Medium - CVE-2024-9442 - The F4 Improvements plugin for WordPress is...
The F4 Improvements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.9.0 due to insufficient input sanitization and...
Medium - CVE-2024-9542 - The Sky Addons for Elementor plugin for...
The Sky Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.1 via the render function in...
NA - CVE-2024-9600 - The Ditty WordPress plugin before 3.1.47 does...
The Ditty WordPress plugin before 3.1.47 does not sanitise and escape some of its settings, which could allow high privilege users such as author to perform Stored Cross-Site Scripting attacks.
NA - CVE-2024-9768 - The Formidable Forms WordPress plugin before...
The Formidable Forms WordPress plugin before 6.14.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting...
NA - CVE-2024-9828 - The Taskbuilder WordPress plugin before 3.0.5...
The Taskbuilder WordPress plugin before 3.0.5 does not sanitize user input into the 'load_orders' parameter and uses it in a SQL statement, allowing high privilege users such as admin to...
Medium - CVE-2024-9851 - The LSX Tour Operator plugin for WordPress is...
The LSX Tour Operator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.4.9 due to insufficient input sanitization and...
NA - CVE-2024-11587 - A vulnerability was found in idcCMS 1.60. It...
A vulnerability was found in idcCMS 1.60. It has been classified as problematic. This affects the function GetCityOptionJs of the file /inc/classProvCity.php. The manipulation of the argument...
NA - CVE-2024-11588 - A vulnerability was found in AVL-DiTEST-DiagDev...
A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. It has been rated as problematic. This issue affects the function DoIPConnection::reactOnReceivedTcpMessage of the file...
NA - CVE-2024-11589 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /expcatedit.php. The...
NA - CVE-2024-11590 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file...