NA - CVE-2024-9651 - The Fluent Forms WordPress plugin before 5.2.1...
The Fluent Forms WordPress plugin before 5.2.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting...
NA - CVE-2024-12305 - An object-level access control vulnerability in...
An object-level access control vulnerability in Unifiedtransform version 2.0 and potentially earlier versions allows unauthorized access to student grades. A malicious student user can view grades...
NA - CVE-2024-12306 - Multiple access control vulnerabilities in...
Multiple access control vulnerabilities in Unifiedtransform version 2.0 and potentially earlier versions allow unauthorized access to personal information of students and teachers. The...
NA - CVE-2024-12307 - A function-level access control vulnerability...
A function-level access control vulnerability in Unifiedtransform version 2.0 and potentially earlier versions allows teachers to modify student personal data without proper authorization. The...
NA - CVE-2024-46901 - Insufficient validation of filenames against...
Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows authenticated users with commit access to commit a corrupted...
NA - CVE-2023-22701 - Missing Authorization vulnerability in...
Missing Authorization vulnerability in Shopfiles Ltd Ebook Store allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ebook Store: from n/a through 5.775.
NA - CVE-2023-23716 - Missing Authorization vulnerability in Zendesk...
Missing Authorization vulnerability in Zendesk Zendesk Support for WordPress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Zendesk Support for...
NA - CVE-2023-23725 - Missing Authorization vulnerability in Chris...
Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through 3.46.