Categoria: CVE

CVE-2024-10103 | MailPoet Plugin up to 5.3.1 on WordPress cross site scripting

A vulnerability classified as problematic was found in MailPoet Plugin up to 5.3.1 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting. This vulnerability is known as CVE-2024-10103. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-8403 | Mitsubishi Electric MELSEC iQ-F FX5-ENET IP SLMP Packet improper validation of specified type of input

A vulnerability classified as critical has been found in Mitsubishi Electric MELSEC iQ-F FX5-ENET IP. Affected is an unknown function of the component SLMP Packet Handler. The manipulation leads to improper validation of specified type of input. This vulnerability is traded as CVE-2024-8403. It is possible to launch the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-11198 | GD Rating System Plugin up to 3.6.1 on WordPress extra_class cross site scripting

A vulnerability was found in GD Rating System Plugin up to 3.6.1 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument extra_class leads to cross site scripting. The identification of this vulnerability is CVE-2024-11198. The attack may be initiated remotely. There is no exploit...

Per saperne di più

CVE-2024-11195 | Email Subscription Popup Plugin up to 1.2.22 on WordPress Shortcode print_email_subscribe_form cross site scripting

A vulnerability was found in Email Subscription Popup Plugin up to 1.2.22 on WordPress. It has been declared as problematic. This vulnerability affects the function print_email_subscribe_form of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-11195. The attack can be initiated remotely. There is no exploit...

Per saperne di più

CVE-2024-11194 | Classified Listing Plugin up to 3.1.15.1 on WordPress Option Update access control

A vulnerability has been found in Classified Listing Plugin up to 3.1.15.1 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the component Option Update Handler. The manipulation leads to improper access controls. This vulnerability is known as CVE-2024-11194. The attack can be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-10268 | Sonaar MP3 Audio Player Plugin up to 5.8 on WordPress Shortcode sonaar_audioplayer cross site scripting

A vulnerability classified as problematic was found in Sonaar MP3 Audio Player Plugin up to 5.8 on WordPress. This vulnerability affects the function sonaar_audioplayer of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-10268. The attack can be initiated remotely. There is no exploit...

Per saperne di più

CVE-2024-11098 | SVG Block Plugin up to 1.1.24 on WordPress SVG File Upload cross site scripting

A vulnerability, which was classified as problematic, has been found in SVG Block Plugin up to 1.1.24 on WordPress. This issue affects some unknown processing of the component SVG File Upload Handler. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2024-11098. The attack may be initiated remotely. There is no exploit...

Per saperne di più
Caricamento