CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2024-36963

    Last Modified: 17 Sept 2025

    In the Linux kernel, the following vulnerability has been resolved: tracefs: Reset permissions on remount if permissions are options There's an inconsistency with the way permissions are handled in tracefs. Because the permissions are generated when accessed, they default to the root inode's permission if they were never set by the user. If the user sets the permissions, then a flag is set and the permissions are saved via the inode (for tracefs files) or an internal attribute field (for eventfs). But if a remount happens that specify the permissions, all the files that were not changed by the user gets updated, but the ones that were are not. If the user were to remount the file system with a given permission, then all files and directories within that file system should be updated. This can cause security issues if a file's permission was updated but the admin forgot about it. They could incorrectly think that remounting with permissions set would update all files, but miss some. For example: # cd /sys/kernel/tracing # chgrp 1002 current_tracer # ls -l [..] -rw-r----- 1 root root 0 May 1 21:25 buffer_size_kb -rw-r----- 1 root root 0 May 1 21:25 buffer_subbuf_size_kb -r--r----- 1 root root 0 May 1 21:25 buffer_total_size_kb -rw-r----- 1 root lkp 0 May 1 21:25 current_tracer -rw-r----- 1 root root 0 May 1 21:25 dynamic_events -r--r----- 1 root root 0 May 1 21:25 dyn_ftrace_total_info -r--r----- 1 root root 0 May 1 21:25 enabled_functions Where current_tracer now has group "lkp". # mount -o remount,gid=1001 . # ls -l -rw-r----- 1 root tracing 0 May 1 21:25 buffer_size_kb -rw-r----- 1 root tracing 0 May 1 21:25 buffer_subbuf_size_kb -r--r----- 1 root tracing 0 May 1 21:25 buffer_total_size_kb -rw-r----- 1 root lkp 0 May 1 21:25 current_tracer -rw-r----- 1 root tracing 0 May 1 21:25 dynamic_events -r--r----- 1 root tracing 0 May 1 21:25 dyn_ftrace_total_info -r--r----- 1 root tracing 0 May 1 21:25 enabled_functions Everything changed but the "current_tracer". Add a new link list that keeps track of all the tracefs_inodes which has the permission flags that tell if the file/dir should use the root inode's permission or not. Then on remount, clear all the flags so that the default behavior of using the root inode's permission is done for all files and directories.

    Published: 3 Jun 2024
    5.3
    Medium

    CVE-2024-5588

    Last Modified: 11 Feb 2025

    A vulnerability was found in itsourcecode Learning Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file processscore.php. The manipulation of the argument LessonID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-266839.

    Published: 2 Jun 2024
    6.1
    Medium

    CVE-2024-36392

    Last Modified: 10 Apr 2025

    MileSight DeviceHub - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 2 Jun 2024
    9.1
    Critical

    CVE-2024-36391

    Last Modified: 12 Jul 2025

    MileSight DeviceHub - CWE-320: Key Management Errors may allow Authentication Bypass and Man-In-The-Middle Traffic

    Published: 2 Jun 2024
    7.5
    High

    CVE-2024-36390

    Last Modified: 23 Apr 2025

    MileSight DeviceHub - CWE-20 Improper Input Validation may allow Denial of Service

    Published: 2 Jun 2024
    9.8
    Critical

    CVE-2024-36389

    Last Modified: 10 Apr 2025

    MileSight DeviceHub - CWE-330 Use of Insufficiently Random Values may allow Authentication Bypass

    Published: 2 Jun 2024
    10
    Critical

    CVE-2024-36388

    Last Modified: 21 Nov 2024

    MileSight DeviceHub - CWE-305 Missing Authentication for Critical Function

    Published: 2 Jun 2024
    9.8
    Critical

    CVE-2024-27776

    Last Modified: 10 Apr 2025

    MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE

    Published: 2 Jun 2024
    7.5
    High

    CVE-2024-2178

    Last Modified: 9 Jul 2025

    A path traversal vulnerability exists in the parisneo/lollms-webui, specifically within the 'copy_to_custom_personas' endpoint in the 'lollms_personalities_infos.py' file. This vulnerability allows attackers to read arbitrary files by manipulating the 'category' and 'name' parameters during the 'Copy to custom personas folder for editing' process. By inserting '../' sequences in these parameters, attackers can traverse the directory structure and access files outside of the intended directory. Successful exploitation results in unauthorized access to sensitive information.

