CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2023-6067

    Last Modified: 9 May 2025

    The WP User Profile Avatar WordPress plugin through 1.0.1 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

    Published: 15 Apr 2024
    8.8
    High

    CVE-2024-1655

    Last Modified: 15 Apr 2026

    Certain ASUS WiFi routers models has an OS Command Injection vulnerability, allowing an authenticated remote attacker to execute arbitrary system commands by sending a specially crafted request.

    Published: 15 Apr 2024
    7.3
    High

    CVE-2024-3769

    Last Modified: 28 Feb 2025

    A vulnerability, which was classified as critical, was found in PHPGurukul Student Record System 3.20. Affected is an unknown function of the file /login.php. The manipulation of the argument id/password leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-260616.

    Published: 15 Apr 2024
    7.2
    High

    CVE-2024-3778

    Last Modified: 8 Apr 2025

    The file upload functionality of Ai3 QbiBot does not properly restrict types of uploaded files, allowing remote attackers with administrator privilege to upload files with dangerous type containing malicious code.

    Published: 15 Apr 2024
    5.3
    Medium

    CVE-2024-3768

    Last Modified: 8 Apr 2025

    A vulnerability, which was classified as critical, has been found in PHPGurukul/itsourcecode News Portal 4.1. This issue affects some unknown processing of the file search.php. The manipulation of the argument searchtitle leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-260615.

    Published: 15 Apr 2024
    9.8
    Critical

    CVE-2024-3777

    Last Modified: 8 Apr 2025

    The password reset feature of Ai3 QbiBot lacks proper access control, allowing unauthenticated remote attackers to reset any user's password.

    Published: 15 Apr 2024
    5.3
    Medium

    CVE-2024-3767

    Last Modified: 27 Sept 2025

    A vulnerability classified as critical was found in PHPGurukul News Portal 4.1. This vulnerability affects unknown code of the file /admin/edit-post.php. The manipulation of the argument posttitle/category leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 15 Apr 2024
    6.1
    Medium

    CVE-2024-3776

    Last Modified: 8 Apr 2025

    The parameter used in the login page of Netvision airPASS is not properly filtered for user input. An unauthenticated remote attacker can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.

    Published: 15 Apr 2024
    5.3
    Medium

    CVE-2024-3775

    Last Modified: 8 Apr 2025

    aEnrich Technology a+HRD's functionality for downloading files using youtube-dl.exe does not properly restrict user input. This allows attackers to pass arbitrary arguments to youtube-dl.exe, leading to the download of partial unauthorized files.

    Published: 15 Apr 2024
    5.3
    Medium

    CVE-2024-3774

    Last Modified: 17 Nov 2025

    aEnrich Technology a+HRD's functionality for front-end retrieval of system configuration values lacks proper restrictions on a specific parameter, allowing attackers to modify this parameter to access certain sensitive system configuration values.

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2024-1849

    Last Modified: 8 May 2025

    The WP Customer Reviews WordPress plugin before 3.7.1 does not validate a parameter allowing contributor and above users to redirect a page to a malicious URL

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2024-1846

    Last Modified: 13 May 2025

    The Responsive Tabs WordPress plugin before 4.0.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

    Published: 15 Apr 2024
    8.8
    High

    CVE-2024-1755

    Last Modified: 8 May 2025

    The NPS computy WordPress plugin through 2.7.5 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks

    Published: 15 Apr 2024
    4.7
    Medium

    CVE-2024-1754

    Last Modified: 8 May 2025

    The NPS computy WordPress plugin through 2.7.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2024-1746

    Last Modified: 8 May 2025

    The Testimonial Slider WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Apr 2024
    4.7
    Medium

    CVE-2024-1712

    Last Modified: 8 Apr 2025

    The Carousel Slider WordPress plugin before 2.2.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Apr 2024
    4.8
    Medium

    CVE-2024-1660

    Last Modified: 8 May 2025

    The Top Bar WordPress plugin before 3.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Apr 2024
    4.9
    Medium

    CVE-2024-1310

    Last Modified: 27 May 2025

    The WooCommerce WordPress plugin before 8.6 does not prevent users with at least the contributor role from leaking products they shouldn't have access to. (e.g. private, draft and trashed products)

    Published: 15 Apr 2024
    6.5
    Medium

    CVE-2024-1307

    Last Modified: 8 Apr 2025

    The Smart Forms WordPress plugin before 2.6.94 does not have proper authorization in some actions, which could allow users with a role as low as a subscriber to call them and perform unauthorized actions

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2024-1306

    Last Modified: 8 Apr 2025

    The Smart Forms WordPress plugin before 2.6.94 does not have CSRF checks in some places, which could allow attackers to make logged-in users perform unwanted actions via CSRF attacks, such as editing entries, and we consider it a medium risk.

    Published: 15 Apr 2024
    4.3
    Medium

    CVE-2024-1204

    Last Modified: 15 May 2025

    The Meta Box WordPress plugin before 5.9.4 does not prevent users with at least the contributor role from access arbitrary custom fields assigned to other user's posts.

