High - CVE-2024-11423 - The Ultimate Gift Cards for WooCommerce –...
The Ultimate Gift Cards for WooCommerce – Create WooCommerce Gift Cards, Gift Vouchers, Redeem & Manage Digital Gift Coupons. Offer Gift Certificates, Schedule Gift Cards, and Use Advance Coupons...
Medium - CVE-2024-11830 - The PDF Flipbook, 3D Flipbook—DearFlip plugin...
The PDF Flipbook, 3D Flipbook—DearFlip plugin for WordPress is vulnerable to Stored Cross-Site Scripting via outline settings in all versions up to 2.3.52 due to insufficient input sanitization and...
Medium - CVE-2024-12337 - The Shipping via Planzer for WooCommerce plugin...
The Shipping via Planzer for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘processed-ids’ parameter in all versions up to, and including, 1.0.25 due to...
NA - CVE-2025-21102 - Dell VxRail, versions 7.0.000 through 7.0.532,...
Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability,...
NA - CVE-2024-51480 - RedisTimeSeries is a time-series database...
RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYINDEX, TS.MGET, TS.MRAGE, TS.MREVRANGE by an authenticated user, using specially...
NA - CVE-2024-51737 - RediSearch is a Redis module that provides...
RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticated redis user executing FT.SEARCH or FT.AGGREGATE with a specially crafted...
NA - CVE-2024-55517 - An issue was discovered in the Interllect Core...
An issue was discovered in the Interllect Core Search in Polaris FT Intellect Core Banking 9.5. Input passed through the groupType parameter in /SCGController is mishandled before being used in SQL...
NA - CVE-2024-55656 - RedisBloom adds a set of probabilistic data...
RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloom, which is a module used in Redis. The integer overflow vulnerability allows...
Medium - CVE-2025-20123 - Multiple vulnerabilities in the web-based...
Multiple vulnerabilities in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks...
NA - CVE-2025-20126 - A vulnerability in certification validation...
A vulnerability in certification validation routines of Cisco ThousandEyes Endpoint Agent for macOS and RoomOS could allow an unauthenticated, remote attacker to intercept or manipulate metrics...