    Published: 2 Jun 2024
    6.9
    Medium

    CVE-2024-5587

    Last Modified: 15 Apr 2026

    A vulnerability was found in Casdoor up to 1.335.0. It has been classified as problematic. Affected is an unknown function of the file /conf/app.conf of the component Configuration File Handler. The manipulation leads to files or directories accessible. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-266838 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 2 Jun 2024
    4.3
    Medium

    CVE-2024-4344

    Last Modified: 15 Apr 2026

    The Shield Security – Smart Bot Blocking & Intrusion Prevention Security plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 19.1.13. This is due to missing or incorrect nonce validation on the exec function. This makes it possible for unauthenticated attackers to disable pin protection for the admin interface of the plugin via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 2 Jun 2024
    5.9
    Medium

    CVE-2024-35645

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in M A Vinoth Kumar Random Banner random-banner allows DOM-Based XSS.This issue affects Random Banner: from n/a through <= 4.2.12.

    Published: 1 Jun 2024
    5.9
    Medium

    CVE-2024-35646

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Erez Hadas-Sonnenschein Smartarget Message Bar smartarget-message-bar.This issue affects Smartarget Message Bar: from n/a through <= 1.5.

    Published: 1 Jun 2024
    5.9
    Medium

    CVE-2024-35647

    Last Modified: 15 Apr 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Global Notification Bar allows Stored XSS.This issue affects Global Notification Bar: from n/a through 1.0.1.

    Published: 1 Jun 2024
    7.5
    High

    CVE-2024-4148

    Last Modified: 30 Jan 2025

    A Regular Expression Denial of Service (ReDoS) vulnerability exists in the lunary-ai/lunary application, version 1.2.10. An attacker can exploit this vulnerability by maliciously manipulating regular expressions, which can significantly impact the response time of the application and potentially render it completely non-functional. Specifically, the vulnerability can be triggered by sending a specially crafted request to the application, leading to a denial of service where the application crashes.

    Published: 1 Jun 2024
    4.3
    Medium

    CVE-2024-35636

    Last Modified: 15 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Uploadcare Uploadcare File Uploader and Adaptive Delivery (beta) uploadcare.This issue affects Uploadcare File Uploader and Adaptive Delivery (beta): from n/a through 3.0.11.

    Published: 1 Jun 2024
    10
    Critical

    CVE-2024-3820

    Last Modified: 15 Apr 2026

    The wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin plugin for WordPress is vulnerable to SQL Injection via the 'id_key' parameter of the wdt_delete_table_row AJAX action in all versions up to, and including, 6.3.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. Please note this only affects the premium version of the plugin.

    Published: 1 Jun 2024
    9.9
    Critical

    CVE-2024-3200

    Last Modified: 8 Apr 2026

    The wpForo Forum plugin for WordPress is vulnerable to SQL Injection via the 'slug' attribute of the 'wpforo' shortcode in all versions up to, and including, 2.3.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 1 Jun 2024
    8.8
    High

    CVE-2024-5348

    Last Modified: 15 Apr 2026

    The Elements For Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.1 via the 'beforeafter_layout' attribute of the beforeafter widget, the 'eventsgrid_layout' attribute of the eventsgrid and list widgets, the 'marquee_layout' attribute of the marquee widget, the 'postgrid_layout' attribute of the postgrid widget, the 'woocart_layout' attribute of the woocart widget, and the 'woogrid_layout' attribute of the woogrid widget. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

    Published: 1 Jun 2024
    7.3
    High

    CVE-2024-3821

    Last Modified: 15 Apr 2026

    The wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions in the wdt_ajax_actions.php file in all versions up to, and including, 6.3.2. This makes it possible for unauthenticated attackers to manipulate data tables. Please note this only affects the premium version of the plugin.

    Published: 1 Jun 2024
    7.1
    High

    CVE-2024-4958

    Last Modified: 15 Apr 2026

    The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'import_form_action' function in versions up to, and including, 3.2.0.1. This makes it possible for authenticated attackers, with contributor-level permissions and above, to import a registration form with a default user role of administrator. If an administrator approves or publishes a post or page with the shortcode to the imported form, any user can register as an administrator.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-2295

    Last Modified: 15 Apr 2026

    The Contact Form Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [xyz-cfm-form] shortcode in all versions up to, and including, 1.6.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    5.3
    Medium

    CVE-2024-1324

    Last Modified: 15 Apr 2026

    The QQWorld Auto Save Images plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the save_remote_images_get_auto_saved_results() function hooked via a norpriv AJAX in all versions up to, and including, 1.9.8. This makes it possible for unauthenticated attackers to retrieve the contents of arbitrary posts that may not be public.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-2506

    Last Modified: 15 Apr 2026

    The Popup Builder – Create highly converting, mobile friendly marketing popups. plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the custom JS functionality in all versions up to, and including, 4.2.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-4087

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Back to Top widget in all versions up to, and including, 1.3.975 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-5501

    Last Modified: 15 Apr 2026

    The Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘button_one_id’ parameter in all versions up to, and including, 2.5.51 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-4342

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's image hotspot, image accordion, off canvas, woogrid, and product mini cart widgets in all versions up to, and including, 1.3.975 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2023-6382

    Last Modified: 8 Apr 2026

    The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ms_slide' shortcode in all versions up to, and including, 3.9.9 due to insufficient input sanitization and output escaping on user supplied 'css_class' attribute. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    8.8
    High

