CVE-2023-23818

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Aviplugins.Com WP Register Profile With Shortcode plugin Read More ...

Continue Reading
CVE-2023-33253

LabCollector 6.0 though 6.15 allows remote code execution. An authenticated remote low-privileged user can upload an executable PHP file and execute system commands. The vulnerability is in the messag ...

Continue Reading
CVE-2023-34855

A Cross Site Scripting (XSS) vulnerability in Youxun Electronic Equipment (Shanghai) Co., Ltd AC Centralized Management Platform v1.02.040 allows attackers to execute arbitrary code via uploading a cr ...

Continue Reading
CVE-2022-45827

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GalleryPlugins Video Contest plugin Read More ...

Continue Reading
CVE-2023-33492

EyouCMS 1.6.2 is vulnerable to Cross Site Scripting (XSS).Read More ...

Continue Reading
CVE-2023-33290

The git-url-parse crate through 0.4.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to normalize_url in lib.rs, a similar issue to CVE-2023-32758 (Python).Read More ...

Continue Reading
CVE-2023-26133

All versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.Read More ...

Continue Reading
CVE-2015-10118

A vulnerability classified as problematic was found in cchetanonline WP-CopyProtect up to 3.0.0. This vulnerability affects the function CopyProtect_options_page of the file wp-copyprotect.php. The ma ...

Continue Reading

Back to Main

Subscribe for the latest news: