Aggregator
CVE-2024-38827 | VMware Spring Security up to 6.3.4 Authorization Rule String.toLowerCase/String.toUpperCase authorization
9 months ago
A vulnerability was found in VMware Spring Security up to 6.3.4. It has been declared as problematic. Affected by this vulnerability is the function String.toLowerCase/String.toUpperCase of the component Authorization Rule Handler. The manipulation leads to authorization bypass.
This vulnerability is known as CVE-2024-38827. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
G.O.S.S.I.P 阅读推荐 2024-12-02 TensorAbuse
9 months ago
CVE-2024-53776 | Raphael Heide Donate Me Plugin up to 1.2.5 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Raphael Heide Donate Me Plugin up to 1.2.5 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-53776. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-53779 | Max Engel Yahoo WebPlayer Plugin up to 2.0.6 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Max Engel Yahoo WebPlayer Plugin up to 2.0.6 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-53779. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53781 | Home Junction SpatialMatch IDX Plugin up to 3.0.9 on WordPress cross-site request forgery
9 months ago
A vulnerability has been found in Home Junction SpatialMatch IDX Plugin up to 3.0.9 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-53781. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53777 | Alberto Reineri Simple Header and Footer Plugin up to 1.0.0 on WordPress cross-site request forgery
9 months ago
A vulnerability, which was classified as problematic, was found in Alberto Reineri Simple Header and Footer Plugin up to 1.0.0 on WordPress. This affects an unknown part. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2024-53777. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-53782 | CMSaccount Photo Video Store Plugin up to 21.07 on WordPress cross-site request forgery
9 months ago
A vulnerability, which was classified as problematic, has been found in CMSaccount Photo Video Store Plugin up to 21.07 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2024-53782. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-53770 | Peter MacIntyre RingCentral Communications Plugin up to 1.6.1 on WordPress Communication cross-site request forgery
9 months ago
A vulnerability classified as problematic was found in Peter MacIntyre RingCentral Communications Plugin up to 1.6.1 on WordPress. Affected by this vulnerability is an unknown functionality of the component Communication Handler. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-53770. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-53780 | Rajeev Chauhan Load More Posts Plugin up to 1.4.0 on WordPress cross-site request forgery
9 months ago
A vulnerability classified as problematic has been found in Rajeev Chauhan Load More Posts Plugin up to 1.4.0 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-53780. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
以加密货币钱包为目标的恶意 PyPI 软件包:aiocpa 活动曝光
9 months ago
安全客
CVE-2024-53751 | Abdul Hakeem Build App Online Plugin up to 1.0.22 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Abdul Hakeem Build App Online Plugin up to 1.0.22 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-53751. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53755 | Andrea Pernici Third Party Cookie Eraser Plugin up to 1.0.2 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Andrea Pernici Third Party Cookie Eraser Plugin up to 1.0.2 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-53755. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53725 | Script-Recipes Post Hits Counter Plugin up to 2.8.23 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Script-Recipes Post Hits Counter Plugin up to 2.8.23 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2024-53725. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-53730 | Aaron Hodge Silver Aprils Call Posts Plugin up to 2.1.1 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in Aaron Hodge Silver Aprils Call Posts Plugin up to 2.1.1 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2024-53730. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-53727 | LinkLaunder SEO Plugin up to 0.92.1 on WordPress cross-site request forgery
9 months ago
A vulnerability has been found in LinkLaunder SEO Plugin up to 0.92.1 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-53727. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-53765 | Think201 Mins to Read Plugin up to 1.2.2 on WordPress cross-site request forgery
9 months ago
A vulnerability, which was classified as problematic, was found in Think201 Mins to Read Plugin up to 1.2.2 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-53765. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-53729 | Plumeria Web Design Blizzard Quotes Plugin up to 1.3 on WordPress cross-site request forgery
9 months ago
A vulnerability, which was classified as problematic, has been found in Plumeria Web Design Blizzard Quotes Plugin up to 1.3 on WordPress. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-53729. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53724 | Ronny L. Bull IceStats Plugin up to 1.3 on WordPress cross-site request forgery
9 months ago
A vulnerability classified as problematic was found in Ronny L. Bull IceStats Plugin up to 1.3 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-53724. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-53719 | onigetoc Zajax Plugin up to 0.4 on WordPress cross-site request forgery
9 months ago
A vulnerability classified as problematic has been found in onigetoc Zajax Plugin up to 0.4 on WordPress. This affects an unknown part. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2024-53719. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com