Medium - CVE-2024-12115 - The Poll Maker – Versus Polls, Anonymous Polls,...
The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.5.4. This is due to missing or...
Medium - CVE-2024-12165 - The Mollie for Contact Form 7 plugin for...
The Mollie for Contact Form 7 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 5.0.0 due to insufficient...
Medium - CVE-2024-12166 - The Shortcodes Blocks Creator Ultimate plugin...
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 2.2.0 due to...
Medium - CVE-2024-12167 - The Shortcodes Blocks Creator Ultimate plugin...
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '_wpnonce' parameter in all versions up to, and including, 2.2.0 due to...
Medium - CVE-2024-12257 - The CardGate Payments for WooCommerce plugin...
The CardGate Payments for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 3.2.1 due to...
Medium - CVE-2024-7894 - The If Menu plugin for WordPress is vulnerable...
The If Menu plugin for WordPress is vulnerable to unauthorized modification of the plugin's license key due to a missing capability check on the 'actions' function in versions up to,...
Medium - CVE-2024-8679 - The Library Management System – Manage...
The Library Management System – Manage e-Digital Books Library plugin for WordPress is vulnerable to SQL Injection via the ‘value' parameter of the owt_lib_handler AJAX action in all versions...
NA - CVE-2024-11183 - The Simple Side Tab WordPress plugin before...
The Simple Side Tab WordPress plugin before 2.2.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting...
NA - CVE-2024-53143 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: fsnotify: Fix ordering of iput() and watched_objects decrement Ensure the superblock is kept alive until we're done with...
High - CVE-2024-11010 - The FileOrganizer – Manage WordPress and...
The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.1.4 via the 'default_lang'...