Category: CVE

CVE-2024-11198 | GD Rating System Plugin up to 3.6.1 on WordPress extra_class cross site scripting

A vulnerability was found in GD Rating System Plugin up to 3.6.1 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument extra_class leads to cross site scripting. The identification of this vulnerability is CVE-2024-11198. The attack may be initiated remotely. There is no exploit...

Read More

CVE-2024-11195 | Email Subscription Popup Plugin up to 1.2.22 on WordPress Shortcode print_email_subscribe_form cross site scripting

A vulnerability was found in Email Subscription Popup Plugin up to 1.2.22 on WordPress. It has been declared as problematic. This vulnerability affects the function print_email_subscribe_form of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-11195. The attack can be initiated remotely. There is no exploit...

Read More

CVE-2024-11194 | Classified Listing Plugin up to 3.1.15.1 on WordPress Option Update access control

A vulnerability has been found in Classified Listing Plugin up to 3.1.15.1 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the component Option Update Handler. The manipulation leads to improper access controls. This vulnerability is known as CVE-2024-11194. The attack can be launched remotely. There is no exploit...

Read More

CVE-2024-10268 | Sonaar MP3 Audio Player Plugin up to 5.8 on WordPress Shortcode sonaar_audioplayer cross site scripting

A vulnerability classified as problematic was found in Sonaar MP3 Audio Player Plugin up to 5.8 on WordPress. This vulnerability affects the function sonaar_audioplayer of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-10268. The attack can be initiated remotely. There is no exploit...

Read More

CVE-2024-11098 | SVG Block Plugin up to 1.1.24 on WordPress SVG File Upload cross site scripting

A vulnerability, which was classified as problematic, has been found in SVG Block Plugin up to 1.1.24 on WordPress. This issue affects some unknown processing of the component SVG File Upload Handler. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2024-11098. The attack may be initiated remotely. There is no exploit...

Read More

CVE-2024-50269 | Linux Kernel up to 6.11.7 USB sunxi_musb_probe Privilege Escalation

A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.11.7. Affected by this issue is the function sunxi_musb_probe of the component USB. The manipulation leads to Privilege Escalation. This vulnerability is handled as CVE-2024-50269. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50282 | Linux Kernel up to 6.11.7 AMD GPU amdgpu_debugfs_gprwave_read buffer overflow

A vulnerability classified as critical was found in Linux Kernel up to 6.11.7. Affected by this vulnerability is the function amdgpu_debugfs_gprwave_read of the component AMD GPU. The manipulation leads to buffer overflow. This vulnerability is known as CVE-2024-50282. Access to the local network is required for this attack to succeed. There is no exploit available. It is recommended to upgrade the affected...

Read More
Loading