High - CVE-2024-7389 - The Forminator plugin for WordPress is...
The Forminator plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.29.1 via class-forminator-addon-hubspot-wp-api.php. This makes it...
Medium - CVE-2024-3827 - The Spectra Pro plugin for WordPress is...
The Spectra Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via block ids in all versions up to, and including, 1.1.4 due to insufficient input sanitization and output...
NA - CVE-2024-5595 - The Essential Blocks WordPress plugin before...
The Essential Blocks WordPress plugin before 4.7.0 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow...
High - CVE-2024-39392 - InDesign Desktop versions ID18.5.2, ID19.3 and...
InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user....
Medium - CVE-2024-39396 - InDesign Desktop versions ID18.5.2, ID19.3 and...
InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this...
High - CVE-2024-3238 - The WordPress Menu Plugin — Superfly Responsive...
The WordPress Menu Plugin — Superfly Responsive Menu plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0.29. This is due to missing or...
NA - CVE-2024-42459 - In the Elliptic package 6.5.6 for Node.js,...
In the Elliptic package 6.5.6 for Node.js, EDDSA signature malleability occurs because there is a missing signature length check, and thus zero-valued bytes can be removed or appended.
NA - CVE-2024-42460 - In the Elliptic package 6.5.6 for Node.js,...
In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because there is a missing check for whether the leading bit of r and s is zero.