Aggregator
«А+» для рекламы: Минцифры представили новый реестр для соцсетей с аудиторией более 10 тысяч
11 months ago
Роскомнадзор вводит систему маркировки для популярных каналов.
CVE-2024-8486 | Shortcodes and Extra Features for Phlox Theme up to 2.16.3 on WordPress Modern Heading Widget/Icon Picker Widget cross site scripting
11 months ago
A vulnerability has been found in Shortcodes and Extra Features for Phlox Theme up to 2.16.3 on WordPress and classified as problematic. This vulnerability affects unknown code of the component Modern Heading Widget/Icon Picker Widget. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-8486. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9417 | Hash Form Plugin up to 1.1.9 on WordPress unrestricted upload
11 months ago
A vulnerability, which was classified as critical, was found in Hash Form Plugin up to 1.1.9 on WordPress. This affects an unknown part. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2024-9417. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9161 | Rank Math SEO Plugin up to 1.0.228 on WordPress authorization
11 months ago
A vulnerability, which was classified as critical, has been found in Rank Math SEO Plugin up to 1.0.228 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2024-9161. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9314 | Rank Math SEO Plugin up to 1.0.228 on WordPress code injection
11 months ago
A vulnerability classified as critical was found in Rank Math SEO Plugin up to 1.0.228 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to code injection.
This vulnerability is known as CVE-2024-9314. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-8743 | Bit File Manager Plugin up to 6.5.7 on WordPress JavaScript File unrestricted upload
11 months ago
A vulnerability classified as critical has been found in Bit File Manager Plugin up to 6.5.7 on WordPress. Affected is an unknown function of the component JavaScript File Handler. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2024-8743. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-43684 | Microchip TimeProvider 4100 up to 2.4.7 cross-site request forgery
11 months ago
A vulnerability was found in Microchip TimeProvider 4100 up to 2.4.7. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.
The identification of this vulnerability is CVE-2024-43684. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-43683 | Microchip TimeProvider 4100 up to 2.4.6 HTTP Header redirect
11 months ago
A vulnerability was found in Microchip TimeProvider 4100 up to 2.4.6. It has been declared as problematic. This vulnerability affects unknown code of the component HTTP Header Handler. The manipulation leads to open redirect.
This vulnerability was named CVE-2024-43683. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47847 | Wikimedia Cargo Extension 3.6.0 on Mediawiki cross site scripting
11 months ago
A vulnerability was found in Wikimedia Cargo Extension 3.6.0 on Mediawiki. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-47847. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47846 | Wikimedia Cargo Extension 3.6.0 on Mediawiki cross-site request forgery
11 months ago
A vulnerability was found in Wikimedia Cargo Extension 3.6.0 on Mediawiki and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2024-47846. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47840 | Wikimedia Apex Skin Extension up to 1.39.8/1.41.2/1.42.1 on Mediawiki cross site scripting
11 months ago
A vulnerability has been found in Wikimedia Apex Skin Extension up to 1.39.8/1.41.2/1.42.1 on Mediawiki and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-47840. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-43687 | Microchip TimeProvider 4100 up to 2.4.6 Banner Config Module cross site scripting
11 months ago
A vulnerability, which was classified as problematic, was found in Microchip TimeProvider 4100 up to 2.4.6. Affected is an unknown function of the component Banner Config Module. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-43687. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-43686 | Microchip TimeProvider 4100 up to 2.4.6 cross site scripting
11 months ago
A vulnerability, which was classified as problematic, has been found in Microchip TimeProvider 4100 up to 2.4.6. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-43686. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-43685 | Microchip TimeProvider 4100 up to 2.4.6 Login Module improper authentication
11 months ago
A vulnerability classified as critical was found in Microchip TimeProvider 4100 up to 2.4.6. This vulnerability affects unknown code of the component Login Module. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-43685. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-26771 | Taskcafe Project Management Tool 0.3.2 SVG Profile Picture cross site scripting
11 months ago
A vulnerability classified as problematic has been found in Taskcafe Project Management Tool 0.3.2. This affects an unknown part of the component SVG Profile Picture Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2023-26771. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-26770 | Taskcafe Project Management Tool 0.3.2 Cookie improper authorization
11 months ago
A vulnerability was found in Taskcafe Project Management Tool 0.3.2. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument Cookie leads to improper authorization.
This vulnerability is handled as CVE-2023-26770. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9528 | techjewel Contact Form Plugin by Fluent Forms for Quiz up to 5.1.19 on WordPress Form Label Field cross site scripting
11 months ago
A vulnerability was found in techjewel Contact Form Plugin by Fluent Forms for Quiz, Survey and and Drag & Drop WP Form Builder up to 5.1.19 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Form Label Field Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-9528. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-47848 | Wikimedia PageTriage Extension up to 1.39.8/1.41.2/1.42.1 on Mediawiki information disclosure
11 months ago
A vulnerability was found in Wikimedia PageTriage Extension up to 1.39.8/1.41.2/1.42.1 on Mediawiki. It has been classified as problematic. Affected is an unknown function. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-47848. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47849 | Wikimedia Cargo Extension 3.6.0 on Mediawiki sql injection
11 months ago
A vulnerability was found in Wikimedia Cargo Extension 3.6.0 on Mediawiki and classified as critical. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2024-47849. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com