    Published: 15 Apr 2024
    4.8
    Medium

    CVE-2024-0902

    Last Modified: 7 Apr 2025

    The Fancy Product Designer WordPress plugin before 6.1.81 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Apr 2024
    8.1
    High

    CVE-2024-0399

    Last Modified: 7 Apr 2025

    The WooCommerce Customers Manager WordPress plugin before 29.7 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to an SQL injection exploitable by Subscriber+ role.

    Published: 15 Apr 2024
    9.8
    Critical

    CVE-2024-28056

    Last Modified: 4 Sept 2026

    Amazon AWS Amplify CLI before 12.10.1 incorrectly configures the role trust policy of IAM roles associated with Amplify projects. When the Authentication component is removed from an Amplify project, a Condition property is removed but "Effect":"Allow" remains present, and consequently sts:AssumeRoleWithWebIdentity would be available to threat actors with no conditions. Thus, if Amplify CLI had been used to remove the Authentication component from a project built between August 2019 and January 2024, an "assume role" may have occurred, and may have been leveraged to obtain unauthorized access to an organization's AWS resources. NOTE: the problem could only occur if an authorized AWS user removed an Authentication component. (The vulnerability did not give a threat actor the ability to remove an Authentication component.) However, in realistic situations, an authorized AWS user may have removed an Authentication component, e.g., if the objective were to stop using built-in Cognito resources, or move to a completely different identity provider.

    Published: 15 Apr 2024
    9.8
    Critical

    CVE-2024-28556

    Last Modified: 31 Mar 2025

    SQL Injection vulnerability in Sourcecodester php task management system v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to admin-manage-user.php.

    Published: 15 Apr 2024
    8.8
    High

    CVE-2024-28558

    Last Modified: 27 Mar 2025

    SQL Injection vulnerability in sourcecodester Petrol pump management software v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to admin/app/web_crud.php.

    Published: 15 Apr 2024
    7.2
    High

    CVE-2020-22539

    Last Modified: 18 Apr 2025

    An arbitrary file upload vulnerability in the Add Category function of Codoforum v4.9 allows attackers to execute arbitrary code via uploading a crafted file.

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2020-22540

    Last Modified: 18 Apr 2025

    Stored Cross-Site Scripting (XSS) vulnerability in Codoforum v4.9, allows attackers to execute arbitrary code and obtain sensitive information via crafted payload to Category name component.

    Published: 15 Apr 2024
    7.5
    High

    CVE-2024-30656

    Last Modified: 20 Jun 2025

    An issue in Fireboltt Dream Wristphone BSW202_FB_AAC_v2.0_20240110-20240110-1956 allows attackers to cause a Denial of Service (DoS) via a crafted deauth frame.

    Published: 15 Apr 2024
    9.1
    Critical

    CVE-2024-24486

    Last Modified: 10 Apr 2025

    An issue discovered in silex technology DS-600 Firmware v.1.4.1 allows a remote attacker to edit device settings via the SAVE EEP_DATA command.

    Published: 15 Apr 2024
    9.8
    Critical

    CVE-2024-28557

    Last Modified: 31 Mar 2025

    SQL Injection vulnerability in Sourcecodester php task management system v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to update-admin.php.

    Published: 15 Apr 2024
    6.1
    Medium

    CVE-2024-31651

    Last Modified: 20 Jun 2025

    A cross-site scripting (XSS) in Cosmetics and Beauty Product Online Store v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the First Name parameter.

    Published: 15 Apr 2024
    7.8
    High

    CVE-2023-33806

    Last Modified: 20 Jun 2025

    Insecure default configurations in Hikvision Interactive Tablet DS-D5B86RB/B V2.3.0 build220119, allows attackers to execute arbitrary commands.

    Published: 15 Apr 2024
    5.3
    Medium

    CVE-2023-45503

    Last Modified: 18 Apr 2025

    SQL Injection vulnerability in Macrob7 Macs CMS 1.1.4f, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), escalate privileges, and obtain sensitive information via crafted payload to resetPassword, forgotPasswordProcess, saveUser, saveRole, deleteUser, deleteRole, deleteComment, deleteUser, allowComment, saveRole, forgotPasswordProcess, resetPassword, saveUser, addComment, saveRole, and saveUser endpoints.

    Published: 15 Apr 2024
    7.5
    High

    CVE-2024-24485

    Last Modified: 10 Apr 2025

    An issue discovered in silex technology DS-600 Firmware v.1.4.1 allows a remote attacker to obtain sensitive information via the GET EEP_DATA command.

    Published: 15 Apr 2024
    6.8
    Medium

    CVE-2024-24487

    Last Modified: 10 Apr 2025

    An issue discovered in silex technology DS-600 Firmware v.1.4.1 allows a remote attacker to cause a denial of service via crafted UDP packets using the EXEC REBOOT SYSTEM command.

    Published: 15 Apr 2024
    6.3
    Medium

    CVE-2024-30567

    Last Modified: 15 Apr 2026

    An issue in JNT Telecom JNT Liftcom UMS V1.J Core Version JM-V15 allows a remote attacker to execute arbitrary code via the Network Troubleshooting functionality.

