CVE Feed

    Dashboard / CVE

    4.6
    Medium

    CVE-2024-2108

    Last Modified: 8 Apr 2026

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an image title embedded into a form in all versions up to, and including, 3.8.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-2476

    Last Modified: 15 Apr 2026

    The OceanWP theme for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the load_theme_panel_pane function in all versions up to, and including, 3.5.4. This makes it possible for authenticated attackers, with subscriber-level access and above, to expose sensitive information such as system/environment data and API keys.

    Published: 29 Mar 2024
    7.2
    High

    CVE-2024-0913

    Last Modified: 8 Apr 2026

    The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting plugin for WordPress is vulnerable to time-based SQL Injection via the erp/v1/accounting/v1/transactions/sales REST API endpoint in all versions up to, and including, 1.13.0 due to insufficient escaping on the user supplied status and customer_id parameters and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with accounting manager or admin privileges and higher to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 29 Mar 2024
    5.4
    Medium

    CVE-2024-1858

    Last Modified: 15 Apr 2026

    The Lightbox slider – Responsive Lightbox Gallery plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.9.9 via deserialization of untrusted input through post meta data. This makes it possible for authenticated attackers, with contributor-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.

    Published: 29 Mar 2024
    6.1
    Medium

    CVE-2024-2116

    Last Modified: 15 Apr 2026

    The Christmas Greetings plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the code parameter in all versions up to, and including, 1.2.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-2113

    Last Modified: 8 Apr 2026

    The Ninja Forms Contact Form – The Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.8.0. This is due to missing or incorrect nonce validation on the nf_download_all_subs AJAX action. This makes it possible for unauthenticated attackers to trigger an export of a form's submission to a publicly accessible location via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-2970

    Last Modified: 15 Apr 2026

    The News Wall plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.0. This is due to missing or incorrect nonce validation on the nwap_newslist_page() function. This makes it possible for unauthenticated attackers to update the plugin's settings and modify news lists via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 29 Mar 2024
    5.4
    Medium

    CVE-2024-2969

    Last Modified: 8 Apr 2026

    The WP-Eggdrop plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.1. This is due to missing or incorrect nonce validation on the wpegg_updateOptions() function. This makes it possible for unauthenticated attackers to update the plugin's settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 29 Mar 2024
    4.4
    Medium

    CVE-2024-2963

    Last Modified: 8 Apr 2026

    The Pocket News Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings such as "Consumer Key" and "Access Token" in all versions up to, and including, 0.2.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

    Published: 29 Mar 2024
    4.4
    Medium

    CVE-2024-2968

    Last Modified: 8 Apr 2026

    The WP-Eggdrop plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-2844

    Last Modified: 8 Apr 2026

    The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to insufficient user validation on the ajax_cancel_appointment() function in all versions up to, and including, 3.11.18. This makes it possible for unauthenticated attackers to cancel other users orders.

    Published: 29 Mar 2024
    6.4
    Medium

    CVE-2024-2842

    Last Modified: 8 Apr 2026

    The Easy Appointments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ea_full_calendar' shortcode in all versions up to, and including, 3.11.18 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 29 Mar 2024
    6.4
    Medium

    CVE-2024-2936

    Last Modified: 8 Apr 2026

    The Sydney Toolbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the _id attribute of widgets in all versions up to, and including, 1.26 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 29 Mar 2024
    6.8
    Medium

    CVE-2024-3077

    Last Modified: 23 Jan 2025

    An malicious BLE device can crash BLE victim device by sending malformed gatt packet

    Published: 29 Mar 2024
    6.4
    Medium

    CVE-2024-2841

    Last Modified: 8 Apr 2026

    The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 2.6.5 due to insufficient input sanitization and output escaping on user supplied attributes such as 'id'. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 29 Mar 2024
    6.4
    Medium

    CVE-2024-2475

    Last Modified: 8 Apr 2026

    The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.13 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 29 Mar 2024
    5.9
    Medium

    CVE-2024-1729

    Last Modified: 30 Jul 2025

    A timing attack vulnerability exists in the gradio-app/gradio repository, specifically within the login function in routes.py. The vulnerability arises from the use of a direct comparison operation (`app.auth[username] == password`) to validate user credentials, which can be exploited to guess passwords based on response times. Successful exploitation of this vulnerability could allow an attacker to bypass authentication mechanisms and gain unauthorized access.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-29640

    Last Modified: 9 Jul 2026

    An issue in aliyundrive-webdav v.2.3.3 and before allows a remote attacker to execute arbitrary code via a crafted payload to the sid parameter in the action_query_qrcode component.

    Published: 29 Mar 2024
    8.4
    High

    CVE-2023-52629

    Last Modified: 3 Oct 2026

    In the Linux kernel, the following vulnerability has been resolved: sh: push-switch: Reorder cleanup operations to avoid use-after-free bug The original code puts flush_work() before timer_shutdown_sync() in switch_drv_remove(). Although we use flush_work() to stop the worker, it could be rescheduled in switch_timer(). As a result, a use-after-free bug can occur. The details are shown below: (cpu 0) | (cpu 1) switch_drv_remove() | flush_work() | ... | switch_timer // timer | schedule_work(&psw->work) timer_shutdown_sync() | ... | switch_work_handler // worker kfree(psw) // free | | psw->state = 0 // use This patch puts timer_shutdown_sync() before flush_work() to mitigate the bugs. As a result, the worker and timer will be stopped safely before the deallocate operations.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-31032

    Last Modified: 15 Apr 2026

    An issue in Huashi Private Cloud CDN Live Streaming Acceleration Server hgateway-sixport v.1.1.2 allows a remote attacker to execute arbitrary code via the manager/ipping.php component.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-29667

    Last Modified: 15 Apr 2026

    SQL Injection vulnerability in Tongtianxing Technology Co., Ltd CMSV6 v.7.31.0.2 through v.7.31.0.3 allows a remote attacker to escalate privileges and obtain sensitive information via the ids parameter.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-30635

    Last Modified: 25 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability located in the funcpara1 parameter in the formSetCfm function.

