|
248221
|
7.3 |
HIGH
Network
|
-
|
-
|
The The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via gamipress_get_user_e…
|
CWE-94
Code Injection
|
CVE-2024-11036
|
2024-11-19 20:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248222
|
5.5 |
MEDIUM
Network
|
-
|
-
|
The SVG Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 1.1.24 due to insufficient input sanitization and o…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11098
|
2024-11-19 17:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248223
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The WordPress GDPR plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'WordPress_GDPR_Data_Delete::check_action' function in all versions up to, …
|
-
|
CVE-2024-11069
|
2024-11-19 17:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248224
|
7.2 |
HIGH
Network
|
-
|
-
|
The WordPress GDPR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gdpr_firstname' and 'gdpr_lastname' parameters in all versions up to, and including, 2.0.2 due to insuffi…
|
CWE-79
Cross-site Scripting
|
CVE-2024-10388
|
2024-11-19 17:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248225
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's sonaar_audioplayer shortcode in all versions u…
|
CWE-79
Cross-site Scripting
|
CVE-2024-10268
|
2024-11-19 17:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248226
|
- |
|
-
|
-
|
Versions of the package @eslint/plugin-kit before 0.2.3 are vulnerable to Regular Expression Denial of Service (ReDoS) due to improper input sanitization. An attacker can increase the CPU usage and c…
|
-
|
CVE-2024-21539
|
2024-11-19 14:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248227
|
8.1 |
HIGH
Network
|
microsoft
|
lightgbm
|
LightGBM Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43598
|
2024-11-19 12:52 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248228
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2
|
Windows Update Stack Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43530
|
2024-11-19 12:52 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248229
|
9.9 |
CRITICAL
Network
|
microsoft
|
azure_cyclecloud
|
Azure CycleCloud Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43602
|
2024-11-19 12:40 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248230
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_server_2022_23h2 windows…
|
Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43624
|
2024-11-19 12:16 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|