Latest CVE Feed
-
6.1
MEDIUMCVE-2024-42930
PbootCMS 3.2.8 is vulnerable to URL Redirect.... Read more
Affected Products : pbootcms- Published: Oct. 28, 2024
- Modified: Apr. 17, 2025
-
9.8
CRITICALCVE-2024-39205
An issue in pyload-ng v0.5.0b3.dev85 running under python3.11 or below allows attackers to execute arbitrary code via a crafted HTTP request.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 30, 2024
-
5.4
MEDIUMCVE-2024-9825
The Chef Habitat builder-api on-prem-builder package with any version lower than habitat/builder-api/10315/20240913162802 is vulnerable to indirect object reference (IDOR) by un-authorized deletion of personal token. Habitat builder consumes builder-api... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
1.8
LOWCVE-2024-5532
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ Operations Agent. The XSS vulnerability could allow an attacker with local admin permissions to manipulate the content of the internal... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50437
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AyeCode GeoDirectory allows Stored XSS.This issue affects GeoDirectory: from n/a through 2.3.80.... Read more
Affected Products : geodirectory- Published: Oct. 28, 2024
- Modified: Mar. 13, 2025
-
6.5
MEDIUMCVE-2024-50433
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wowDevs Sky Addons for Elementor allows Stored XSS.This issue affects Sky Addons for Elementor: from n/a through 2.5.15.... Read more
Affected Products : sky_addons_for_elementor- Published: Oct. 28, 2024
- Modified: Feb. 05, 2025
-
6.5
MEDIUMCVE-2024-50432
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins Post Grid and Gutenberg Blocks allows Stored XSS.This issue affects Post Grid and Gutenberg Blocks: from n/a through 2.2.93.... Read more
Affected Products : post_grid- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
5.9
MEDIUMCVE-2024-50431
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cloudways Breeze allows Stored XSS.This issue affects Breeze: from n/a through 2.1.14.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50429
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPBlockArt Magazine Blocks allows Stored XSS.This issue affects Magazine Blocks: from n/a through 1.3.15.... Read more
Affected Products : magazine_blocks- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
5.4
MEDIUMCVE-2024-9629
The Contact Form 7 + Telegram plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'wpcf7_Telegram::ajax' function in versions up to, and including, 0.8.5. This makes it possible... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50469
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Team Bright Vessel Textboxes allows DOM-Based XSS.This issue affects Textboxes: from n/a through 0.1.3.1.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50468
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Michael Robinson Raptor Editor allows DOM-Based XSS.This issue affects Raptor Editor: from n/a through 1.0.20.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50467
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WebXApp Scrollbar by webxapp – Best vertical/horizontal scrollbars plugin allows Stored XSS.This issue affects Scrollbar by webxapp – Best vertica... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50464
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Pierre Lebedel Kodex Posts likes allows Stored XSS.This issue affects Kodex Posts likes: from n/a through 2.5.0.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50462
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Fla-shop Interactive World Map allows Stored XSS.This issue affects Interactive World Map: from n/a through 3.4.4.... Read more
Affected Products :- Published: Oct. 28, 2024
- Modified: Oct. 29, 2024
-
6.5
MEDIUMCVE-2024-50461
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper EmbedPress allows Stored XSS.This issue affects EmbedPress: from n/a through 4.0.14.... Read more
Affected Products : embedpress- Published: Oct. 28, 2024
- Modified: Nov. 13, 2024
-
5.9
MEDIUMCVE-2024-50460
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in FirelightWP Firelight Lightbox allows Stored XSS.This issue affects Firelight Lightbox: from n/a through 2.3.3.... Read more
Affected Products : firelight_lightbox- Published: Oct. 28, 2024
- Modified: Nov. 13, 2024
-
6.5
MEDIUMCVE-2024-50458
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Codeus Advanced Sermons allows Stored XSS.This issue affects Advanced Sermons: from n/a through 3.4.... Read more
Affected Products : advanced_sermons- Published: Oct. 28, 2024
- Modified: Nov. 13, 2024
-
6.5
MEDIUMCVE-2024-50451
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Stored XSS.This issue affects WordPress Meta Data and Taxonomies Filter (MDTF):... Read more
Affected Products : meta_data_and_taxonomies_filter- Published: Oct. 28, 2024
- Modified: Nov. 13, 2024
-
6.5
MEDIUMCVE-2024-50449
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in RedefiningTheWeb PDF Generator Addon for Elementor Page Builder allows Stored XSS.This issue affects PDF Generator Addon for Elementor Page Builde... Read more
Affected Products : pdf_generator_addon_for_elementor_page_builder- Published: Oct. 28, 2024
- Modified: Nov. 08, 2024