3151
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
ceph: fix memory leak in ceph_direct_read_write()
The bvecs array which is allocated in iter_get_bvecs_alloc() is leaked
and page…
|
-
|
CVE-2024-56710
|
2025-01-2 23:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3152
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Hait Post Grid Elementor Addon allows Stored XSS.This issue affects Post Grid Elementor Addon:…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56268
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3153
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CoolPlugins Coins MarketCap allows DOM-Based XSS.This issue affects Coins MarketCap: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56257
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3154
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Markyis Cool Olivia allows Reflected XSS.This issue affects Olivia: from n/a through 0.9.5.
|
CWE-79
Cross-site Scripting
|
CVE-2024-56014
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3155
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in CridioStudio ListingPro allows Authentication Bypass.This issue affects ListingPro: from n/a through 2.9.4.
|
CWE-352
Origin Validation Error
|
CVE-2024-39623
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3156
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Epsiloncool WP Fast Total Search.This issue affects WP Fast Total Search: from n/a through 1.69.234.
|
CWE-352
Origin Validation Error
|
CVE-2024-38778
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3157
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Marsian allows Cross Site Request Forgery.This issue affects i-transform: from n/a through 3.0.9.
|
CWE-352
Origin Validation Error
|
CVE-2024-38764
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3158
|
- |
|
-
|
-
|
A vulnerability was found in Beijing Yunfan Internet Technology Yunfan Learning Examination System 1.9.2. It has been rated as critical. This issue affects some unknown processing of the file /doc.ht…
|
CWE-285 CWE-266
Improper Authorization Incorrect Privilege Assignment
|
CVE-2024-13109
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3159
|
- |
|
-
|
-
|
A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. It has been declared as critical. This vulnerability affects unknown code of the file /goform/form2NetSniper.cgi. The manipulati…
|
CWE-284 CWE-266
Improper Access Control Incorrect Privilege Assignment
|
CVE-2024-13108
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3160
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ConvertCalculator ConvertCalculator for WordPress allows Stored XSS.This issue affects ConvertCal…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56302
|
2025-01-2 21:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|