    Published: 29 Mar 2024
    7.3
    High

    CVE-2024-27619

    Last Modified: 15 Apr 2026

    Dlink Dir-3040us A1 1.20b03a hotfix is vulnerable to Buffer Overflow. Any user having read/write access to ftp server can write directly to ram causing buffer overflow if file or files uploaded are greater than available ram. Ftp server allows change of directory to root which is one level up than root of usb flash directory. During upload ram is getting filled and causing system resource exhaustion (no free memory) which causes system to crash and reboot.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-29893

    Last Modified: 9 Jan 2025

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of ArgoCD starting from v2.4 have a bug where the ArgoCD repo-server component is vulnerable to a Denial-of-Service attack vector. Specifically, it's possible to crash the repo server component through an out of memory error by pointing it to a malicious Helm registry. The loadRepoIndex() function in the ArgoCD's helm package, does not limit the size nor time while fetching the data. It fetches it and creates a byte slice from the retrieved data in one go. If the registry is implemented to push data continuously, the repo server will keep allocating memory until it runs out of it. A patch for this vulnerability has been released in v2.10.3, v2.9.8, and v2.8.12.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-30628

    Last Modified: 14 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromAddressNat function.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-23449

    Last Modified: 4 Feb 2025

    An uncaught exception in Elasticsearch >= 8.4.0 and < 8.11.1 occurs when an encrypted PDF is passed to an attachment processor through the REST API. The Elasticsearch ingest node that attempts to parse the PDF file will crash. This does not happen with password-protected PDF files or with unencrypted PDF files.

    Published: 29 Mar 2024
    7.2
    High

    CVE-2024-28405

    Last Modified: 4 Apr 2025

    SEMCMS 4.8 is vulnerable to Incorrect Access Control. The code installs SEMCMS_Funtion.php before checking if the admin is a valid user in the admin page because authentication function is called from there, users gain admin privileges.

    Published: 29 Mar 2024
    7.2
    High

    CVE-2024-29686

    Last Modified: 28 May 2025

    Server-side Template Injection (SSTI) vulnerability in Winter CMS v.1.2.3 allows a remote attacker to execute arbitrary code via a crafted payload to the CMS Pages field and Plugin components. NOTE: the vendor disputes this because the payload could only be entered by a trusted user, such as the owner of the server that hosts Winter CMS, or a developer working for them.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-30613

    Last Modified: 8 Apr 2025

    Tenda AC15 v15.03.05.18 has a stack overflow vulnerability in the time parameter from the setSmartPowerManagement function.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-30622

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the mitInterface parameter from fromAddressNat function.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-30623

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromDhcpListClient function.

    Published: 29 Mar 2024
    8.8
    High

    CVE-2024-30624

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the urls parameter from saveParentControlInfo function.

    Published: 29 Mar 2024
    8
    High

    CVE-2024-30625

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the entrys parameter from fromAddressNat function.

    Published: 29 Mar 2024
    8
    High

    CVE-2024-30626

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedEndTime parameter from setSchedWifi function.

    Published: 29 Mar 2024
    8.8
    High

    CVE-2024-30627

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the deviceId parameter from saveParentControlInfo function.

    Published: 29 Mar 2024
    5.7
    Medium

    CVE-2024-30629

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the list1 parameter from fromDhcpListClient function.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2024-30630

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the time parameter from saveParentControlInfo function.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-30631

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedStartTime parameter from setSchedWifi function.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-30632

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security_5g parameter from formWifiBasicSet function.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-30633

    Last Modified: 13 Mar 2025

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security parameter from the formWifiBasicSet function.

    Published: 29 Mar 2024
    8
    High

    CVE-2024-30634

    Last Modified: 13 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the mitInterface parameter in the fromAddressNat function.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-30636

    Last Modified: 13 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the PPPOEPassword parameter in the formQuickIndex function.

    Published: 29 Mar 2024
    8.8
    High

    CVE-2024-30637

    Last Modified: 13 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function in the mac parameter.

    Published: 29 Mar 2024
    4.3
    Medium

    CVE-2024-30638

    Last Modified: 13 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the entrys parameter in the fromAddressNat function.

    Published: 29 Mar 2024
    6.5
    Medium

    CVE-2024-30639

    Last Modified: 13 Mar 2025

    Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability in the page parameter of fromAddressNat function.

    Published: 29 Mar 2024
    8
    High

    CVE-2024-30645

    Last Modified: 8 Apr 2025

    Tenda AC15V1.0 V15.03.20_multi has a command injection vulnerability via the deviceName parameter.

    Published: 29 Mar 2024
    0
    Low

    CVE-2024-33427

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 29 Mar 2024
    8.2
    High

    CVE-2024-28960

    Last Modified: 5 Jun 2026

    An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

    Published: 29 Mar 2024
    10
    Critical

    CVE-2024-3094

    Last Modified: 20 Nov 2025

    Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex obfuscations, the liblzma build process extracts a prebuilt object file from a disguised test file existing in the source code, which is then used to modify specific functions in the liblzma code. This results in a modified liblzma library that can be used by any software linked against this library, intercepting and modifying the data interaction with this library.

    Published: 29 Mar 2024
    9.8
    Critical

    CVE-2023-49231

    Last Modified: 15 Apr 2026

    An authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an unauthenticated attacker to receive an administrative API token.

    Published: 29 Mar 2024