|
250701
|
9.8 |
CRITICAL
Network
|
majas-lapu-izstrade
|
cartbounty
|
Cross-Site Request Forgery (CSRF) vulnerability in Streamline.Lv CartBounty – Save and recover abandoned carts for WooCommerce allows Cross Site Request Forgery.This issue affects CartBounty – Save a…
|
CWE-352
Origin Validation Error
|
CVE-2024-47634
|
2024-10-23 03:46 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250702
|
8.8 |
HIGH
Network
|
dublue
|
table_of_contents_plus
|
Cross-Site Request Forgery (CSRF) vulnerability in Michael Tran Table of Contents Plus allows Cross Site Request Forgery.This issue affects Table of Contents Plus: from n/a through 2408.
|
CWE-352
Origin Validation Error
|
CVE-2024-49250
|
2024-10-23 03:44 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250703
|
8.8 |
HIGH
Network
|
wpwebinfotech
|
social_auto_poster
|
Cross-Site Request Forgery (CSRF) vulnerability in WPWeb Social Auto Poster allows Cross Site Request Forgery.This issue affects Social Auto Poster: from n/a through 5.3.15.
|
CWE-352
Origin Validation Error
|
CVE-2024-49272
|
2024-10-23 03:40 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250704
|
8.8 |
HIGH
Network
|
infomaniak
|
vod_infomaniak
|
Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Staff VOD Infomaniak allows Cross Site Request Forgery.This issue affects VOD Infomaniak: from n/a through 1.5.7.
|
CWE-352
Origin Validation Error
|
CVE-2024-49274
|
2024-10-23 03:39 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250705
|
8.8 |
HIGH
Network
|
northernbeacheswebsites
|
ideapush
|
Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson IdeaPush allows Cross Site Request Forgery.This issue affects IdeaPush: from n/a through 8.69.
|
CWE-352
Origin Validation Error
|
CVE-2024-49275
|
2024-10-23 03:36 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250706
|
8.8 |
HIGH
Network
|
wp-buy
|
wp_content_copy_protection_\&_no_right_click
|
Cross-Site Request Forgery (CSRF) vulnerability in WP-buy WP Content Copy Protection & No Right Click allows Cross Site Request Forgery.This issue affects WP Content Copy Protection & No Right Click:…
|
CWE-352
Origin Validation Error
|
CVE-2024-49306
|
2024-10-23 03:35 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250707
|
8.8 |
HIGH
Network
|
boxystudio
|
cooked
|
Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue affects Cooked Pro: from n/a before 1.8.0.
|
CWE-352
Origin Validation Error
|
CVE-2024-49290
|
2024-10-23 03:35 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250708
|
5.4 |
MEDIUM
Network
|
phpgurukul
|
hospital_management_system
|
PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and medhis parameters in doctor/add-patient.php and doctor/edit-patient.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-46237
|
2024-10-23 03:35 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250709
|
8.8 |
HIGH
Network
|
noorsplugin
|
wordpress_image_seo
|
Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This issue affects WordPress Image SEO: from n/a through 1.1.4.
|
CWE-352
Origin Validation Error
|
CVE-2024-49627
|
2024-10-23 03:33 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250710
|
8.8 |
HIGH
Network
|
wpdiscover
|
photo_gallery_builder
|
Subscriber Broken Access Control in Photo Gallery Builder <= 3.0 versions.
|
CWE-862
Missing Authorization
|
CVE-2024-49325
|
2024-10-23 03:33 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|