551
|
- |
|
-
|
-
|
ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of the model management feature, allowing them to execu…
|
-
|
CVE-2024-57099
|
2025-02-5 01:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
552
|
- |
|
-
|
-
|
Moss v0.1.3 version has an SQL injection vulnerability that allows attackers to inject carefully designed payloads into the order parameter.
|
-
|
CVE-2024-57098
|
2025-02-5 01:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
553
|
- |
|
-
|
-
|
An issue was discovered in Open5gs v2.7.2. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of gmm_state_exception() function upon receipt …
|
-
|
CVE-2024-56921
|
2025-02-5 01:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
554
|
- |
|
-
|
-
|
itsourcecode Placement Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Full Name field in registration.php.
|
-
|
CVE-2024-50656
|
2025-02-5 01:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
555
|
- |
|
-
|
-
|
lunasvg v3.0.1 was discovered to contain a segmentation violation via the component gray_find_cell
|
-
|
CVE-2024-55456
|
2025-02-5 01:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
556
|
5.4 |
MEDIUM
Network
|
motopress
|
stratum
|
The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Hotspot widget in all versions up to, and including, 1.4.7 due to insufficient…
|
CWE-79
Cross-site Scripting
|
CVE-2024-13642
|
2025-02-5 01:00 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
557
|
6.1 |
MEDIUM
Network
|
metagauss
|
registrationmagic
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss User Registration Forms RegistrationMagic allows Reflected XSS. This issue affects Regi…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24686
|
2025-02-5 00:51 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
558
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vsock/virtio: discard packets if the transport changes
If the socket has been de-assigned or assigned to another transport,
we mu…
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-21669
|
2025-02-5 00:38 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
559
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vsock/bpf: return early if transport is not assigned
Some of the core functions can only be called if the transport
has been assi…
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-21670
|
2025-02-5 00:37 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
560
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
zram: fix potential UAF of zram table
If zram_meta_alloc failed early, it frees allocated zram->table without
setting it NULL. W…
|
CWE-416
Use After Free
|
CVE-2025-21671
|
2025-02-5 00:36 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|