1131
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nurul Amin, Mohammad Saiful Islam WP Smart Tooltip allows Stored XSS. This issue affects WP Smart…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23669
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1132
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Saul Morales Pacheco Donate visa allows Stored XSS. This issue affects Donate visa: from n/a through 1.0.0.
|
CWE-862
Missing Authorization
|
CVE-2025-23656
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1133
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jonathan Lau CubePM allows Reflected XSS. This issue affects CubePM: from n/a through 1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2025-23574
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1134
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David F. Carr RSVPMaker Volunteer Roles allows Reflected XSS. This issue affects RSVPMaker Volunt…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23531
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1135
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Blokhaus Minterpress allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Minterpress: from n/a through 1.0.5.
|
CWE-862
Missing Authorization
|
CVE-2025-23529
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1136
|
- |
|
-
|
-
|
The Altra Side Menu WordPress plugin through 2.0 does not have CSRF checks in some places, which could allow attackers to make logged in admins delete arbitrary menu via a CSRF attack
|
-
|
CVE-2024-12774
|
2025-01-28 00:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1137
|
7.5 |
HIGH
Network
linuxfoundation
|
magma
|
The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_esm_message_container function at /nas/ie…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-24423
|
2025-01-27 23:39 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1138
|
7.5 |
HIGH
Network
linuxfoundation
|
magma
|
Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-based crash when an oversized NAS packet is received. An attacker may leverage …
|
CWE-617
Reachable Assertion
|
CVE-2023-37029
|
2025-01-27 23:39 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1139
|
6.5 |
MEDIUM
Adjacent
|
linuxfoundation
|
magma
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-37037
|
2025-01-27 23:34 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1140
|
6.5 |
MEDIUM
Adjacent
|
linuxfoundation
|
magma
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-37034
|
2025-01-27 23:34 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|