|
313451
|
5.4 |
MEDIUM
Network
|
sktthemes
|
skt_blocks
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SKT Themes SKT Blocks – Gutenberg based Page Builder allows Stored XSS.This issue affects …
|
CWE-79
Cross-site Scripting
|
CVE-2024-43946
|
2024-09-4 00:21 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313452
|
5.4 |
MEDIUM
Network
|
wpdeveloper
|
embedpress
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper EmbedPress allows Stored XSS.This issue affects EmbedPress: from n/a through 4…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43936
|
2024-09-4 00:20 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313453
|
5.4 |
MEDIUM
Network
|
wpdelicious
|
wp_delicious
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Delicious Delicious Recipes – WordPress Recipe Plugin allows Stored XSS.This issue affe…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43935
|
2024-09-4 00:19 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313454
|
5.4 |
MEDIUM
Network
|
robfelty
|
collapsing_archives
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Robert Felty Collapsing Archives allows Stored XSS.This issue affects Collapsing Archives:…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43934
|
2024-09-4 00:17 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313455
|
6.1 |
MEDIUM
Network
|
wpbeaverbuilder
|
beaver_builder
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Beaver Builder Team Beaver Builder allows Reflected XSS.This issue affects Beaver Buil…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43926
|
2024-09-4 00:15 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313456
|
6.1 |
MEDIUM
Network
|
webpack.js
|
webpack
|
Webpack is a module bundler. Its main purpose is to bundle JavaScript files for usage in a browser, yet it is also capable of transforming, bundling, or packaging just about any resource or asset. Th…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43788
|
2024-09-4 00:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313457
|
5.9 |
MEDIUM
Network
|
matter-labs
|
zksolc
|
zksolc is a Solidity compiler for ZKsync. All LLVM versions since 2015 fold `(xor (shl 1, x), -1)` to `(rotl ~1, x)` if run with optimizations enabled. Here `~1` is generated as an unsigned 64 bits n…
|
CWE-682
Incorrect Calculation
|
CVE-2024-45056
|
2024-09-4 00:14 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313458
|
6.1 |
MEDIUM
Network
|
collabora
|
online
|
Collabora Online is a collaborative online office suite based on LibreOffice technology. In the mobile (Android/iOS) device variants of Collabora Online it was possible to inject JavaScript via url e…
|
CWE-79
Cross-site Scripting
|
CVE-2024-45045
|
2024-09-4 00:13 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313459
|
- |
|
-
|
-
|
BPL Personal Weighing Scale PWS-01BT IND/09/18/599 devices send sensitive information in unencrypted BLE packets. (The packet data also lacks authentication and integrity protection.)
|
-
|
CVE-2024-34463
|
2024-09-4 00:12 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313460
|
8.8 |
HIGH
Network
|
muffingroup
|
betheme
|
The Betheme theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 27.5.6 via deserialization of untrusted input of the 'mfn-page-items' post meta value. This…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-2694
|
2024-09-4 00:10 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|