CVE-2024-54293 |
Description: Incorrect Privilege Assignment vulnerability in CE21 CE21 Suite allows Privilege Escalation.This issue affects CE21 Suite: from n/a through 2.2.0.
CVSS: CRITICAL (9.8) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54292 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Appsplate Appsplate allows SQL Injection.This issue affects Appsplate: from n/a through 2.1.3.
CVSS: CRITICAL (9.3) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54290 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Justin Fletcher Role Includer allows Reflected XSS.This issue affects Role Includer: from n/a through 1.6.
CVSS: HIGH (7.1) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54289 |
Description: Missing Authorization vulnerability in Awesome Support Team Awesome Support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Awesome Support: from n/a through 6.3.0.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54288 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LDD Web Design LDD Directory Lite allows Reflected XSS.This issue affects LDD Directory Lite: from n/a through 3.3.
CVSS: HIGH (7.1) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54287 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Best Wp Developer Advanced Blog Post Block allows Stored XSS.This issue affects Advanced Blog Post Block: from n/a through 1.0.4.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54286 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sendsmaily LLC Smaily for WP allows Stored XSS.This issue affects Smaily for WP: from n/a through 3.1.2.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54282 |
Description: Deserialization of Untrusted Data vulnerability in Themeum WP Mega Menu allows Object Injection.This issue affects WP Mega Menu: from n/a through 1.4.2.
CVSS: HIGH (7.2) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54278 |
Description: Missing Authorization vulnerability in Plugin Devs News Ticker for Elementor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects News Ticker for Elementor: from n/a through 2.1.3.
CVSS: MEDIUM (4.3) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|
CVE-2024-54277 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alireza aliniya Nias course allows DOM-Based XSS.This issue affects Nias course: from n/a through 1.2.1.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
December 14th, 2024 (4 months ago)
|