CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2024-11437

    Last Modified: 15 Apr 2026

    The Timeline Designer plugin for WordPress is vulnerable to SQL Injection via the 's' parameter in all versions up to, and including, 1.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 7 Jan 2025
    6.4
    Medium

    CVE-2024-12590

    Last Modified: 15 Apr 2026

    The WP Youtube Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' parameter in all versions up to, and including, 1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 7 Jan 2025
    8.2
    High

    CVE-2025-22395

    Last Modified: 4 Feb 2025

    Dell Update Package Framework, versions prior to 22.01.02, contain(s) a Local Privilege Escalation Vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary remote scripts on the server. Exploitation may lead to a denial of service by an attacker.

    Published: 7 Jan 2025
    5.3
    Medium

    CVE-2024-11606

    Last Modified: 12 Jun 2025

    The Tabs Shortcode WordPress plugin through 2.0.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

    Published: 7 Jan 2025
    2.7
    Low

    CVE-2024-10562

    Last Modified: 8 May 2025

    The Form Maker by 10Web WordPress plugin before 1.15.31 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 7 Jan 2025
    2.7
    Low

    CVE-2024-10102

    Last Modified: 14 May 2025

    The Photo Gallery, Images, Slider in Rbs Image Gallery WordPress plugin before 3.2.22 does not sanitise and escape some of its Gallery settings, which could allow high privilege users such as contributor to perform Stored Cross-Site Scripting attacks

    Published: 7 Jan 2025
    —
    Unknown

    CVE-2024-12208

    Last Modified: 17 Jan 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-43269. Reason: This candidate is a reservation duplicate of CVE-2024-43269. Notes: All CVE users should reference CVE-2024-43269 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 7 Jan 2025
    —
    Unknown

    CVE-2024-12124

    Last Modified: 17 Jan 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-54290. Reason: This candidate is a reservation duplicate of CVE-2024-54290. Notes: All CVE users should reference CVE-2024-54290 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2024-55556

    Last Modified: 15 Apr 2026

    A vulnerability in Crater Invoice allows an unauthenticated attacker with knowledge of the APP_KEY to achieve remote command execution on the server by manipulating the laravel_session cookie, exploiting arbitrary deserialization through the encrypted session data. The exploitation vector of this vulnerability relies on an attacker obtaining Laravel's secret APP_KEY, which would allow them to decrypt and manipulate session cookies (laravel_session) containing serialized data. By altering this data and re-encrypting it with the APP_KEY, the attacker could trigger arbitrary deserialization on the server, potentially leading to remote command execution (RCE). The vulnerability is primarily exploited by accessing an exposed cookie and manipulating it using the secret key to gain malicious access to the server.

    Published: 7 Jan 2025
    8.8
    High

    CVE-2024-55555

    Last Modified: 15 Apr 2026

    Invoice Ninja before 5.10.43 allows remote code execution from a pre-authenticated route when an attacker knows the APP_KEY. This is exacerbated by .env files, available from the product's repository, that have default APP_KEY values. The route/{hash} route defined in the invoiceninja/routes/client.php file can be accessed without authentication. The parameter {hash} is passed to the function decrypt that expects a Laravel ciphered value containing a serialized object. (Furthermore, Laravel contains several gadget chains usable to trigger remote command execution from arbitrary deserialization.) Therefore, an attacker in possession of the APP_KEY is able to fully control a string passed to an unserialize function.

    Published: 7 Jan 2025
    8.8
    High

    CVE-2024-55411

    Last Modified: 15 Apr 2026

    An issue in the snxpcamd.sys component of SUNIX Multi I/O Card v10.1.0.0 allows attackers to perform arbitrary read and write actions via supplying crafted IOCTL requests.

    Published: 7 Jan 2025
    9.1
    Critical

    CVE-2024-54819

    Last Modified: 15 Apr 2026

    I, Librarian before and including 5.11.1 is vulnerable to Server-Side Request Forgery (SSRF) due to improper input validation in classes/security/validation.php

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-53522

    Last Modified: 15 Apr 2026

    Bangkok Medical Software HOSxP XE v4.64.11.3 was discovered to contain a hardcoded IDEA Key-IV pair in the HOSxPXE4.exe and HOS-WIN32.INI components. This allows attackers to access sensitive information.

    Published: 7 Jan 2025
    5.4
    Medium

    CVE-2024-44450

    Last Modified: 15 Apr 2026

    Multiple functions are vulnerable to Authorization Bypass in AIMS eCrew. The issue was fixed in version JUN23 #190.

    Published: 7 Jan 2025
    8.1
    High

    CVE-2022-45186

    Last Modified: 15 Apr 2025

    An issue was discovered in SuiteCRM 7.12.7. Authenticated users can recover an arbitrary field of a database.

    Published: 7 Jan 2025
    8.8
    High

    CVE-2022-45185

    Last Modified: 15 Apr 2025

    An issue was discovered in SuiteCRM 7.12.7. Authenticated users can use CRM functions to upload malicious files. Then, deserialization can be used to achieve code execution.

