1031
|
7.1 |
HIGH
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions starting from 8.15 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. It was po…
|
CWE-601
Open Redirect
|
CVE-2023-3922
|
2024-10-9 04:07 |
2023-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1032
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions starting from 11.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. It was po…
|
CWE-863
Incorrect Authorization
|
CVE-2023-3920
|
2024-10-9 04:07 |
2023-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1033
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A l…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2023-5825
|
2024-10-9 04:01 |
2023-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1034
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. It was…
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2023-6736
|
2024-10-9 04:00 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1035
|
6.1 |
MEDIUM
Network
|
yoginetwork
|
rabbitloader
|
The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8800
|
2024-10-9 03:59 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1036
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
A missing authorization check vulnerability exists in GitLab Remote Development affecting all versions prior to 16.5.6, 16.6 prior to 16.6.4 and 16.7 prior to 16.7.2. This condition allows an attacke…
|
CWE-862
Missing Authorization
|
CVE-2023-6955
|
2024-10-9 03:59 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1037
|
7.5 |
HIGH
Network
wireshark
|
wireshark
|
GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
|
NVD-CWE-Other
|
CVE-2024-0208
|
2024-10-9 03:58 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1038
|
7.5 |
HIGH
Network
wireshark
|
wireshark
|
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2024-0211
|
2024-10-9 03:57 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1039
|
6.1 |
MEDIUM
Network
|
themes4wp
|
popularis_extra
|
The Popularis Extra plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9353
|
2024-10-9 03:50 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1040
|
5.4 |
MEDIUM
Network
|
iworks
|
pwa
|
The PWA — easy way to Progressive Web App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.3 due to insufficient input …
|
CWE-79
Cross-site Scripting
|
CVE-2024-8967
|
2024-10-9 03:47 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|