NA - CVE-2024-9910 - A vulnerability was found in D-Link DIR-619L B1...
A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the...
NA - CVE-2024-9911 - A vulnerability was found in D-Link DIR-619L B1...
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument...
NA - CVE-2024-9912 - A vulnerability was found in D-Link DIR-619L B1...
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the function formSetQoS of the file /goform/formSetQoS. The manipulation of the...
Medium - CVE-2024-9592 - The Easy PayPal Gift Certificate plugin for...
The Easy PayPal Gift Certificate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.3. This is due to missing or incorrect nonce validation on...
High - CVE-2024-9821 - The Bot for Telegram on WooCommerce plugin for...
The Bot for Telegram on WooCommerce plugin for WordPress is vulnerable to sensitive information disclosure due to missing authorization checks on the 'stm_wpcfto_get_settings' AJAX action...
Medium - CVE-2024-9860 - The Bridge Core plugin for WordPress is...
The Bridge Core plugin for WordPress is vulnerable to unauthorized modification of data or loss of data due to a missing capability check on the 'import_action' and...
Medium - CVE-2024-7489 - The Forms for Mailchimp by Optin Cat – Grow...
The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form color parameters in all versions up to, and including,...
Medium - CVE-2024-9187 - The Read more By Adam plugin for WordPress is...
The Read more By Adam plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the deleteRm() function in all versions up to, and including, 1.1.8. This...
Medium - CVE-2024-9656 - The Mynx Page Builder plugin for WordPress is...
The Mynx Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 0.27.8 due to insufficient input sanitization and...
Medium - CVE-2024-9670 - The 2D Tag Cloud plugin for WordPress is...
The 2D Tag Cloud plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including,...