CVE Catalog

Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.

Jan 7, 2025

KentoThemes Justified Image Gallery Stored Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the KentoThemes Justified Image Gallery WordPress plugin, affecting versions through 1.0. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.

1.6
Jan 7, 2025

WordPress List Pages at Depth Plugin Stored Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the WordPress List Pages at Depth plugin, affecting versions through 1.5. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected page.

1.6
Jan 7, 2025

WordPress Metadata SEO Plugin Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the WordPress Metadata SEO plugin, affecting versions through 2.3. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.

1.7
Jan 7, 2025

WordPress Show Google Analytics Widget Stored Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the WordPress Show Google Analytics Widget plugin, affecting versions through 1.5.4. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the site.

1.6
Jan 7, 2025

Sprout Apps Help Scout WordPress Plugin Broken Access Control Vulnerability

A missing authorization vulnerability has been identified in the Sprout Apps Help Scout WordPress plugin, specifically in versions through 6.5.1. This vulnerability allows exploitation of improperly configured access control, potentially enabling unprivileged users to perform actions reserved for higher privileges.

2.6
Jan 7, 2025

WordPress Slides & Presentations Plugin Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the WordPress Slides & Presentations plugin, affecting versions through 0.0.39. This issue allows attackers to inject malicious scripts that are executed when users view the affected content.

1.6
Jan 7, 2025

WordPress WPMU Prefill Post Plugin SQL Injection Vulnerability

A SQL injection vulnerability has been identified in the WordPress WPMU Prefill Post plugin, affecting versions through 1.02. This vulnerability allows for improper neutralization of special elements used in SQL commands, potentially enabling attackers to manipulate database queries and interact directly with the database.

1.6
Jan 7, 2025

Digital Zoom Studio WordPress Plugin Cross-Site Request Forgery Vulnerability

A Cross-Site Request Forgery (CSRF) vulnerability exists in the Digital Zoom Studio WordPress plugin 'Admin debug – enable debug' versions through 1.0.13. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.

2.0
Jan 7, 2025

Mindvalley MindValley Super PageMash SQL Injection Vulnerability

A SQL injection vulnerability has been identified in the Mindvalley Super PageMash WordPress plugin, affecting versions through 1.1. This vulnerability allows for improper neutralization of special elements used in SQL commands, potentially enabling attackers to manipulate database queries and interact directly with the database.

1.8
Jan 7, 2025

WordPress WP-tagMaker Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress WP-tagMaker plugin, specifically in versions through 0.2.2. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 7, 2025

WordPress Opencart Product in WP Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress Opencart Product in WP plugin, affecting versions through 1.0.1. This issue allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when users visit the site.

4.6
Jan 7, 2025

Gravity Master Custom Field For WP Job Manager Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the Gravity Master Custom Field for WP Job Manager plugin, affecting versions through 1.3. This vulnerability arises from improper input neutralization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.5
Jan 7, 2025

ClipBucket V5 File Upload Vulnerability in Manage Playlist Functionality Allowing Remote Code Execution

A file upload vulnerability has been identified in ClipBucket V5, prior to versions 5.5.1 - 239. The issue resides in the Manage Playlist feature, specifically when uploading playlist cover images. Due to inadequate validation, an attacker can upload a PHP script disguised as an image, enabling the execution of malicious files or web shells on the server. This vulnerability is present in both the admin and low-level user areas.

4.9
Jan 7, 2025

ClipBucket V5 Directory Traversal Vulnerability Leading to Denial-of-Service

A denial-of-service vulnerability has been identified in ClipBucket V5 versions prior to 5.5.1 - 238. The issue allows unauthenticated attackers to disrupt the application by exploiting a directory traversal flaw to change the template directory. This manipulation causes the application to become unresponsive and unusable.

5.6
Jan 7, 2025

ClipBucket V5 Avatar Upload Path Traversal Vulnerability Leading to Arbitrary File Deletion

A path traversal vulnerability has been identified in ClipBucket V5 during the user avatar upload process. The application allows users to upload avatars either as files or via URLs, with the latter option enabled by default. When an avatar is deleted, ClipBucket checks for the corresponding URL in the avatars subdirectory. However, the deletion process does not validate the URL for path traversal sequences, allowing crafted URLs to manipulate the file path and delete files outside the intended directory. This vulnerability affects ClipBucket versions through 5.5.1 - 236 and has been patched in version 5.5.1 - 237.

5.3
Jan 7, 2025

Code-Projects Online Book Shop SQL Injection Vulnerability in process_login.php

A critical SQL injection vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue arises in the file process_login.php, where the usernm parameter is processed without proper validation or sanitization, allowing attackers to manipulate the input and execute arbitrary SQL commands. This vulnerability can be exploited remotely, potentially leading to unauthorized access to the application's database or even remote code execution.