    Published: 7 Jan 2025
    7.8
    High

    CVE-2024-55410

    Last Modified: 23 Jan 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 7 Jan 2025
    7.8
    High

    CVE-2024-55413

    Last Modified: 15 Apr 2026

    A vulnerability exits in driver snxppamd.sys in SUNIX Parallel Driver x64 - 10.1.0.0, which allows low-privileged users to read and write arbitary i/o port via specially crafted IOCTL requests . This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2022-41573

    Last Modified: 15 Apr 2026

    An issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A user can upload a .png file containing PHP code and then rename it to have the .php extension. It will then be accessible at an images/common/ URI for remote code execution.

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-46603

    Last Modified: 16 Apr 2025

    An XML External Entity (XXE) vulnerability in Elspec Engineering G5 Digital Fault Recorder Firmware v1.2.1.12 allows attackers to cause a Denial of Service (DoS) via a crafted XML payload.

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-55008

    Last Modified: 24 Jun 2025

    JATOS 3.9.4 contains a denial-of-service (DoS) vulnerability in the authentication system, where an attacker can prevent legitimate users from accessing their accounts by repeatedly sending multiple failed login attempts. Specifically, by submitting 3 incorrect login attempts every minute, the attacker can trigger the account lockout mechanism on the account level, effectively locking the user out indefinitely. Since the lockout is applied to the user account and not based on the IP address, any attacker can trigger the lockout on any user account, regardless of their privileges.

    Published: 7 Jan 2025
    7.2
    High

    CVE-2024-48245

    Last Modified: 14 May 2025

    Vehicle Management System 1.0 is vulnerable to SQL Injection. A guest user can exploit vulnerable POST parameters in various administrative actions, such as booking a vehicle or confirming a booking. The affected parameters include "Booking ID", "Action Name", and "Payment Confirmation ID", which are present in /newvehicle.php and /newdriver.php.

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-46242

    Last Modified: 15 Apr 2026

    An issue in the validate_email function in CTFd/utils/validators/__init__.py of CTFd 3.7.3 allows attackers to cause a Regular expression Denial of Service (ReDoS) via supplying a crafted string as e-mail address during registration.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2022-41572

    Last Modified: 13 Jun 2025

    An issue was discovered in EyesOfNetwork (EON) through 5.3.11. Privilege escalation can be accomplished on the server because nmap can be run as root. The attacker achieves total control over the server.

    Published: 7 Jan 2025
    7.8
    High

    CVE-2024-55412

    Last Modified: 15 Apr 2026

    A vulnerability exits in driver snxpsamd.sys in SUNIX Serial Driver x64 - 10.1.0.0, which allows low-privileged users to read and write arbitary i/o port via specially crafted IOCTL requests . This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2024-55414

    Last Modified: 15 Apr 2026

    A vulnerability exits in driver SmSerl64.sys in Motorola SM56 Modem WDM Driver v6.12.23.0, which allows low-privileged users to mapping physical memory via specially crafted IOCTL requests . This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.

    Published: 7 Jan 2025
    9.1
    Critical

    CVE-2024-35532

    Last Modified: 15 Apr 2026

    An XML External Entity (XXE) injection vulnerability in Intersec Geosafe-ea 2022.12, 2022.13, and 2022.14 allows attackers to perform arbitrary file reading under the privileges of the running process, make SSRF requests, or cause a Denial of Service (DoS) via unspecified vectors.

    Published: 7 Jan 2025
    7.9
    High

    CVE-2024-40427

    Last Modified: 20 Jun 2025

    Stack Buffer Overflow in PX4-Autopilot v1.14.3, which allows attackers to execute commands to exploit this vulnerability and cause the program to refuse to execute

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-46601

    Last Modified: 16 Apr 2025

    Elspec Engineering G5 Digital Fault Recorder Firmware v1.2.1.12 was discovered to contain a buffer overflow.

    Published: 7 Jan 2025
    7.5
    High

    CVE-2024-46602

    Last Modified: 16 Apr 2025

    An issue was discovered in Elspec G5 digital fault recorder version 1.2.1.12 and earlier. An XML External Entity (XXE) vulnerability may allow an attacker to cause a Denial of Service (DoS) via a crafted XML payload.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2024-50658

    Last Modified: 24 Jun 2025

    Server-Side Template Injection (SSTI) was found in AdPortal 3.0.39 allows a remote attacker to execute arbitrary code via the shippingAsBilling and firstname parameters in updateuserinfo.html file

    Published: 7 Jan 2025
    6.1
    Medium

    CVE-2024-50659

    Last Modified: 20 Jun 2025

    Cross Site Scripting vulnerability iPublish Media Solutions AdPortal 3.0.39 allows a remote attacker to escalate privileges via the shippingAsBilling parameter in updateuserinfo.html.

    Published: 7 Jan 2025
    9.8
    Critical

    CVE-2024-50660

    Last Modified: 10 Oct 2025

    File Upload Bypass was found in AdPortal 3.0.39 allows a remote attacker to execute arbitrary code via the file upload functionality

    Published: 7 Jan 2025
    8.8
    High

    CVE-2024-53345

    Last Modified: 15 Apr 2026

    An authenticated arbitrary file upload vulnerability in Car Rental Management System v1.0 to v1.3 allows attackers to execute arbitrary code via uploading a crafted file.

