CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2024-13330

    Last Modified: 13 May 2025

    The JustRows free WordPress plugin through 0.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    7.1
    High

    CVE-2024-13329

    Last Modified: 7 May 2025

    The Solidres WordPress plugin through 0.9.4 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13328

    Last Modified: 13 May 2025

    The Giga Messenger WordPress plugin through 2.3.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13327

    Last Modified: 7 May 2025

    The Musicbox WordPress plugin through 2.0.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13326

    Last Modified: 7 May 2025

    The iBuildApp WordPress plugin through 0.2.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13325

    Last Modified: 25 Jul 2025

    The Glossy WordPress plugin through 2.3.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13115

    Last Modified: 7 May 2025

    The WP Projects Portfolio with Client Testimonials WordPress plugin through 3.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.

    Published: 4 Feb 2025
    6.1
    Medium

    CVE-2024-13114

    Last Modified: 7 May 2025

    The WP Projects Portfolio with Client Testimonials WordPress plugin through 3.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.

    Published: 4 Feb 2025
    9.8
    Critical

    CVE-2024-48445

    Last Modified: 15 Apr 2026

    An issue in compop.ca ONLINE MALL v.3.5.3 allows a remote attacker to execute arbitrary code via the rid, tid, et, and ts parameters.

    Published: 4 Feb 2025
    8.5
    High

    CVE-2025-1003

    Last Modified: 15 Apr 2026

    A potential vulnerability has been identified in HP Anyware Agent for Linux which might allow for authentication bypass which may result in escalation of privilege. HP is releasing a software update to mitigate this potential vulnerability.

    Published: 3 Feb 2025
    2.6
    Low

    CVE-2025-0148

    Last Modified: 15 Apr 2026

    Missing password field masking in the Zoom Jenkins Marketplace plugin before version 1.6 may allow an unauthenticated user to conduct a disclosure of information via adjacent network access.

    Published: 3 Feb 2025
    9.4
    Critical

    CVE-2025-24901

    Last Modified: 13 Feb 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `deletar_permissao.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    9.4
    Critical

    CVE-2025-24902

    Last Modified: 22 Aug 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `salvar_cargo.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    10
    Critical

    CVE-2025-24905

    Last Modified: 13 Feb 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `get_codigobarras_cobranca.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    10
    Critical

    CVE-2025-24906

    Last Modified: 13 Feb 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `get_detalhes_cobranca.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    10
    Critical

    CVE-2025-24957

    Last Modified: 13 Feb 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `get_detalhes_socio.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    9.4
    Critical

    CVE-2025-24958

    Last Modified: 13 Feb 2025

    WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `salvar_tag.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. This issue has been addressed in version 3.2.12 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-35177

    Last Modified: 16 Sept 2025

    Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of protecting workloads across on-premises, virtualized, containerized, and cloud-based environments. The wazuh-agent for Windows is vulnerable to a Local Privilege Escalation vulnerability due to improper ACL of the non-default installation directory. A local malicious user could potentially exploit this vulnerability by placing one of the many DLL that are loaded and not present on the system in the installation folder of the agent OR by replacing the service executable binary itself with a malicious one. The root cause is an improper ACL applied on the installation folder when a non-default installation path is specified (e.g,: C:\wazuh). Many DLLs are loaded from the installation folder and by creating a malicious DLLs that exports the functions of a legit one (and that is not found on the system where the agent is installed, such as rsync.dll) it is possible to escalate privileges from a low-privileged user and obtain code execution under the context of NT AUTHORITY\SYSTEM. This issue has been addressed in version 4.9.0 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    4.6
    Medium

    CVE-2024-47770

    Last Modified: 16 Sept 2025

    Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of protecting workloads across on-premises, virtualized, containerized, and cloud-based environments. This vulnerability occurs when the system has weak privilege access, that allows an attacker to do privilege escalation. In this case the attacker is able to view agent list on Wazuh dashboard with no privilege access. This issue has been addressed in release version 4.9.1 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    4.3
    Medium

    CVE-2025-22129

    Last Modified: 22 Aug 2025

    Tuleap is an Open Source Suite to improve management of software developments and collaboration. In affected versions an unauthorized user might get access to restricted information. This issue has been addressed in Tuleap Community Edition 16.3.99.1736242932, Tuleap Enterprise Edition 16.2-5, and Tuleap Enterprise Edition 16.3-2. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    5.3
    Medium

