NA - CVE-2024-50300 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: regulator: rtq2208: Fix uninitialized use of regulator_config Fix rtq2208 driver uninitialized use to cause kernel error.
NA - CVE-2024-50301 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: security/keys: fix slab-out-of-bounds in key_task_permission KASAN reports an out of bounds read: BUG: KASAN:...
NA - CVE-2024-50302 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since the report buffer is used by all kinds of drivers in various ways,...
NA - CVE-2024-21539 - Versions of the package @eslint/plugin-kit...
Versions of the package @eslint/plugin-kit before 0.2.3 are vulnerable to Regular Expression Denial of Service (ReDoS) due to improper input sanitization. An attacker can increase the CPU usage and...
NA - CVE-2024-10103 - In the process of testing the MailPoet...
In the process of testing the MailPoet WordPress plugin before 5.3.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which...
NA - CVE-2024-8403 - Improper Validation of Specified Type of Input...
Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 and later and FX5-ENET/IP versions 1.100 to 1.104 allows a...
Medium - CVE-2024-10268 - The MP3 Audio Player – Music Player, Podcast...
The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's sonaar_audioplayer shortcode in all...
High - CVE-2024-10388 - The WordPress GDPR plugin for WordPress is...
The WordPress GDPR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gdpr_firstname' and 'gdpr_lastname' parameters in all versions up to, and...
Medium - CVE-2024-11069 - The WordPress GDPR plugin for WordPress is...
The WordPress GDPR plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'WordPress_GDPR_Data_Delete::check_action' function in all...
Medium - CVE-2024-11098 - The SVG Block plugin for WordPress is...
The SVG Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 1.1.24 due to insufficient input sanitization and...