    Published: 7 Jan 2025
    6.1
    Medium

    CVE-2024-55218

    Last Modified: 2 Oct 2025

    IceWarp Server 10.2.1 is vulnerable to Cross Site Scripting (XSS) via the meta parameter.

    Published: 7 Jan 2025
    —
    Unknown

    CVE-2025-20007

    Last Modified: 13 Feb 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 6 Jan 2025
    —
    Unknown

    CVE-2024-12540

    Last Modified: 17 Jan 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-54288. Reason: This candidate is a reservation duplicate of CVE-2024-54288. Notes: All CVE users should reference CVE-2024-54288 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 6 Jan 2025
    —
    Unknown

    CVE-2024-12022

    Last Modified: 17 Jan 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-52485. Reason: This candidate is a reservation duplicate of CVE-2024-52485. Notes: All CVE users should reference CVE-2024-52485 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 6 Jan 2025
    7.5
    High

    CVE-2025-21620

    Last Modified: 15 Apr 2026

    Deno is a JavaScript, TypeScript, and WebAssembly runtime with secure defaults. When you send a request with the Authorization header to one domain, and the response asks to redirect to a different domain, Deno'sfetch() redirect handling creates a follow-up redirect request that keeps the original Authorization header, leaking its content to that second domain. This vulnerability is fixed in 2.1.2.

    Published: 6 Jan 2025
    5.4
    Medium

    CVE-2025-21616

    Last Modified: 20 Jun 2025

    Plane is an open-source project management tool. A cross-site scripting (XSS) vulnerability has been identified in Plane versions prior to 0.23. The vulnerability allows authenticated users to upload SVG files containing malicious JavaScript code as profile images, which gets executed in victims' browsers when viewing the profile image.

    Published: 6 Jan 2025
    4.4
    Medium

    CVE-2024-51741

    Last Modified: 5 Sept 2025

    Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem is fixed in Redis 7.2.7 and 7.4.2.

    Published: 6 Jan 2025
    7
    High

    CVE-2024-46981

    Last Modified: 5 Sept 2025

    Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands.

    Published: 6 Jan 2025
    6.3
    Medium

    CVE-2025-21617

    Last Modified: 15 Apr 2026

    Guzzle OAuth Subscriber signs Guzzle requests using OAuth 1.0. Prior to 0.8.1, Nonce generation does not use sufficient entropy nor a cryptographically secure pseudorandom source. This can leave servers vulnerable to replay attacks when TLS is not used. This vulnerability is fixed in 0.8.1.

    Published: 6 Jan 2025
    7.5
    High

    CVE-2024-55629

    Last Modified: 31 Mar 2025

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, TCP streams with TCP urgent data (out of band data) can lead to Suricata analyzing data differently than the applications at the TCP endpoints, leading to possible evasions. Suricata 7.0.8 includes options to allow users to configure how to handle TCP urgent data. In IPS mode, you can use a rule such as drop tcp any any -> any any (sid:1; tcp.flags:U*;) to drop all the packets with urgent flag set.

    Published: 6 Jan 2025
    7.5
    High

    CVE-2024-55628

    Last Modified: 31 Mar 2025

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large hostnames which can be costly to decode, and lead to very large DNS log records. While there are limits in place, they were too generous. The issue has been addressed in Suricata 7.0.8.

    Published: 6 Jan 2025
    5.9
    Medium

    CVE-2024-55627

    Last Modified: 31 Mar 2025

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a specially crafted TCP stream can lead to a very large buffer overflow while being zero-filled during initialization with memset due to an unsigned integer underflow. The issue has been addressed in Suricata 7.0.8.

    Published: 6 Jan 2025
    3.3
    Low

    CVE-2024-55626

    Last Modified: 3 Nov 2025

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large BPF filter file provided to Suricata at startup can lead to a buffer overflow at Suricata startup. The issue has been addressed in Suricata 7.0.8.

    Published: 6 Jan 2025
    5
    Medium

    CVE-2024-47475

    Last Modified: 20 Feb 2026

    Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to denial of service.

    Published: 6 Jan 2025
    7.5
    High

    CVE-2024-55605

    Last Modified: 31 Mar 2025

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large input buffer to the to_lowercase, to_uppercase, strip_whitespace, compress_whitespace, dotprefix, header_lowercase, strip_pseudo_headers, url_decode, or xor transform can lead to a stack overflow causing Suricata to crash. The issue has been addressed in Suricata 7.0.8.

    Published: 6 Jan 2025
    7.2
    High

    CVE-2023-6605

    Last Modified: 3 Nov 2025

    A flaw was found in FFmpeg's DASH playlist support. This vulnerability allows arbitrary HTTP GET requests to be made on behalf of the machine running FFmpeg via a crafted DASH playlist containing malicious URLs.

    Published: 6 Jan 2025