CVE-2025-3736 |
Description: Vulnerability in Drupal Simple GTM.This issue affects Simple GTM: *.*.
EPSS Score: 0.03%
April 16th, 2025 (4 days ago)
|
CVE-2025-3735 |
Description: Vulnerability in Drupal Panelizer (obsolete).This issue affects Panelizer (obsolete): *.*.
EPSS Score: 0.03%
April 16th, 2025 (4 days ago)
|
CVE-2025-3734 |
Description: Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy allows Flooding.This issue affects Stage File Proxy: from 0.0.0 before 3.1.5.
EPSS Score: 0.04%
April 16th, 2025 (4 days ago)
|
CVE-2025-3733 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal baguetteBox.Js allows Cross-Site Scripting (XSS).This issue affects baguetteBox.Js: from 0.0.0 before 2.0.4, from 3.0.0 before 3.0.1.
EPSS Score: 0.04%
April 16th, 2025 (4 days ago)
|
CVE-2024-40074 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain Stored Cross Site Scripting (XSS) via id_generator/classes/SystemSettings.php?f=update_settings, and the point of vulnerability is in the POST parameter 'short_name'.
EPSS Score: 0.02%
April 16th, 2025 (4 days ago)
|
CVE-2024-40073 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the template parameter at id_generator/admin/?page=generate&template=4.
EPSS Score: 0.01%
April 16th, 2025 (4 days ago)
|
CVE-2024-40072 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at id_generator/admin/?page=generate/index&id=1.
EPSS Score: 0.01%
April 16th, 2025 (4 days ago)
|
CVE-2024-40071 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain an arbitrary file upload vulnerability via id_generator/classes/SystemSettings.php?f=update_settings. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
EPSS Score: 0.02%
April 16th, 2025 (4 days ago)
|
CVE-2024-40070 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain an arbitrary file upload vulnerability via id_generator/classes/Users.php?f=save. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
EPSS Score: 0.02%
April 16th, 2025 (4 days ago)
|
CVE-2024-40069 |
Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain Stored Cross Site Scripting (XSS) via id_generator/classes/Users.php?f=save, and the point of vulnerability is in the POST parameter 'firstname' and 'lastname'.
EPSS Score: 0.03%
April 16th, 2025 (4 days ago)
|