CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2024-9346

    Last Modified: 15 Apr 2026

    The Embed videos and respect privacy plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'v' parameter in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.

    Published: 11 Oct 2024
    6.1
    Medium

    CVE-2024-9611

    Last Modified: 15 Apr 2026

    The Increase upload file size & Maximum Execution Time limit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.0. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.

    Published: 11 Oct 2024
    6.5
    Medium

    CVE-2024-9586

    Last Modified: 8 Apr 2026

    The Linkz.ai plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'check_auth' and 'check_logout' functions in versions up to, and including, 1.1.8. This makes it possible for unauthenticated attackers to update plugin settings.

    Published: 11 Oct 2024
    5.4
    Medium

    CVE-2024-9587

    Last Modified: 8 Apr 2026

    The Linkz.ai plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ajax_linkz' function in versions up to, and including, 1.1.8. This makes it possible for authenticated attackers with contributor-level privileges or above, to update plugin settings.

    Published: 11 Oct 2024
    6.4
    Medium

    CVE-2024-9543

    Last Modified: 15 Apr 2026

    The PowerPress Podcasting plugin by Blubrry plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'skipto' shortcode in all versions up to, and including, 11.9.18 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-21534

    Last Modified: 15 Apr 2026

    All versions of the package jsonpath-plus are vulnerable to Remote Code Execution (RCE) due to improper input sanitization. An attacker can execute aribitrary code on the system by exploiting the unsafe default usage of vm in Node. **Note:** There were several attempts to fix it in versions [10.0.0-10.1.0](https://github.com/JSONPath-Plus/JSONPath/compare/v9.0.0...v10.1.0) but it could still be exploited using [different payloads](https://github.com/JSONPath-Plus/JSONPath/issues/226).

    Published: 11 Oct 2024
    —
    Unknown

    CVE-2025-20089

    Last Modified: 13 Feb 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-9822

    Last Modified: 8 Apr 2026

    The Pedalo Connector plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.0.5. This is due to insufficient restriction on the 'login_admin_user' function. This makes it possible for unauthenticated attackers to log to the first user, who is usually the administrator, or if it does not exist, then to the first administrator.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48777

    Last Modified: 15 Apr 2026

    LEDVANCE com.ledvance.smartplus.eu 2.1.10 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48776

    Last Modified: 15 Apr 2026

    An issue in Shelly com.home.shelly 1.0.4 allows a remote attacker to obtain sensitive information via the firmware update process

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48774

    Last Modified: 15 Apr 2026

    An issue in Fermax Asia Pacific Pte Ltd com.fermax.vida 2.4.6 allows a remote attacker to obtain sensitve information via the firmware update process.

    Published: 11 Oct 2024
    8.2
    High

    CVE-2024-48770

    Last Modified: 15 Apr 2026

    An issue in Plug n Play Camera com.wisdomcity.zwave 1.1.0 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    6.5
    Medium

    CVE-2024-46215

    Last Modified: 15 Apr 2026

    A vulnerability was discovered in KM08-708H-v1.1, There is a buffer overflow in the sub_445BDC() function within the /usr/sbin/goahead program; The strcpy function is executed without checking the length of the string, leading to a buffer overflow.

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-46088

    Last Modified: 15 Apr 2026

    An arbitrary file upload vulnerability in the ProductAction.entphone interface of Zhejiang University Entersoft Customer Resource Management System v2002 to v2024 allows attackers to execute arbitrary code via uploading a crafted file.

    Published: 11 Oct 2024
    5.3
    Medium

    CVE-2024-44807

    Last Modified: 15 Apr 2026

    A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and BurgerEditor Limited Edition before 2.25.1 allows remote attackers to obtain sensitive information by exposing a list of the uploaded files.

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-42640

    Last Modified: 15 Apr 2026

    angular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerability allows an attacker to upload arbitrary content to the server, which can subsequently be accessed through demo/uploads. This leads to the execution of previously uploaded content and enables the attacker to achieve code execution on the server. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 11 Oct 2024
    7.7
    High

    CVE-2024-42018

    Last Modified: 15 Apr 2026

    An issue was discovered in Atos Eviden SMC xScale before 1.6.6. During initialization of nodes, some configuration parameters are retrieved from management nodes. These parameters embed credentials whose integrity and confidentiality may be important to the security of the HPC configuration. Because these parameters are needed for initialization, there is no available mechanism to ensure access control on the management node, and a mitigation measure is normally put in place to prevent access to unprivileged users. It was discovered that this mitigation measure does not survive a reboot of diskful nodes. (Diskless nodes are not at risk.) The mistake lies in the cloudinit configuration: the iptables configuration should have been in the bootcmd instead of the runcmd section.