    CVE-2025-24029

    Last Modified: 22 Aug 2025

    Tuleap is an Open Source Suite to improve management of software developments and collaboration. Users (possibly anonymous ones if the widget is used in the dashboard of a public project) might get access to artifacts they should not see. This issue has been addressed in Tuleap Community Edition 16.3.99.1737562605 as well as Tuleap Enterprise Edition 16.3-5 and Tuleap Enterprise Edition 16.2-7. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    7.1
    High

    CVE-2025-24371

    Last Modified: 15 Apr 2026

    CometBFT is a distributed, Byzantine fault-tolerant, deterministic state machine replication engine. In the `blocksync` protocol peers send their `base` and `latest` heights when they connect to a new node (`A`), which is syncing to the tip of a network. `base` acts as a lower ground and informs `A` that the peer only has blocks starting from height `base`. `latest` height informs `A` about the latest block in a network. Normally, nodes would only report increasing heights. If `B` fails to provide the latest block, `B` is removed and the `latest` height (target height) is recalculated based on other nodes `latest` heights. The existing code however doesn't check for the case where `B` first reports `latest` height `X` and immediately after height `Y`, where `X > Y`. `A` will be trying to catch up to 2000 indefinitely. This condition requires the introduction of malicious code in the full node first reporting some non-existing `latest` height, then reporting lower `latest` height and nodes which are syncing using `blocksync` protocol. This issue has been patched in versions 1.0.1 and 0.38.17 and all users are advised to upgrade. Operators may attempt to ban malicious peers from the network as a workaround.

    Published: 3 Feb 2025
    4.8
    Medium

    CVE-2025-23210

    Last Modified: 15 Apr 2026

    phpoffice/phpspreadsheet is a pure PHP library for reading and writing spreadsheet files. Affected versions have been found to have a Bypass of the Cross-site Scripting (XSS) sanitizer using the javascript protocol and special characters. This issue has been addressed in versions 3.9.0, 2.3.7, 2.1.8, and 1.29.9. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    9.3
    Critical

    CVE-2025-24370

    Last Modified: 15 Apr 2026

    Django-Unicorn adds modern reactive component functionality to Django templates. Affected versions of Django-Unicorn are vulnerable to python class pollution vulnerability. The vulnerability arises from the core functionality `set_property_value`, which can be remotely triggered by users by crafting appropriate component requests and feeding in values of second and third parameter to the vulnerable function, leading to arbitrary changes to the python runtime status. With this finding at least five ways of vulnerability exploitation have been observed, stably resulting in Cross-Site Scripting (XSS), Denial of Service (DoS), and Authentication Bypass attacks in almost every Django-Unicorn-based application. This issue has been addressed in version 0.62.0 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    7.1
    High

    CVE-2025-24899

    Last Modified: 13 May 2025

    reNgine is an automated reconnaissance framework for web applications. A vulnerability was discovered in reNgine, where **an insider attacker with any role** (such as Auditor, Penetration Tester, or Sys Admin) **can extract sensitive information from other reNgine users.** After running a scan and obtaining vulnerabilities from a target, the attacker can retrieve details such as `username`, `password`, `email`, `role`, `first name`, `last name`, `status`, and `activity information` by making a GET request to `/api/listVulnerability/`. This issue has been addressed in version 2.2.0 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    8.7
    High

    CVE-2025-24962

    Last Modified: 13 May 2025

    reNgine is an automated reconnaissance framework for web applications. In affected versions a user can inject commands via the nmap_cmd parameters. This issue has been addressed in commit `c28e5c8d` and is expected in the next versioned release. Users are advised to filter user input and monitor the project for a new release.

    Published: 3 Feb 2025
    1
    Low

    CVE-2025-24959

    Last Modified: 15 Apr 2026

    zx is a tool for writing better scripts. An attacker with control over environment variable values can inject unintended environment variables into `process.env`. This can lead to arbitrary command execution or unexpected behavior in applications that rely on environment variables for security-sensitive operations. Applications that process untrusted input and pass it through `dotenv.stringify` are particularly vulnerable. This issue has been patched in version 8.3.2. Users should immediately upgrade to this version to mitigate the vulnerability. If upgrading is not feasible, users can mitigate the vulnerability by sanitizing user-controlled environment variable values before passing them to `dotenv.stringify`. Specifically, avoid using `"`, `'`, and backticks in values, or enforce strict validation of environment variables before usage.