    Published: 15 Apr 2024
    6.5
    Medium

    CVE-2024-30840

    Last Modified: 14 Apr 2025

    A Stack Overflow vulnerability in Tenda AC15 v15.03.05.18 allows attackers to cause a denial of service via the LISTEN parameter in the fromDhcpListClient function.

    Published: 15 Apr 2024
    5.4
    Medium

    CVE-2024-31649

    Last Modified: 10 Apr 2025

    A cross-site scripting (XSS) in Cosmetics and Beauty Product Online Store v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Product Name parameter.

    Published: 15 Apr 2024
    6.1
    Medium

    CVE-2024-31648

    Last Modified: 20 Jun 2025

    Cross Site Scripting (XSS) in Insurance Management System v1.0, allows remote attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter at /core/new_category2.

    Published: 15 Apr 2024
    9.6
    Critical

    CVE-2024-31650

    Last Modified: 10 Apr 2025

    A cross-site scripting (XSS) in Cosmetics and Beauty Product Online Store v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Last Name parameter.

    Published: 15 Apr 2024
    6.1
    Medium

    CVE-2024-31652

    Last Modified: 10 Apr 2025

    A cross-site scripting (XSS) in Cosmetics and Beauty Product Online Store v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search parameter.

    Published: 15 Apr 2024
    6.1
    Medium

    CVE-2024-32489

    Last Modified: 3 Nov 2025

    TCPDF before 6.7.4 mishandles calls that use HTML syntax.

    Published: 15 Apr 2024
    7.8
    High

    CVE-2024-32488

    Last Modified: 9 Jul 2025

    In Foxit PDF Reader and Editor before 2024.1, Local Privilege Escalation could occur during update checks because weak permissions on the update-service folder allow attackers to place crafted DLL files there.

    Published: 15 Apr 2024
    5.9
    Medium

    CVE-2024-3772

    Last Modified: 9 Dec 2025

    Regular expression denial of service in Pydanic < 2.4.0, < 1.10.13 allows remote attackers to cause denial of service via a crafted email string.

    Published: 15 Apr 2024
    5.9
    Medium

    CVE-2024-31497

    Last Modified: 4 Nov 2025

    In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quick attack in approximately 60 signatures. This is especially important in a scenario where an adversary is able to read messages signed by PuTTY or Pageant. The required set of signed messages may be publicly readable because they are stored in a public Git service that supports use of SSH for commit signing, and the signatures were made by Pageant through an agent-forwarding mechanism. In other words, an adversary may already have enough signature information to compromise a victim's private key, even if there is no further use of vulnerable PuTTY versions. After a key compromise, an adversary may be able to conduct supply-chain attacks on software maintained in Git. A second, independent scenario is that the adversary is an operator of an SSH server to which the victim authenticates (for remote login or file copy), even though this server is not fully trusted by the victim, and the victim uses the same private key for SSH connections to other services operated by other entities. Here, the rogue server operator (who would otherwise have no way to determine the victim's private key) can derive the victim's private key, and then use it for unauthorized access to those other services. If the other services include Git services, then again it may be possible to conduct supply-chain attacks on software maintained in Git. This also affects, for example, FileZilla before 3.67.0, WinSCP before 6.3.3, TortoiseGit before 2.15.0.1, and TortoiseSVN through 1.14.6.

    Published: 15 Apr 2024
    5
    Medium

    CVE-2023-3597

    Last Modified: 15 Apr 2026

    A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.authentication. This flaw allows a remote user authenticated with a password to register a false second authentication factor along with an existing one and bypass authentication.

    Published: 15 Apr 2024
    8.8
    High

    CVE-2024-22014

    Last Modified: 30 Jun 2025

    An issue discovered in 360 Total Security Antivirus through 11.0.0.1061 for Windows allows attackers to gain escalated privileges via Symbolic Link Follow to Arbitrary File Delete.

    Published: 15 Apr 2024
    4.8
    Medium

    CVE-2024-31990

    Last Modified: 9 Jan 2025

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. The API server does not enforce project sourceNamespaces which allows attackers to use the UI to edit resources which should only be mutable via gitops. This vulenrability is fixed in 2.10.7, 2.9.12, and 2.8.16.

    Published: 15 Apr 2024
    7.5
    High

    CVE-2024-1135

    Last Modified: 15 Apr 2026

    Gunicorn fails to properly validate Transfer-Encoding headers, leading to HTTP Request Smuggling (HRS) vulnerabilities. By crafting requests with conflicting Transfer-Encoding headers, attackers can bypass security restrictions and access restricted endpoints. This issue is due to Gunicorn's handling of Transfer-Encoding headers, where it incorrectly processes requests with multiple, conflicting Transfer-Encoding headers, treating them as chunked regardless of the final encoding specified. This vulnerability allows for a range of attacks including cache poisoning, session manipulation, and data exposure.

    Published: 15 Apr 2024