Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Aviplugins.Com WP Register Profile With Shortcode plugin Read More ...
Continue ReadingJune 12, 2023
LabCollector 6.0 though 6.15 allows remote code execution. An authenticated remote low-privileged user can upload an executable PHP file and execute system commands. The vulnerability is in the messag ...
Continue ReadingJune 12, 2023
A Cross Site Scripting (XSS) vulnerability in Youxun Electronic Equipment (Shanghai) Co., Ltd AC Centralized Management Platform v1.02.040 allows attackers to execute arbitrary code via uploading a cr ...
Continue ReadingJune 12, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GalleryPlugins Video Contest plugin Read More ...
Continue ReadingJune 12, 2023
EyouCMS 1.6.2 is vulnerable to Cross Site Scripting (XSS).Read More ...
Continue ReadingJune 12, 2023
The git-url-parse crate through 0.4.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to normalize_url in lib.rs, a similar issue to CVE-2023-32758 (Python).Read More ...
Continue ReadingJune 12, 2023
All versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.Read More ...
Continue ReadingJune 12, 2023
A vulnerability classified as problematic was found in cchetanonline WP-CopyProtect up to 3.0.0. This vulnerability affects the function CopyProtect_options_page of the file wp-copyprotect.php. The ma ...
Continue ReadingJune 12, 2023
Back to Main