Medium - CVE-2024-12475 - The WP Multi Store Locator plugin for WordPress...
The WP Multi Store Locator plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.4.1 due to insufficient input sanitization and output escaping....
NA - CVE-2025-0206 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in code-projects Online Shoe Store 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/index.php. The manipulation...
NA - CVE-2025-0207 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functionality of the file /function/login.php. The...
NA - CVE-2025-0208 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /summary.php. The manipulation of the argument tid...
High - CVE-2024-10957 - The UpdraftPlus: WP Backup & Migration Plugin...
The UpdraftPlus: WP Backup & Migration Plugin plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.24.11 via deserialization of untrusted input in the...
NA - CVE-2025-0210 - A vulnerability has been found in Campcodes...
A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file...
Medium - CVE-2024-41763 - IBM Engineering Lifecycle Optimization -...
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Medium - CVE-2024-41765 - IBM Engineering Lifecycle Optimization -...
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request...
High - CVE-2024-41766 - IBM Engineering Lifecycle Optimization -...
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause a denial of service using a complex regular expression.
High - CVE-2024-41767 - IBM Engineering Lifecycle Optimization -...
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to...