4.8
Jan 7, 2025

Code-Projects Online Book Shop SQL Injection Vulnerability in detail.php

A critical SQL injection vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue resides in the detail.php file, where the id parameter is manipulated without proper validation or sanitization, allowing remote attackers to inject malicious SQL code. This vulnerability could be exploited to gain unauthorized access to the application's database or potentially execute remote code.

3.6
Jan 7, 2025

Mozilla Firefox and Thunderbird Memory Safety Vulnerability Allowing Arbitrary Code Execution

A vulnerability has been identified in Mozilla Firefox versions prior to 134 and Thunderbird versions prior to 134. This vulnerability arises from memory safety issues that could lead to memory corruption. With sufficient effort, these issues might have been exploited to execute arbitrary code.

4.9
Jan 7, 2025

Mozilla Firefox Address Bar Spoofing Vulnerability on Android

A vulnerability exists in Mozilla Firefox for Android versions prior to 134, allowing attackers to spoof the address bar by using an invalid protocol scheme. This issue is not present on other operating systems.

4.7
Jan 7, 2025

Mozilla Firefox Focus Lock Screen Setting Bypass Vulnerability

A vulnerability exists in Firefox versions prior to 134, allowing certain users to bypass an opt-in setting that requires authentication before using the app. This issue specifically affects Firefox Focus for Android.

4.7
Jan 7, 2025

Mozilla Firefox Address Bar Spoofing Vulnerability on Android

A vulnerability in Mozilla Firefox for Android, affecting versions prior to 134, allows attackers to spoof the address bar by redirecting to an invalid protocol scheme. This issue is not present on other operating systems.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Memory Safety Vulnerability Allowing Potential Arbitrary Code Execution

A vulnerability has been identified in Mozilla Firefox and Thunderbird applications, specifically in versions prior to 134, Firefox ESR through 128.5, and Thunderbird through 128.5. This vulnerability arises from memory safety issues that could lead to memory corruption. While these flaws generally cannot be exploited through email in Thunderbird due to disabled scripting when reading mail, they pose potential risks in browser or browser-like contexts.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Memory Safety Vulnerability Allowing Potential Arbitrary Code Execution

A vulnerability has been identified in Mozilla Firefox and Thunderbird applications, specifically in versions prior to 134, with certain Thunderbird versions also affected prior to 128.6. This vulnerability arises from memory safety issues that could lead to memory corruption. While these flaws generally cannot be exploited through email in Thunderbird due to disabled scripting when reading mail, they pose potential risks in browser or browser-like contexts.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Memory Corruption Vulnerability via JavaScript Text Segmentation

A memory corruption vulnerability has been identified in Mozilla Firefox versions prior to 134, Firefox ESR versions prior to 128.6, and Thunderbird versions prior to 134 and Thunderbird ESR versions prior to 128.6. This vulnerability arises when specially crafted text is segmented, leading to memory corruption that could cause a crash, potentially exploitable under certain conditions.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Compartment Mismatch Vulnerability When Parsing JavaScript JSON Module

A vulnerability exists in Mozilla Firefox versions prior to 134, Firefox ESR versions prior to 128.6, and Thunderbird versions prior to 134 and 128.6. This vulnerability arises from a compartment mismatch that can occur when a JavaScript module is parsed as JSON, potentially leading to cross-compartment access and a use-after-free condition.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Alt-Svc ALPN Validation Vulnerability

A vulnerability exists in Mozilla Firefox versions prior to 134, Firefox ESR versions prior to 128.6, and Thunderbird versions prior to 134 and Thunderbird ESR versions prior to 128.6. When using Alt-Svc, the Application-Layer Protocol Negotiation (ALPN) did not correctly validate certificates during redirections from secure to insecure sites. This flaw could potentially be exploited to intercept or manipulate communications.

4.7
Jan 7, 2025

Mozilla Firefox and Thunderbird Use-After-Free Vulnerability in Line Breaking

A use-after-free vulnerability has been identified in Mozilla Firefox and Thunderbird. This issue arises when lines of text are broken, assuming a controlled failed memory allocation, which can lead to a potentially exploitable crash. The vulnerability is present in Firefox versions prior to 134, Firefox ESR versions prior to 128.6 and 115.19, as well as Thunderbird versions prior to 134 and 128.6.

4.6
Jan 7, 2025

Mozilla Firefox and Thunderbird WebChannel API Privilege Escalation Vulnerability

A vulnerability in the WebChannel API, used for inter-process communication, allowed for privilege escalation. The API accepted the sending principal without verification, potentially leading to unauthorized actions. This issue affects Firefox versions prior to 134, Firefox ESR versions prior to 128.6, Thunderbird versions prior to 134, and Thunderbird ESR versions prior to 128.6.