    Published: 3 Feb 2025
    8.7
    High

    CVE-2025-24960

    Last Modified: 15 Apr 2026

    Jellystat is a free and open source Statistics App for Jellyfin. In affected versions Jellystat is directly using a user input in the route(s). This can lead to Path Traversal Vulnerabilities. Since this functionality is only for admin(s), there is very little scope for abuse. However, the `DELETE` `files/:filename` can be used to delete any file. This issue has been addressed in version 1.1.3. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    6
    Medium

    CVE-2025-24961

    Last Modified: 15 Apr 2026

    org.gaul S3Proxy implements the S3 API and proxies requests. Users of the filesystem and filesystem-nio2 storage backends could unintentionally expose local files to users. This issue has been addressed in version 2.6.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 3 Feb 2025
    7.6
    High

    CVE-2024-12511

    Last Modified: 15 Apr 2026

    With address book access, SMB/FTP settings could be modified, redirecting scans and possibly capturing credentials. This requires enabled scan functions and printer access.

    Published: 3 Feb 2025
    8.8
    High

    CVE-2024-12859

    Last Modified: 15 Apr 2026

    The BoomBox Theme Extensions plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.8.0 via the 'boombox_listing' shortcode 'type' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.

    Published: 3 Feb 2025
    4.3
    Medium

    CVE-2024-11134

    Last Modified: 8 Apr 2026

    The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'eventer_export_bookings_csv' function in all versions up to, and including, 3.9.9. This makes it possible for authenticated attackers with subscriber-level permissions or above, to download bookings, which contains customers' personal data.

    Published: 3 Feb 2025
    6.4
    Medium

    CVE-2024-11132

    Last Modified: 8 Apr 2026

    The Eventer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.9.9.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 3 Feb 2025
    5.3
    Medium

    CVE-2024-11133

    Last Modified: 8 Apr 2026

    The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'handle_pdf_download_request' function in all versions up to, and including, 3.9.9.5. This makes it possible for unauthenticated attackers to download event tickets.

    Published: 3 Feb 2025
    6.7
    Medium

    CVE-2024-12510

    Last Modified: 15 Apr 2026

    If LDAP settings are accessed, authentication could be redirected to another server, potentially exposing credentials. This requires admin access and an active LDAP setup.

    Published: 3 Feb 2025
    6.3
    Medium

    CVE-2025-24898

    Last Modified: 15 Apr 2026

    rust-openssl is a set of OpenSSL bindings for the Rust programming language. In affected versions `ssl::select_next_proto` can return a slice pointing into the `server` argument's buffer but with a lifetime bound to the `client` argument. In situations where the `sever` buffer's lifetime is shorter than the `client` buffer's, this can cause a use after free. This could cause the server to crash or to return arbitrary memory contents to the client. The crate`openssl` version 0.10.70 fixes the signature of `ssl::select_next_proto` to properly constrain the output buffer's lifetime to that of both input buffers. Users are advised to upgrade. In standard usage of `ssl::select_next_proto` in the callback passed to `SslContextBuilder::set_alpn_select_callback`, code is only affected if the `server` buffer is constructed *within* the callback.

    Published: 3 Feb 2025
    7.2
    High

    CVE-2024-56161

    Last Modified: 15 Apr 2026

    Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious CPU microcode resulting in loss of confidentiality and integrity of a confidential guest running under AMD SEV-SNP.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49843

    Last Modified: 5 Feb 2025

    Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49840

    Last Modified: 5 Feb 2025

    Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.

    Published: 3 Feb 2025
    8.2
    High

    CVE-2024-49839

    Last Modified: 11 Aug 2025

    Memory corruption during management frame processing due to mismatch in T2LM info element.

    Published: 3 Feb 2025
    8.2
    High

    CVE-2024-49838

    Last Modified: 5 Feb 2025

    Information disclosure while parsing the OCI IE with invalid length.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49837

    Last Modified: 26 Feb 2026

    Memory corruption while reading CPU state data during guest VM suspend.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49834

    Last Modified: 5 Feb 2025

    Memory corruption while power-up or power-down sequence of the camera sensor.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49833

    Last Modified: 5 Feb 2025

    Memory corruption can occur in the camera when an invalid CID is used.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-49832

    Last Modified: 5 Feb 2025

    Memory corruption in Camera due to unusually high number of nodes passed to AXI port.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-45584

    Last Modified: 5 Feb 2025

    Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-45582

    Last Modified: 5 Feb 2025

    Memory corruption while validating number of devices in Camera kernel .

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-45573

    Last Modified: 12 Feb 2025

    Memory corruption may occour while generating test pattern due to negative indexing of display ID.

    Published: 3 Feb 2025
    7.8
    High

    CVE-2024-45571

    Last Modified: 12 Feb 2025

    Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.

    Published: 3 Feb 2025
    9.8
    Critical

    CVE-2024-45569

    Last Modified: 26 Feb 2026

    Memory corruption while parsing the ML IE due to invalid frame content.

    Published: 3 Feb 2025