CVE-2024-9601 – Qubely – Advanced Gutenberg Blocks Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-9601 Published : Feb. 14, 2025, 7:15 a.m. | 45 minutes ago Description : The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ and ‘UniqueID’ parameter in all versions up to, and including, 1.8.12 due to insufficient input sanitization and output escaping. This makes […]
CVE-2025-22630 – MarketingFire Widget Options Command Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-22630 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 14, 2025 Action […]
CVE-2024-57969 – MISP Attribute Search ACL Bypass
The following table lists the changes that have been made to the CVE-2024-57969 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 14, 2025 Action […]
CVE-2024-7052 – Forminator Forms Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-7052 Published : Feb. 14, 2025, 6:15 a.m. | 1 hour, 45 minutes ago Description : The Forminator Forms WordPress plugin before 1.38.3 does not sanitise and escape some of its settings, which could allow high privilege users such as Admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed […]
CVE-2024-13692 – WooCommerce Return Refund and Exchange Plugin Insecure Direct Object Reference Vulnerability
CVE ID : CVE-2024-13692 Published : Feb. 14, 2025, 6:15 a.m. | 1 hour, 45 minutes ago Description : The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.4.5 via several […]
CVE-2024-13641 – WooCommerce Return Management System Sensitive Information Exposure
CVE ID : CVE-2024-13641 Published : Feb. 14, 2025, 6:15 a.m. | 1 hour, 45 minutes ago Description : The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.4.5 via the ‘attachment’ […]
CVE-2024-13493 – Sensly Online Presence Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-13493 Published : Feb. 14, 2025, 6:15 a.m. | 1 hour, 45 minutes ago Description : The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is […]
CVE-2025-23406 – “Cente Middleware TCP/IP Network Series OOB Read Vulnerability”
The following table lists the changes that have been made to the CVE-2025-23406 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 14, 2025 Action […]
CVE-2024-2240 – Brocade SANnav Docker Daemon Unauthenticated Remote Code Execution
The following table lists the changes that have been made to the CVE-2024-2240 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 14, 2025 Action […]
CVE-2025-26519 – musl libc Iconv EUC-KR UTF-8 Out-of-Bounds Write Vulnerability
The following table lists the changes that have been made to the CVE-2025-26519 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 14, 2025 Action […]