4.8
Jan 7, 2025

WordPress SimpleCharm Theme Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress SimpleCharm theme, affecting versions through 1.4.3. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 7, 2025

Crater Invoice APP_KEY-Dependent Unauthenticated Remote Command Execution Vulnerability

A remote command execution vulnerability has been identified in Crater Invoice versions through 6.0.6. This issue allows an unauthenticated attacker to execute arbitrary commands on the server by manipulating the laravel_session cookie. The vulnerability arises from the use of Laravel's session management, where session data is encrypted and stored in cookies. An attacker with knowledge of the APP_KEY can decrypt this data, modify it to include malicious payloads, and then re-encrypt it before sending it back to the server. The exploitation process takes advantage of arbitrary deserialization, leading to remote command execution.

3.8
Jan 7, 2025

JATOS Authentication System Denial-of-Service Vulnerability Allowing Account Lockout

A denial-of-service vulnerability has been identified in JATOS version 3.9.4, affecting the authentication system. This vulnerability allows an attacker to lock legitimate users out of their accounts by sending repeated failed login attempts. Specifically, submitting three incorrect login attempts per minute can trigger the account lockout mechanism, locking the user out indefinitely. The lockout is applied at the account level, not based on IP address, enabling any attacker to lock out any user account, regardless of privileges.

3.3
Jan 7, 2025

Rezgo WordPress Plugin Local File Inclusion Vulnerability

A local file inclusion vulnerability has been identified in the Rezgo WordPress plugin, affecting versions through 4.17. This vulnerability allows for improper control of filenames in include or require statements, which could be exploited to include local files from the server and display their contents. Such an exploitation could potentially lead to a complete takeover of the database, depending on the site's configuration.

3.0
Jan 7, 2025

Car Rental Management System Arbitrary File Upload Vulnerability Allowing Remote Code Execution

A vulnerability allowing authenticated users to upload arbitrary files has been identified in the Car Rental Management System, versions 1.0 to 1.3. This issue arises from insufficient file type validation and improper access controls on the uploads directory. Exploiting this vulnerability enables attackers to upload malicious files, such as PHP scripts, which can be executed remotely, potentially leading to a complete server compromise.

2.6
Jan 7, 2025

matrix-rust-sdk Cryptographic Identity Change Notification Vulnerability

A vulnerability exists in the matrix-sdk-crypto Rust crate, specifically in versions prior to 0.8.0. This vulnerability arises because these versions do not provide a mechanism to notify when a user's cryptographic identity changes from verified to unverified. As a result, client applications that rely on this SDK may fail to recognize such critical changes.

3.0
Jan 7, 2025

Vehicle Management System SQL Injection Vulnerability

A SQL injection vulnerability has been identified in Vehicle Management System versions 1.0. Affected POST parameters can be exploited by low-authenticated guest users during vehicle booking actions. The vulnerable parameters include 'Booking ID', 'Action Name', and 'Payment Confirmation ID', present in '/vehicle-management/newvehicle.php' and '/vehicle-management/newdriver.php'. This vulnerability allows for the execution of arbitrary SQL commands, potentially leading to unauthorized database access, data manipulation, and privilege escalation.

2.5
Jan 7, 2025

Elspec Engineering G5 Digital Fault Recorder XML External Entity Vulnerability Leading to Denial-of-Service

A vulnerability allowing XML External Entity (XXE) attacks has been identified in Elspec Engineering G5 Digital Fault Recorder Firmware versions through 1.2.1.12. This vulnerability allows attackers to craft XML payloads that can cause a Denial-of-Service (DoS) condition on the device.

2.5
Jan 7, 2025

Elspec G5 Digital Fault Recorder XML External Entity Vulnerability Leading to Denial-of-Service

A vulnerability allowing XML External Entity (XXE) attacks has been identified in Elspec G5 digital fault recorder versions through 1.2.1.12. This vulnerability may enable an attacker to cause a Denial-of-Service (DoS) by sending a crafted XML payload.

2.5
Jan 7, 2025

Elspec Engineering G5 Digital Fault Recorder Buffer Overflow Vulnerability

A buffer overflow vulnerability has been identified in Elspec Engineering G5 Digital Fault Recorder Firmware version 1.2.1.12 and earlier. This vulnerability may allow an attacker to execute arbitrary code on the operating system.

