101
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Sonaar Music MP3 Audio Player for Music, Radio & Podcast by Sonaar allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects MP3 Audio …
New
|
CWE-862
Missing Authorization
|
CVE-2024-56266
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
102
|
- |
|
-
|
-
|
Unrestricted Upload of File with Dangerous Type vulnerability in Beee ACF City Selector allows Upload a Web Shell to a Web Server.This issue affects ACF City Selector: from n/a through 1.14.0.
New
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-56264
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
103
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GS Plugins GS Shots for Dribbble allows DOM-Based XSS.This issue affects GS Shots for Dribbble: f…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56263
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
104
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GS Plugins GS Coaches allows Stored XSS.This issue affects GS Coaches: from n/a through 1.1.0.
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56262
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
105
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GS Plugins Project Showcase allows Stored XSS.This issue affects Project Showcase: from n/a throu…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56261
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
106
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StorePlugin ShopElement allows Stored XSS.This issue affects ShopElement: from n/a through 2.0.0.
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56260
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
107
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AyeCode - WP Business Directory Plugins GeoDirectory allows Stored XSS.This issue affects GeoDire…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56259
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
108
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPBlockArt Magazine Blocks allows Stored XSS.This issue affects Magazine Blocks: from n/a through…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56258
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
109
|
- |
|
-
|
-
|
Missing Authorization vulnerability in AyeCode AyeCode Connect allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AyeCode Connect: from n/a through 1.3.8.
New
|
CWE-862
Missing Authorization
|
CVE-2024-56255
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
110
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in moveaddons Move Addons for Elementor allows Stored XSS.This issue affects Move Addons for Element…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-56254
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|