5.1
CVE-2024-51517 -
Vulnerability of improper memory access in the phone service module Impact: Successful exploitation of this vulnerability may affect availability.
6.2
CVE-2024-51516 -
Permission control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to function abnormally.
6.2
CVE-2024-51515 -
Race condition vulnerability in the kernel network module Impact:Successful exploitation of this vulnerability may affect availability.
5.3
CVE-2024-51514 -
Vulnerability of pop-up windows belonging to no app in the VPN module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
5.5
CVE-2024-51513 -
Vulnerability of processes not being fully terminated in the VPN module Impact: Successful exploitation of this vulnerability will affect power consumption.
6.2
CVE-2024-51512 -
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
6.2
CVE-2024-51511 -
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
6.1
CVE-2024-9667 - Seriously Simple Podcasting <= 3.5.0 - Reflected Cross-Site Scripting via add_query_arg Parameter
The Seriously Simple Podcasting plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.5.0. This makes it possible for unauthenticated attackers to inject arbitrary web scriβ¦
8.8
CVE-2024-10711 - WooCommerce Report <= 1.5.1 - Cross-Site Request Forgery to Arbitrary Options Update
The WooCommerce Report plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.5.1. This is due to missing or incorrect nonce validation on the settings update functionality. This makes it possible for unauthenticated attackers to update arbitrary opβ¦
8.1
CVE-2024-10114 - Social Login - WordPress / WooCommerce Plugin <= 2.7.7 - Authentication Bypass via WordPress.com OAβ¦
The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.7.7. This is due to insufficient verification on the user being returned by the social login token. This makes it possible for unauthenticated attackers to log in as anβ¦