - SQL Injection in WordPress Project Manager Plugin
The 'Project Manager' WordPress Plugin is affected by an authenticated SQL injection vulnerability in the 'orderby' parameter in the '/pm/v2/activites' route.
7.8
CVE-2024-43053 - Improper Restriction of Operations within the Bounds of a Memory Buffer in WLAN Windows Host
Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.
7.8
CVE-2024-43052 - Improper Input Validation in Video Analytics and Processing
Memory corruption while processing API calls to NPU with invalid input.
7.8
CVE-2024-43050 - Stack-based Buffer Overflow in WLAN Windows Host
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
7.8
CVE-2024-43049 - Improper Restriction of Operations within the Bounds of a Memory Buffer in WLAN Windows Host
Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver.