41
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tobias Spiess TS Comfort DB allows Reflected XSS.This issue affects TS Comfort DB: from n/a throu…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22345
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
42
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in P3JX Cf7Save Extension allows Reflected XSS.This issue affects Cf7Save Extension: from n/a throug…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22331
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
43
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mahesh Waghmare MG Parallax Slider allows Reflected XSS.This issue affects MG Parallax Slider: fr…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22330
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
44
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OTWthemes Widgetize Pages Light allows Reflected XSS.This issue affects Widgetize Pages Light: fr…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22313
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
45
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeAstrology Team Product Table for WooCommerce allows Reflected XSS.This issue affects Product …
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22307
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
46
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tripetto WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto allows S…
New
|
CWE-79
Cross-site Scripting
|
CVE-2025-22295
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
47
|
- |
|
-
|
-
|
A vulnerability in the Gen7 SonicOS Cloud platform NSv, allows a remote authenticated local low-privileged attacker to elevate privileges to `root` and potentially lead to code execution.
New
|
-
|
CVE-2024-53706
|
2025-01-10 01:16 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
48
|
- |
|
-
|
-
|
Bangkok Medical Software HOSxP XE v4.64.11.3 was discovered to contain a hardcoded IDEA Key-IV pair in the HOSxPXE4.exe and HOS-WIN32.INI components. This allows attackers to access sensitive informa…
New
|
-
|
CVE-2024-53522
|
2025-01-10 01:16 |
2025-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
49
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: at_xdmac: avoid null_prt_deref in at_xdmac_prep_dma_memset
The at_xdmac_memset_create_desc may return NULL, which will…
New
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-56767
|
2025-01-10 01:16 |
2025-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
50
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
media: dvb-frontends: dib3000mb: fix uninit-value in dib3000_write_reg
Syzbot reports [1] an uninitialized value issue found by K…
New
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-56769
|
2025-01-10 01:16 |
2025-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|