NA - CVE-2024-12226 - In affected versions of the Octopus Kubernetes...
In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was...
NA - CVE-2024-45331 - A incorrect privilege assignment in Fortinet...
A incorrect privilege assignment in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15, FortiManager versions 7.4.0 through 7.4.2,...
NA - CVE-2024-48885 - A improper limitation of a pathname to a...
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiRecorder versions 7.2.0 through 7.2.1, 7.0.0 through 7.0.4, FortiWeb versions 7.6.0,...
Medium - CVE-2024-12427 - The Multi Step Form plugin for WordPress is...
The Multi Step Form plugin for WordPress is vulnerable to unauthorized limited file upload due to a missing capability check on the fw_upload_file AJAX action in all versions up to, and including,...
High - CVE-2024-12613 - The Passwords Manager plugin for WordPress is...
The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to, and including, 1.4.8 due to insufficient...
High - CVE-2024-12614 - The Passwords Manager plugin for WordPress is...
The Passwords Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'pms_save_setting' and 'post_new_pass'...
Medium - CVE-2024-12615 - The Passwords Manager plugin for WordPress is...
The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, and including, 1.4.8 due to insufficient...
Medium - CVE-2024-13355 - The Admin and Customer Messages After Order for...
The Admin and Customer Messages After Order for WooCommerce: OrderConvo plugin for WordPress is vulnerable to limited file uploads due to insufficient file type validation in the upload_file()...