NA - CVE-2024-47142 - AIPHONE IXG SYSTEM IXG-2C7 firmware Ver.2.03...
AIPHONE IXG SYSTEM IXG-2C7 firmware Ver.2.03 and earlier and IXG-2C7-L firmware Ver.2.03 and earlier contain an issue with insufficiently protected credentials, which may allow a network-adjacent...
NA - CVE-2024-38296 - Dell Edge Gateway 5200 (Coffee Lake S),...
Dell Edge Gateway 5200 (Coffee Lake S), versions prior to 12.0.94.2380, contains an Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution...
Medium - CVE-2024-10034 - The Gallery Blocks with Lightbox. Image...
The Gallery Blocks with Lightbox. Image Gallery, (HTML5 video , YouTube, Vimeo) Video Gallery and Lightbox for native gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Medium - CVE-2024-10666 - The Easy Twitter Feed – Twitter feeds plugin...
The Easy Twitter Feed – Twitter feeds plugin for WP plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.6 via the [etf] shortcode. This makes it...
High - CVE-2024-11104 - The Sky Addons for Elementor (Free Templates...
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post Carousel, Particles, Sliders, Chart, Blogs) plugin for WordPress is vulnerable to unauthorized...
Medium - CVE-2024-11225 - The Premium Packages – Sell Digital Products...
The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in...
Medium - CVE-2024-11355 - The Ultimate YouTube Video & Shorts Player With...
The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_setting() function in all...
Medium - CVE-2024-11381 - The Control horas plugin for WordPress is...
The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ch_registro' shortcode in all versions up to, and including, 1.0.1 due to...
High - CVE-2024-11601 - The Sky Addons for Elementor (Free Templates...
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post Carousel, Particles, Sliders, Chart, Blog, Video Gallery) plugin for WordPress is vulnerable to...
Medium - CVE-2024-8735 - The MailMunch – Grow your Email List plugin for...
The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up...