CVE-2024-54030 – Huawei OpenHarmony Use-After-Free DoS Vulnerability

The following table lists the changes that have been made to the CVE-2024-54030 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2024-45070 – OpenHarmony Heap Buffer Out-of-Bounds Read Information Leak

The following table lists the changes that have been made to the CVE-2024-45070 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2024-11626 – Progress Sitefinity Sitefinity Cross-site Scripting (XSS) Vulnerability

The following table lists the changes that have been made to the CVE-2024-11626 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2024-12516 – WordPress Coupon Plugin Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2024-12516 Published : Jan. 7, 2025, 8:15 a.m. | 25 minutes ago Description : The Coupon Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘Coupon Code’ parameter in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated […]

CVE-2024-12202 – Croma Music Plugin for WordPress Privilege Escalation

CVE ID : CVE-2024-12202 Published : Jan. 7, 2025, 8:15 a.m. | 25 minutes ago Description : The Croma Music plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the ‘ironMusic_ajax’ function in all versions up to, and including, 3.6. This makes […]

CVE-2024-12077 – Booking Calendar and Booking Calendar Pro Cross-Site Scripting Vulnerability

CVE ID : CVE-2024-12077 Published : Jan. 7, 2025, 8:15 a.m. | 25 minutes ago Description : The Booking Calendar and Booking Calendar Pro plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the ‘calendar_id’ parameter in all versions up to, and including, 3.2.19 and 11.2.19 respectively, due to insufficient input sanitization and output escaping. […]

CVE-2024-11627 – Progress Sitefinity Session Fixation Vulnerability

The following table lists the changes that have been made to the CVE-2024-11627 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2024-11625 – Progress Software Corporation Sitefinity Information Exposure Through Error Message

The following table lists the changes that have been made to the CVE-2024-11625 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2024-10866 – WordPress Export Import Menus Capability Check Bypass Vulnerability

CVE ID : CVE-2024-10866 Published : Jan. 7, 2025, 8:15 a.m. | 25 minutes ago Description : The Export Import Menus plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the dsp_export_import_menus() function in all versions up to, and including, 1.9.1. This makes it possible for unauthenticated attackers […]

Moxa Alerts Users to High-Severity Vulnerabilities in Cellular and Secure Routers

Moxa Alerts Users to High-Severity Vulnerabilities in Cellular and Secure Routers Vulnerability / Network Security Taiwan-based Moxa has warned of two security vulnerabilities impacting its cellular routers, secure routers, and network security appliances that could allow privilege … Read more Published Date: Jan 07, 2025 (3 hours, 6 minutes ago) Vulnerabilities has been mentioned in this article. […]