|
250371
|
8.8 |
HIGH
Network
|
openrefine
|
openrefine
|
OpenRefine is a free, open source tool for working with messy data. Starting in version 3.4-beta and prior to version 3.8.3, in the `database` extension, the "enable_load_extension" property can be s…
|
CWE-89
SQL Injection
|
CVE-2024-47881
|
2024-10-28 23:14 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250372
|
7.5 |
HIGH
Network
|
google
|
android
|
there is a possible Null Pointer Dereference (modem crash) due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interacti…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-44101
|
2024-10-28 22:59 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250373
|
- |
|
-
|
-
|
Validate.js provides a declarative way of validating javascript objects. All versions as of 30 November 2020 contain one or more regular expressions that are vulnerable to Regular Expression Denial o…
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-26310
|
2024-10-28 22:58 |
2024-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250374
|
- |
|
-
|
-
|
Validate.js provides a declarative way of validating javascript objects. Versions 0.11.3 and prior contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service …
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-26309
|
2024-10-28 22:58 |
2024-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250375
|
- |
|
-
|
-
|
Validate.js provides a declarative way of validating javascript objects. Versions 0.13.1 and prior contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service …
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-26308
|
2024-10-28 22:58 |
2024-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250376
|
- |
|
-
|
-
|
HTML2Markdown is a Javascript implementation for converting HTML to Markdown text. All available versions contain one or more regular expressions that are vulnerable to Regular Expression Denial of S…
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-26307
|
2024-10-28 22:58 |
2024-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250377
|
- |
|
-
|
-
|
Knwl.js is a Javascript library that parses through text for dates, times, phone numbers, emails, places, and more. Versions 1.0.2 and prior contain one or more regular expressions that are vulnerabl…
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-26306
|
2024-10-28 22:58 |
2024-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250378
|
9.8 |
CRITICAL
Network
|
-
|
-
|
The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 3.0.7. This is due to insufficient verification on th…
|
CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2024-9501
|
2024-10-28 22:58 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250379
|
7.5 |
HIGH
Network
|
-
|
-
|
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to…
|
CWE-862
Missing Authorization
|
CVE-2024-10402
|
2024-10-28 22:58 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250380
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The WP Crowdfunding plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpcf_donate shortcode in all versions up to, and including, 2.1.11 due to insufficient input san…
|
CWE-79
Cross-site Scripting
|
CVE-2024-10117
|
2024-10-28 22:58 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|