Categoria: CVE

CVE-2024-10726 | mainichiweb Friendly Functions for Welcart Plugin up to 1.2.4 on WordPress Setting cross-site request forgery

A vulnerability was found in mainichiweb Friendly Functions for Welcart Plugin up to 1.2.4 on WordPress. It has been classified as problematic. This affects an unknown part of the component Setting Handler. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2024-10726. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-10726 | mainichiweb Friendly Functions for Welcart Plugin up to 1.2.4 on WordPress Setting cross-site request forgery

A vulnerability was found in mainichiweb Friendly Functions for Welcart Plugin up to 1.2.4 on WordPress. It has been classified as problematic. This affects an unknown part of the component Setting Handler. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2024-10726. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-10177 | markkinchin Beds24 Online Booking Plugin up to 2.0.26 on WordPress Shortcode beds24-link cross site scripting

A vulnerability was found in markkinchin Beds24 Online Booking Plugin up to 2.0.26 on WordPress and classified as problematic. Affected by this issue is the function beds24-link of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-10177. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-10177 | markkinchin Beds24 Online Booking Plugin up to 2.0.26 on WordPress Shortcode beds24-link cross site scripting

A vulnerability was found in markkinchin Beds24 Online Booking Plugin up to 2.0.26 on WordPress and classified as problematic. Affected by this issue is the function beds24-link of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-10177. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-10172 | voidcoders WPBakery Visual Composer WHMCS Elements Plugin up to 1.0.4 on WordPress Shortcode void_wbwhmcse_laouts_search cross site scripting

A vulnerability has been found in voidcoders WPBakery Visual Composer WHMCS Elements Plugin up to 1.0.4 on WordPress and classified as problematic. Affected by this vulnerability is the function void_wbwhmcse_laouts_search of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is known as CVE-2024-10172. The attack can be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-11365 | Securityforce Crypto and DeFi Widgets Plugin up to 1.1.6 on WordPress Shortcode add_query_arg cross site scripting

A vulnerability, which was classified as problematic, has been found in Securityforce Crypto and DeFi Widgets Plugin up to 1.1.6 on WordPress. This issue affects the function add_query_arg of the component Shortcode Handler. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2024-11365. The attack may be initiated remotely. There is no exploit...

Per saperne di più

CVE-2024-10522 | seb-emendo Co-marquage service-public.fr Plugin up to 0.5.76 on WordPress add_query_arg cross site scripting

A vulnerability was found in seb-emendo Co-marquage service-public.fr Plugin up to 0.5.76 on WordPress. It has been rated as problematic. Affected by this issue is the function add_query_arg. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-10522. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-10682 | mikewire_rocksolid Announcement & Notification Banner Plugin up to 3.11.7 on WordPress add_query_arg cross site scripting

A vulnerability classified as problematic has been found in mikewire_rocksolid Announcement & Notification Banner Plugin up to 3.11.7 on WordPress. This affects the function add_query_arg. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-10682. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-10164 | codename065 Premium Packages Plugin up to 5.9.3 on WordPress Shortcode wpdmpp_pay_link cross site scripting

A vulnerability was found in codename065 Premium Packages Plugin up to 5.9.3 on WordPress. It has been declared as problematic. Affected by this vulnerability is the function wpdmpp_pay_link of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is known as CVE-2024-10164. The attack can be launched remotely. There is no exploit...

Per saperne di più

CVE-2022-43937 | Brocade SANnav up to 2.2.2 log file

A vulnerability was found in Brocade SANnav up to 2.2.2. It has been classified as problematic. Affected is an unknown function. The manipulation leads to sensitive information in log files. This vulnerability is traded as CVE-2022-43937. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più
Caricamento