|
312971
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
tempera
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Tempera allows Stored XSS.This issue affects Tempera: from n/a through 1.8…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43951
|
2024-08-31 01:17 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312972
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
esotera
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Esotera allows Stored XSS.This issue affects Esotera: from n/a through 1.2…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43952
|
2024-08-31 01:16 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312973
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-8064
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312974
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7712
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312975
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7051
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312976
|
6.1 |
MEDIUM
Network
|
gianniporto
|
intothedark
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gianni Porto IntoTheDark allows Reflected XSS.This issue affects IntoTheDark: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43958
|
2024-08-31 01:15 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312977
|
6.5 |
MEDIUM
Network
|
stitionai
|
devika
|
stitionai/devika main branch as of commit cdfb782b0e634b773b10963c8034dc9207ba1f9f is vulnerable to Local File Read (LFI) by Prompt Injection. The integration of Google Gimini 1.0 Pro with `HarmBlock…
|
CWE-74
Injection
|
CVE-2024-6331
|
2024-08-31 01:15 |
2024-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312978
|
4.8 |
MEDIUM
Network
|
pagebuilderaddons
|
web_and_woocommerce_addons_for_wpbakery_builder
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Page Builder Addons Web and WooCommerce Addons for WPBakery Builder allows Stored XSS.This…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43960
|
2024-08-31 01:12 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312979
|
6.1 |
MEDIUM
Network
|
waspthemes
|
yellowpencil
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WaspThemes YellowPencil Visual CSS Style Editor allows Reflected XSS.This issue affects Ye…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43963
|
2024-08-31 01:10 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312980
|
7.5 |
HIGH
Network
|
ollama
|
ollama
|
extractFromZipFile in model.go in Ollama before 0.1.47 can extract members of a ZIP archive outside of the parent directory.
|
CWE-22
Path Traversal
|
CVE-2024-45436
|
2024-08-31 01:08 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|