NA - CVE-2024-11176 - Improper access control vulnerability in...
Improper access control vulnerability in M-Files Aino in versions before 24.10 allowed an authenticated user to access object information via incorrect calculation of effective permissions.
Medium - CVE-2024-10665 - The Yaad Sarig Payment Gateway For WC plugin...
The Yaad Sarig Payment Gateway For WC plugin for WordPress is vulnerable to unauthorized modification & access of data due to a missing capability check on the yaadpay_view_log_callback() and...
NA - CVE-2024-10891 - The Save as PDF Plugin by Pdfcrowd plugin for...
The Save as PDF Plugin by Pdfcrowd plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'save_as_pdf_pdfcrowd' shortcode in all versions up to, and...
Medium - CVE-2024-11179 - The MStore API – Create Native Android & iOS...
The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to SQL Injection via the 'status_type' parameter in all versions up to, and including,...
High - CVE-2024-11494 - **UNSUPPORTED WHEN ASSIGNED** The improper...
**UNSUPPORTED WHEN ASSIGNED** The improper authentication vulnerability in the Zyxel P-6101C ADSL modem firmware version P-6101CSA6AP_20140331 could allow an unauthenticated attacker to read some...
NA - CVE-2024-10382 - There exists a code execution vulnerability in...
There exists a code execution vulnerability in the Car App Android Jetpack Library. In the CarAppService desrialization logic is used that allows for arbitrary java classes to be constructed. In...
Medium - CVE-2024-10872 - The Getwid – Gutenberg Blocks plugin for...
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `template-post-custom-field` block in all versions up to, and including, 2.0.12 due to...
NA - CVE-2024-45689 - A flaw was found in Moodle. Dynamic tables did...
A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.
NA - CVE-2024-45691 - A flaw was found in Moodle. When restricting...
A flaw was found in Moodle. When restricting access to a lesson activity with a password, certain passwords could be bypassed or less secure due to a loose comparison in the password-checking...