1701
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Podlove Podlove Podcast Publisher allows Code Injection.This issue affects Podlove Podcast Publisher: from n/a through 4.1.13.
|
CWE-352
Origin Validation Error
|
CVE-2024-43984
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1702
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in WPMobile.App allows Stored XSS.This issue affects WPMobile.App: from n/a through 11.48.
|
CWE-352
Origin Validation Error
|
CVE-2024-43933
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1703
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in eyecix JobSearch allows Cross Site Request Forgery.This issue affects JobSearch: from n/a through 2.5.3.
|
-
|
CVE-2024-43930
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1704
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in Apache Lucene.Net.Replicator.
This issue affects Apache Lucene.NET's Replicator library: from 4.8.0-beta00005 through 4.8.0-beta00016.
An attacker…
|
-
|
CVE-2024-43383
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1705
|
- |
|
-
|
-
|
HCL AppScan Source <= 10.6.0 does not properly validate a TLS/SSL certificate for an executable.
|
-
|
CVE-2024-30149
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1706
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The WP Simple Anchors Links plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpanchor shortcode in all versions up to, and including, 1.0.0 due to insufficient input…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9446
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1707
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The WPGlobus Translate Options plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.2.0. This is due to missing or incorrect nonce validation on th…
|
-
|
CVE-2024-9434
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1708
|
5.3 |
MEDIUM
Network
-
|
-
|
The Get Quote For Woocommerce – Request A Quote For Woocommerce plugin for WordPress is vulnerable to unauthorized access of Quote data due to a missing capability check on the ct_tepfw_wp_loaded fun…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2024-9430
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1709
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 4.4.4 …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9165
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1710
|
5.3 |
MEDIUM
Network
-
|
-
|
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.36.0 via the sub…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-9700
|
2024-11-1 21:57 |
2024-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|