2.7
Jan 7, 2025

CTFd Regular Expression Denial-of-Service Vulnerability

A Regular Expression Denial-of-Service (ReDoS) vulnerability has been identified in CTFd version 3.7.3. The issue arises in the 'validate_email' function located in 'CTFd/utils/validators/__init__.py'. Attackers can exploit this vulnerability by sending a crafted email address during the registration process, causing excessive backtracking in the regular expression engine and leading to a denial-of-service condition.

5.6
Jan 7, 2025

IBM Cognos Controller and IBM Controller Improper Certificate Validation Vulnerability Allowing Unauthorized Access

A vulnerability exists in IBM Cognos Controller versions 11.0.0 through 11.0.1 and IBM Controller version 11.1.0. This vulnerability allows unauthorized users to obtain valid tokens, granting access to protected resources. The issue arises from improper validation of certificates, which could be exploited to bypass security measures and access sensitive information or functionalities.

3.5
Jan 7, 2025

IBM Cognos Controller and IBM Controller Artifactory API Key Exposure Vulnerability

A vulnerability exists in IBM Cognos Controller versions 11.0.0 to 11.0.1 and IBM Controller 11.1.0, allowing for the exposure of Artifactory API keys. This issue enables users to publish code to private packages or repositories under their organization's name.

2.6
Jan 7, 2025

IBM Cognos Controller and IBM Controller Sensitive Information Disclosure Vulnerability

A vulnerability exists in IBM Cognos Controller versions 11.0.0 through 11.0.1 and IBM Controller version 11.1.0, allowing remote attackers to access sensitive information. This issue arises when detailed stack traces are returned in the browser, which could be exploited to gather information for further attacks.

3.4
Jan 7, 2025

IBM Cognos Controller and IBM Controller Sensitive Information Disclosure Vulnerability

A vulnerability exists in IBM Cognos Controller versions 11.0.0 through 11.0.1 and IBM Controller version 11.1.0, allowing remote attackers to access sensitive information. This issue arises when detailed technical error messages are displayed in the browser, potentially facilitating further attacks against the system.

3.4
Jan 7, 2025

IBM Cognos Controller and IBM Controller Information Disclosure Vulnerability

An information disclosure vulnerability exists in IBM Cognos Controller versions 11.0.0 through 11.0.1 and IBM Controller version 11.1.0. This vulnerability allows remote attackers to access sensitive information by exploiting detailed technical error messages returned in the browser. The exposed information could be used for further attacks against the system.

3.4
Jan 7, 2025

Code-Projects Online Book Shop SQL Injection Vulnerability

A critical SQL injection vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue resides in the file '/booklist.php', where the 'subcatid' parameter is manipulated, allowing for SQL injection. This vulnerability can be exploited remotely, potentially leading to unauthorized access to the server's database or even remote code execution.

3.6
Jan 7, 2025

Code-Projects Online Book Shop Cross-Site Scripting Vulnerability

A cross-site scripting (XSS) vulnerability has been identified in Code-Projects Online Book Shop version 1.0. The issue arises in the file '/booklist.php' when the 'subcatnm' parameter is manipulated. This vulnerability allows remote attackers to inject malicious scripts, which are then executed in the context of the user's browser.

3.8
Jan 7, 2025

MacPorts PortsCLI Remote Code Execution Vulnerability via Compromised Mirror

A vulnerability exists in the MacPorts package manager for macOS, specifically in the PortsCLI component. When a user runs 'port selfupdate' against a malicious or compromised MacPorts mirror, the mirror can execute arbitrary commands as root on the user's machine. This issue arises because the MacPorts client uses 'rsync' to download update files from the mirror. If the mirror serves a valid, signed archive along with additional crafted files, the client can be tricked into executing commands specified in those files, bypassing signature validation.

3.5
Jan 7, 2025

SourceCodester Home Clean Services Management System SQL Injection Vulnerability

A critical SQL injection vulnerability has been identified in SourceCodester Home Clean Services Management System version 1.0. The issue arises in the file '/public_html/admin/process.php', where the manipulation of the 'type', 'length', and 'business' arguments allows for SQL injection. This vulnerability can be exploited remotely, and the details of the exploit have been disclosed publicly.

2.9
Jan 7, 2025

IBM Security ReaQta Sensitive Information Disclosure Vulnerability

A vulnerability in IBM Security ReaQta version 3.12 has been identified, where the application improperly discloses sensitive information in HTTP responses. This information could potentially be exploited in further attacks against the system.

3.4
Jan 7, 2025

IBM Security ReaQta Denial-of-Service Vulnerability Allowing Privileged Users to Disrupt Service

A denial-of-service vulnerability has been identified in IBM Security ReaQta version 3.12. This issue could allow a privileged user to disrupt service by sending multiple administration requests, which could overwhelm the system due to improper resource allocation.

1.6