    Published: 11 Oct 2024
    4.7
    Medium

    CVE-2024-44731

    Last Modified: 15 Apr 2026

    Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary code via sending crafted payloads in messages to other users over RTC connections.

    Published: 11 Oct 2024
    6.6
    Medium

    CVE-2024-48987

    Last Modified: 22 May 2025

    Snipe-IT before 7.0.10 allows remote code execution (associated with cookie serialization) when an attacker knows the APP_KEY. This is exacerbated by .env files, available from the product's repository, that have default APP_KEY values.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48938

    Last Modified: 14 Mar 2025

    Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows DoS/ReDos via email. Parsing the content of emails where HTML code is copied from Microsoft Word could lead to high CPU usage and block the parsing process.

    Published: 11 Oct 2024
    6.1
    Medium

    CVE-2024-48937

    Last Modified: 13 Mar 2025

    Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows XSS. JavaScript code in the short description of the SLA field in Activity Dialogues is executed.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48788

    Last Modified: 15 Apr 2026

    An issue in YESCAM (com.yescom.YesCam.zwave) 1.0.2 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-48784

    Last Modified: 15 Apr 2026

    An Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48775

    Last Modified: 15 Apr 2026

    An issue in Plug n Play Camera com.ezset.delaney 1.2.0 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48773

    Last Modified: 15 Apr 2026

    An issue in WoFit v.7.2.3 allows a remote attacker to obtain sensitive information via the firmware update process

    Published: 11 Oct 2024
    8.4
    High

    CVE-2024-35522

    Last Modified: 13 Mar 2025

    Netgear EX3700 ' AC750 WiFi Range Extender Essentials Edition before 1.0.0.98 contains an authenticated command injection in operating_mode.cgi via the ap_mode parameter with ap_24g_manual set to 1 and ap_24g_manual_sec set to NotNone.

    Published: 11 Oct 2024
    8.8
    High

    CVE-2024-44413

    Last Modified: 15 Apr 2026

    A vulnerability was discovered in DI_8200-16.07.26A1, which has been classified as critical. This issue affects the upgrade_filter_asp function in the upgrade_filter.asp file. Manipulation of the path parameter can lead to command injection.

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-48778

    Last Modified: 15 Apr 2026

    An issue in GIANT MANUFACTURING CO., LTD RideLink (tw.giant.ridelink) 2.0.7 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-48786

    Last Modified: 15 Apr 2026

    An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-48787

    Last Modified: 15 Apr 2026

    An issue in Revic Optics Revic Ops (us.revic.revicops) 1.12.5 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    8.8
    High

    CVE-2024-48813

    Last Modified: 15 Apr 2026

    SQL injection vulnerability in employee-management-system-php-and-mysql-free-download.html taskmatic 1.0 allows a remote attacker to execute arbitrary code via the admin_id parameter of the /update-employee.php component.

    Published: 11 Oct 2024
    8.8
    High

    CVE-2024-48827

    Last Modified: 29 Sept 2025

    An issue in sbondCo Watcharr v.1.43.0 allows a remote attacker to execute arbitrary code and escalate privileges via the Change Password function.

    Published: 11 Oct 2024
    8.4
    High

    CVE-2024-35517

    Last Modified: 13 Mar 2025

    Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter.

    Published: 11 Oct 2024
    8.8
    High

    CVE-2024-44414

    Last Modified: 15 Apr 2026

    A vulnerability was discovered in FBM_292W-21.03.10V, which has been classified as critical. This issue affects the sub_4901E0 function in the msp_info.htm file. Manipulation of the path parameter can lead to command injection.

    Published: 11 Oct 2024
    6.5
    Medium

    CVE-2024-44415

    Last Modified: 15 Apr 2026

    A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy function is executed without checking the length of the string, leading to a buffer overflow.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-44729

    Last Modified: 15 Apr 2026

    Incorrect access control in the component app/src/server.js of Mirotalk before commit 9de226 allows unauthenticated attackers without presenter privileges to arbitrarily eject users from a meeting.

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-44730

    Last Modified: 15 Apr 2026

    Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an arbitrary sender name.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-44734

    Last Modified: 15 Apr 2026

    Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.

    Published: 11 Oct 2024
    6.2
    Medium

    CVE-2024-45184

    Last Modified: 17 Jun 2025

    An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, Modem 5123, and Modem 5300. A USAT out-of-bounds write due to a heap buffer overflow can lead to a Denial of Service.

