|
309941
|
5.3 |
MEDIUM
Network
|
wpcerber
|
cerber_security_antispam_\&_malware_scan
|
The WP Cerber Security plugin for WordPress is vulnerable to IP Protection bypass in versions up to, and including 9.4 due to the plugin improperly checking for a visitor's IP address. This makes it …
|
NVD-CWE-noinfo
|
CVE-2022-4100
|
2024-09-20 09:08 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309942
|
5.3 |
MEDIUM
Network
|
youtag
|
ip-vault-wp-firewall
|
The IP Vault – WP Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1.1. This is due to insufficient restrictions on where the IP Address informatio…
|
NVD-CWE-Other
|
CVE-2022-4536
|
2024-09-20 09:04 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309943
|
6.3 |
MEDIUM
Network
|
microsoft
|
edge_chromium
|
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
|
CWE-787
Out-of-bounds Write
|
CVE-2024-38207
|
2024-09-20 07:15 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309944
|
7.8 |
HIGH
Local
|
microsoft
|
edge_chromium
|
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
CWE-125
Out-of-bounds Read
|
CVE-2024-38210
|
2024-09-20 07:15 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309945
|
7.8 |
HIGH
Local
|
microsoft
|
edge_chromium
|
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
CWE-843
Type Confusion
|
CVE-2024-38209
|
2024-09-20 07:15 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309946
|
6.1 |
MEDIUM
Network
|
microsoft
|
edge
|
Microsoft Edge for Android Spoofing Vulnerability
|
CWE-79
Cross-site Scripting
|
CVE-2024-38208
|
2024-09-20 07:15 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309947
|
5.4 |
MEDIUM
Network
|
wpbeaveraddons
|
powerpack_lite_for_beaver_builder
|
The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘type’ parameter in all versions up to, and including, 2.8.3.5 due to insufficien…
|
CWE-79
Cross-site Scripting
|
CVE-2024-7895
|
2024-09-20 07:13 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309948
|
5.4 |
MEDIUM
Network
|
funnelkit
|
funnel_builder
|
The FunnelKit Funnel Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_iframe_tag_in_post' function which uses the 'wp_kses_allowed_html' filter to globally…
|
CWE-79
Cross-site Scripting
|
CVE-2024-1056
|
2024-09-20 07:06 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309949
|
9.8 |
CRITICAL
Network
|
geeeeeeeek
|
dingfanzu
|
A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been rated as critical. Affected by this issue is some unknown functionality of the file /ajax/chpwd.…
|
CWE-89
SQL Injection
|
CVE-2024-8302
|
2024-09-20 06:55 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309950
|
9.8 |
CRITICAL
Network
|
stylemixthemes
|
cost_calculator_builder
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cost Calculator Builder allows SQL Injection.This issue affects Cost Calculator Bu…
|
CWE-89
SQL Injection
|
CVE-2024-43144
|
2024-09-20 06:47 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|