NA - CVE-2024-8894 - Out-of-bounds Write vulnerability was...
Out-of-bounds Write vulnerability was discovered in Open Design Alliance Drawings SDK before 2025.10. Reading crafted DWF file and missing proper checks on received SectionIterator data can trigger...
Medium - CVE-2024-8962 - The WPBITS Addons For Elementor Page Builder...
The WPBITS Addons For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.5.2 due to insufficient...
Medium - CVE-2024-11935 - The Email Address Obfuscation plugin for...
The Email Address Obfuscation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘class’ parameter in all versions up to, and including, 1.0.1 due to insufficient input...
High - CVE-2024-51465 - IBM App Connect Enterprise Certified Container...
IBM App Connect Enterprise Certified Container 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, and 12.3 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a...
NA - CVE-2024-53125 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: bpf: sync_linked_regs() must preserve subreg_def Range propagation must not affect subreg_def marks, otherwise the following...
NA - CVE-2024-7488 - Improper Input Validation vulnerability in...
Improper Input Validation vulnerability in RestApp Inc. Online Ordering System allows Integer Attacks.This issue affects Online Ordering System: through 04.12.2024. NOTE: The vendor was contacted...
NA - CVE-2024-12056 - The Client secret is not checked when using the...
The Client secret is not checked when using the OAuth Password grant type. By exploiting this vulnerability, an attacker could connect to a web server using a client application not explicitly...