    Published: 11 Oct 2024
    7.2
    High

    CVE-2024-45754

    Last Modified: 15 Apr 2026

    An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before 23.10.8, 23.04.x before 23.04.11, and 22.10.x before 22.10.11. SQL injection can occur in the listing of configured reporting jobs. Exploitation is only accessible to authenticated users with high-privileged access.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-46468

    Last Modified: 27 May 2025

    A Server-Side Request Forgery (SSRF) vulnerability exists in the jpress <= v5.1.1, which can be exploited by an attacker to obtain sensitive information, resulting in an information disclosure.

    Published: 11 Oct 2024
    9.8
    Critical

    CVE-2024-46532

    Last Modified: 15 Apr 2026

    SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the PayController.class.php component.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48768

    Last Modified: 15 Apr 2026

    An issue in almaodo GmbH appinventor.ai_google.almando_control 2.3.1 allows a remote attacker to obtain sensitive information via the firmware update process

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-48769

    Last Modified: 15 Apr 2026

    An issue in BURG-WCHTER KG de.burgwachter.keyapp.app 4.5.0 allows a remote attacker to obtain sensitve information via the firmware update process.

    Published: 11 Oct 2024
    7.5
    High

    CVE-2024-48771

    Last Modified: 15 Apr 2026

    An issue in almando GmbH Almando Play APP (com.almando.play) 1.8.2 allows a remote attacker to obtain sensitive information via the firmware update process

    Published: 11 Oct 2024
    9.1
    Critical

    CVE-2024-48772

    Last Modified: 15 Apr 2026

    An issue in C-CHIP (com.cchip.cchipamaota) v.1.2.8 allows a remote attacker to obtain sensitive information via the firmware update process.

    Published: 11 Oct 2024
    6.9
    Medium

    CVE-2024-9818

    Last Modified: 17 Oct 2024

    A vulnerability classified as critical has been found in SourceCodester Online Veterinary Appointment System 1.0. Affected is an unknown function of the file /admin/categories/manage_category.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 10 Oct 2024
    5.3
    Medium

    CVE-2024-9817

    Last Modified: 17 Oct 2024

    A vulnerability was found in code-projects Blood Bank System 1.0. It has been classified as critical. This affects an unknown part of the file /update.php. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 10 Oct 2024
    2.1
    Low

    CVE-2024-47867

    Last Modified: 15 Nov 2024

    Gradio is an open-source Python package designed for quick prototyping. This vulnerability is a **lack of integrity check** on the downloaded FRP client, which could potentially allow attackers to introduce malicious code. If an attacker gains access to the remote URL from which the FRP client is downloaded, they could modify the binary without detection, as the Gradio server does not verify the file's checksum or signature. Any users utilizing the Gradio server's sharing mechanism that downloads the FRP client could be affected by this vulnerability, especially those relying on the executable binary for secure data tunneling. There is no direct workaround for this issue without upgrading. However, users can manually validate the integrity of the downloaded FRP client by implementing checksum or signature verification in their own environment to ensure the binary hasn't been tampered with.

    Published: 10 Oct 2024
    6.3
    Medium

    CVE-2024-47868

    Last Modified: 17 Oct 2024

    Gradio is an open-source Python package designed for quick prototyping. This is a **data validation vulnerability** affecting several Gradio components, which allows arbitrary file leaks through the post-processing step. Attackers can exploit these components by crafting requests that bypass expected input constraints. This issue could lead to sensitive files being exposed to unauthorized users, especially when combined with other vulnerabilities, such as issue TOB-GRADIO-15. The components most at risk are those that return or handle file data. Vulnerable Components: 1. **String to FileData:** DownloadButton, Audio, ImageEditor, Video, Model3D, File, UploadButton. 2. **Complex data to FileData:** Chatbot, MultimodalTextbox. 3. **Direct file read in preprocess:** Code. 4. **Dictionary converted to FileData:** ParamViewer, Dataset. Exploit Scenarios: 1. A developer creates a Dropdown list that passes values to a DownloadButton. An attacker bypasses the allowed inputs, sends an arbitrary file path (like `/etc/passwd`), and downloads sensitive files. 2. An attacker crafts a malicious payload in a ParamViewer component, leaking sensitive files from a server through the arbitrary file leak. This issue has been resolved in `gradio>5.0`. Upgrading to the latest version will mitigate this vulnerability. There are no known workarounds for this vulnerability.

    Published: 10 Oct 2024