Latest CVE Feed
-
5.5
MEDIUMCVE-2024-47157
Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
7.5
HIGHCVE-2024-11282
The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.10 via the WordPress core search feature. This makes it possible for unauthenticated attackers... Read more
- Published: Jan. 07, 2025
- Modified: Jun. 05, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2024-47155
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-8992
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
6.2
MEDIUMCVE-2024-8993
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
6.2
MEDIUMCVE-2024-8994
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
6.4
MEDIUMCVE-2024-12073
The Meteor Slides plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'slide_url_value' parameter in all versions up to, and including, 1.5.7 due to insufficient input sanitization and output escaping. This makes it possible for auth... Read more
Affected Products : meteor_slides- Published: Jan. 07, 2025
- Modified: Jun. 05, 2025
- Vuln Type: Cross-Site Scripting
-
6.1
MEDIUMCVE-2024-12290
The Infility Global plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘set_type’ parameter in all versions up to, and including, 2.9.8 due to insufficient input sanitization and output escaping. This makes it possible for unauth... Read more
Affected Products : infility_global- Published: Jan. 07, 2025
- Modified: Jun. 05, 2025
- Vuln Type: Cross-Site Scripting
-
6.5
MEDIUMCVE-2024-11496
The Infility Global plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the infility_global_ajax function in all versions up to, and including, 2.9.8. This makes it possible for authenticated attack... Read more
Affected Products : infility_global- Published: Jan. 07, 2025
- Modified: Jun. 05, 2025
- Vuln Type: Authorization
-
5.5
MEDIUMCVE-2024-47150
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-47149
Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
5.4
MEDIUMCVE-2024-12545
The Scratch & Win – Giveaways and Contests. Boost subscribers, traffic, repeat visits, referrals, sales and more plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.1. This is due to missing nonce va... Read more
- Published: Jan. 04, 2025
- Modified: Jun. 05, 2025
- Vuln Type: Cross-Site Request Forgery
-
7.8
HIGHCVE-2024-47151
Some Honor products are affected by file writing vulnerability, successful exploitation could cause code execution... Read more
- Published: Dec. 26, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-35421
vmir e8117 was discovered to contain a segmentation violation via the wasm_parse_block function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
7.8
HIGHCVE-2024-35422
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_call function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
7.8
HIGHCVE-2024-35423
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_parse_section_functions function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-35424
vmir e8117 was discovered to contain a segmentation violation via the import_function function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-35425
vmir e8117 was discovered to contain a segmentation violation via the function_prepare_parse function at /src/vmir_function.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
9.8
CRITICALCVE-2024-35426
vmir e8117 was discovered to contain a stack overflow via the init_local_vars function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025
-
5.5
MEDIUMCVE-2024-35427
vmir e8117 was discovered to contain a segmentation violation via the export_function function at /src/vmir_wasm_parser.c.... Read more
Affected Products : vmir- Published: Nov. 08, 2024
- Modified: Jun. 05, 2025