|
249301
|
9.0 |
CRITICAL
Network
|
lollms
|
lord_of_large_language_models
|
A vulnerability in the discussion image upload function of the Lollms application, version v9.9, allows for the uploading of SVG files. Due to incomplete filtering in the sanitize_svg function, this …
|
CWE-79
Cross-site Scripting
|
CVE-2024-6581
|
2024-11-2 04:38 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249302
|
6.5 |
MEDIUM
Network
|
trendmicro
|
deep_discovery_inspector
|
A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow an attacker to disclose sensitive information affected installations.
Please note: an attacker must…
|
NVD-CWE-noinfo
|
CVE-2024-46903
|
2024-11-2 04:35 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249303
|
- |
|
-
|
-
|
Tacquito prior to commit 07b49d1358e6ec0b5aa482fcd284f509191119e2 was not properly performing regex matches on authorized commands and arguments. Configured allowed commands/arguments were intended t…
|
-
|
CVE-2024-49400
|
2024-11-2 04:35 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249304
|
- |
|
-
|
-
|
A stored cross-site scripting (XSS) vulnerability in the VLAN configuration of RELY-PCIe v22.2.1 to v23.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
|
-
|
CVE-2024-44573
|
2024-11-2 04:35 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249305
|
9.8 |
CRITICAL
Network
|
langchain
|
langchain
|
A vulnerability in the GraphCypherQAChain class of langchain-ai/langchain version 0.2.5 allows for SQL injection through prompt injection. This vulnerability can lead to unauthorized data manipulatio…
|
CWE-74
Injection
|
CVE-2024-8309
|
2024-11-2 04:19 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249306
|
6.1 |
MEDIUM
Network
|
campusexplorer
|
widget
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Campus Explorer Campus Explorer Widget allows Reflected XSS.This issue affects Campus Expl…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49660
|
2024-11-2 04:01 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249307
|
6.1 |
MEDIUM
Network
|
webgensis
|
simple_load_more
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webgensis Simple Load More allows Reflected XSS.This issue affects Simple Load More: from …
|
CWE-79
Cross-site Scripting
|
CVE-2024-49662
|
2024-11-2 03:56 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249308
|
6.1 |
MEDIUM
Network
|
leenk
|
leenk.me
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Lew Ayotte leenk.Me allows Reflected XSS.This issue affects leenk.Me: from n/a through 2.1…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49661
|
2024-11-2 03:56 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249309
|
5.4 |
MEDIUM
Network
|
webbricks
|
web_bricks_addons
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Web Bricks Web Bricks Addons for Elementor allows Stored XSS.This issue affects Web Bricks…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49665
|
2024-11-2 03:55 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249310
|
6.1 |
MEDIUM
Network
|
chatplusjp
|
chatplusjp
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in allows Reflected XSS.This issue affects chatplusjp: from n/a through 1.02.
|
CWE-79
Cross-site Scripting
|
CVE-2024-49664
|
2024-11-2 03:55 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|