NA - CVE-2024-9768 - The Formidable Forms WordPress plugin before...
The Formidable Forms WordPress plugin before 6.14.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting...
NA - CVE-2024-9828 - The Taskbuilder WordPress plugin before 3.0.5...
The Taskbuilder WordPress plugin before 3.0.5 does not sanitize user input into the 'load_orders' parameter and uses it in a SQL statement, allowing high privilege users such as admin to...
Medium - CVE-2024-9851 - The LSX Tour Operator plugin for WordPress is...
The LSX Tour Operator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.4.9 due to insufficient input sanitization and...
NA - CVE-2024-11587 - A vulnerability was found in idcCMS 1.60. It...
A vulnerability was found in idcCMS 1.60. It has been classified as problematic. This affects the function GetCityOptionJs of the file /inc/classProvCity.php. The manipulation of the argument...
NA - CVE-2024-11588 - A vulnerability was found in AVL-DiTEST-DiagDev...
A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. It has been rated as problematic. This issue affects the function DoIPConnection::reactOnReceivedTcpMessage of the file...
NA - CVE-2024-11589 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /expcatedit.php. The...
NA - CVE-2024-11590 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file...
Medium - CVE-2024-7016 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Smarttek Informatics Smart Doctor allows Stored XSS.This issue affects Smart...
NA - CVE-2024-11088 - The Simple Membership plugin for WordPress is...
The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.5 via the WordPress core search feature. This makes it possible...
NA - CVE-2024-11089 - The Anonymous Restricted Content plugin for...
The Anonymous Restricted Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.6.5 via the WordPress core search feature. This makes...