    CVE-2024-3564

    Last Modified: 8 Apr 2026

    The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.0 via the plugin's 'content_block' shortcode. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-3565

    Last Modified: 8 Apr 2026

    The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'content_block' shortcode in all versions up to, and including, 3.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-4711

    Last Modified: 8 Apr 2026

    The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ajax_load_more shortcode in versions up to, and including, 7.1.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    6.4
    Medium

    CVE-2024-2933

    Last Modified: 15 Apr 2026

    The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Social Profiles widget in all versions up to, and including, 3.1.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 1 Jun 2024
    9.1
    Critical

    CVE-2024-38428

    Last Modified: 21 Apr 2025

    url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

    Published: 1 Jun 2024
    8.1
    High

    CVE-2024-5138

    Last Modified: 26 Aug 2025

    The snapctl component within snapd allows a confined snap to interact with the snapd daemon to take certain privileged actions on behalf of the snap. It was found that snapctl did not properly parse command-line arguments, allowing an unprivileged user to trigger an authorised action on behalf of the snap that would normally require administrator privileges to perform. This could possibly allow an unprivileged user to perform a denial of service or similar.

    Published: 31 May 2024
    7.5
    High

    CVE-2024-34009

    Last Modified: 30 May 2025

    Insufficient checks whether ReCAPTCHA was enabled made it possible to bypass the checks on the login page. This did not affect other pages where ReCAPTCHA is utilized.

    Published: 31 May 2024
    8.8
    High

    CVE-2024-34008

    Last Modified: 25 Mar 2025

    Actions in the admin management of analytics models did not include the necessary token to prevent a CSRF risk.

    Published: 31 May 2024
    8.8
    High

    CVE-2024-34007

    Last Modified: 30 May 2025

    The logout option within MFA did not include the necessary token to avoid the risk of users inadvertently being logged out via CSRF.

    Published: 31 May 2024
    4.3
    Medium

    CVE-2024-34006

    Last Modified: 30 May 2025

    The site log report required additional encoding of event descriptions to ensure any HTML in the content is displayed in plaintext instead of being rendered.

    Published: 31 May 2024
    6.5
    Medium

    CVE-2024-34005

    Last Modified: 1 May 2025

    In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user with both access to restore database activity modules and direct access to the web server outside of the Moodle webroot could execute a local file include.

    Published: 31 May 2024
    6.5
    Medium

    CVE-2024-34004

    Last Modified: 1 May 2025

    In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user with both access to restore wiki modules and direct access to the web server outside of the Moodle webroot could execute a local file include.

    Published: 31 May 2024
    5.9
    Medium

    CVE-2024-34003

    Last Modified: 1 May 2025

    In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user with both access to restore workshop modules and direct access to the web server outside of the Moodle webroot could execute a local file include.

    Published: 31 May 2024
    6.5
    Medium

    CVE-2024-34002

    Last Modified: 1 May 2025

    In a shared hosting environment that has been misconfigured to allow access to other users' content, a Moodle user with both access to restore feedback modules and direct access to the web server outside of the Moodle webroot could execute a local file include.

    Published: 31 May 2024
    8.4
    High

    CVE-2024-34001

    Last Modified: 30 May 2025

    Actions in the admin preset tool did not include the necessary token to prevent a CSRF risk.

    Published: 31 May 2024
    4.3
    Medium

    CVE-2024-34000

    Last Modified: 30 May 2025

    ID numbers displayed in the lesson overview report required additional sanitizing to prevent a stored XSS risk.

    Published: 31 May 2024
    9.8
    Critical

    CVE-2024-33999

    Last Modified: 30 May 2025

    The referrer URL used by MFA required additional sanitizing, rather than being used directly.

    Published: 31 May 2024
    5.4
    Medium

    CVE-2024-33998

    Last Modified: 30 May 2025

    Insufficient escaping of participants' names in the participants page table resulted in a stored XSS risk when interacting with some features.

    Published: 31 May 2024
    6.1
    Medium

    CVE-2024-33997

    Last Modified: 30 May 2025

    Additional sanitizing was required when opening the equation editor to prevent a stored XSS risk when editing another user's equation.

    Published: 31 May 2024
    6.2
    Medium

    CVE-2024-33996

    Last Modified: 30 May 2025

    Incorrect validation of allowed event types in a calendar web service made it possible for some users to create events with types/audiences they did not have permission to publish to.

    Published: 31 May 2024
    4.3
    Medium

    CVE-2024-36845

    Last Modified: 3 Nov 2025

    An invalid pointer in the modbus_receive() function of libmodbus v3.1.6 allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.

    Published: 31 May 2024
    7.5
    High

    CVE-2024-36844

    Last Modified: 3 Nov 2025

    libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.

    Published: 31 May 2024