Medium - CVE-2022-3556 - The Cab fare calculator plugin for WordPress is...
The Cab fare calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the vehicle title setting in versions up to, and including, 1.1.6 due to insufficient input...
Medium - CVE-2022-4529 - The Security, Antivirus, Firewall – S.A.F...
The Security, Antivirus, Firewall – S.A.F plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.3.5. This is due to insufficient restrictions on where the IP...
NA - CVE-2024-5956 - This vulnerability allows unauthenticated...
This vulnerability allows unauthenticated remote attackers to bypass authentication and gain partial data access to the vulnerable Trellix IPS Manager with garbage data in response mostly
Medium - CVE-2024-7380 - The Geo Controller plugin for WordPress is...
The Geo Controller plugin for WordPress is vulnerable to unauthorized menu creation/deletion due to missing capability checks on the ajax__geolocate_menu and ajax__geolocate_remove_menu functions...
Medium - CVE-2024-7381 - The Geo Controller plugin for WordPress is...
The Geo Controller plugin for WordPress is vulnerable to unauthorized shortcode execution due to missing authorization and capability checks on the ajax__shortcode_cache function in all versions up...
Medium - CVE-2024-7605 - The HelloAsso plugin for WordPress is...
The HelloAsso plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ha_ajax' function in all versions up to, and including,...
NA - CVE-2024-8460 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in D-Link DNS-320 2.02b01. Affected by this issue is some unknown functionality of the file /cgi-bin/widget_api.cgi of the...
NA - CVE-2024-7884 - When a canister method is called via...
When a canister method is called via ic_cdk::call* , a new Future CallFuture is created and can be awaited by the caller to get the execution result. Internally, the state of the Future is tracked...
NA - CVE-2024-8461 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in D-Link DNS-320 2.02b01. This affects an unknown part of the file /cgi-bin/discovery.cgi of the component Web Management Interface....