CVE Catalog
Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.
Schema App Structured Data Plugin Missing Authorization Vulnerability Allowing Exploitation of Access Control Security Levels
A missing authorization vulnerability has been identified in the Schema App Structured Data WordPress plugin, affecting versions through 1.23.1. This vulnerability allows exploitation of incorrectly configured access control security levels, potentially enabling unauthorized users to perform actions reserved for higher privileges.
D-Link DIR-816 A2 DHCP Improper Access Control Vulnerability
A critical vulnerability has been identified in the D-Link DIR-816 A2 router, specifically in version 1.10CNB05_R1B011D88210. The issue arises in the DHCPD Setting Handler, within the file '/goform/form2Dhcpd.cgi'. This vulnerability allows for improper access controls, enabling remote exploitation.
D-Link DIR-816 A2 WiFi Settings Improper Access Control Vulnerability
A critical vulnerability has been identified in the D-Link DIR-816 A2 router, specifically in version 1.10CNB05_R1B011D88210. The issue arises in the WiFi Settings Handler, within the file '/goform/form2AdvanceSetup.cgi'. This vulnerability allows for improper access controls, enabling unauthorized users to manipulate settings or access restricted features. The vulnerability can be exploited remotely, without any authentication requirements.
Azzaroco WP SuperBackup Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Azzaroco WP SuperBackup plugin for WordPress, affecting versions through 2.3.3. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress HTML Forms Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress HTML Forms plugin, affecting versions through 1.4.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress SendSMS Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress SendSMS plugin, affecting versions through 1.2.9. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress User Referral Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress User Referral plugin, affecting versions through 8.0. This issue allows attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress odPhotogallery Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress odPhotogallery plugin, affecting versions through 0.5.3. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress Upload Scanner Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Upload Scanner plugin, affecting versions through 1.2. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
Irshad Services WordPress Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Irshad Services WordPress plugin, specifically in the 'Services updates for customers' component, affecting versions through 1.0. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected page.
WordPress FAQs Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress FAQs plugin, affecting versions through 1.0.2. This issue allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when users visit the site.
Foliovision FV Descriptions Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Foliovision FV Descriptions WordPress plugin, affecting versions through 1.4. This issue allows attackers to inject malicious scripts that are executed when users visit the affected page.
10CentMail WordPress Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the 10CentMail WordPress plugin, affecting versions through 2.1.50. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
Dreamwinner Easy Language Switcher Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Dreamwinner Easy Language Switcher WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
Lemonade Coding Studio Lemonade Social Networks Autoposter Pinterest Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Lemonade Social Networks Autoposter Pinterest plugin for WordPress, affecting versions through 2.0. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
BizSwoop Leads CRM Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the BizSwoop Leads CRM plugin, affecting versions through 2.0.13. This issue allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when users visit the affected site.
WordPress Inline Footnotes Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress Inline Footnotes plugin, affecting versions through 2.3.0. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected site.
D-Link DIR-816 A2 Access Control Vulnerability in Virtual Service Handler
A critical access control vulnerability has been identified in the D-Link DIR-816 A2 router, specifically in version 1.10CNB05_R1B011D88210. The issue arises from improper access controls in the Virtual Service Handler component, particularly within the file '/goform/form2AddVrtsrv.cgi'. This vulnerability allows unauthorized users to manipulate the service handler, potentially leading to unauthorized access or actions.
D-Link DIR-816 A2 Improper Access Control Vulnerability in DDNS Service
A critical vulnerability has been identified in the D-Link DIR-816 A2 router, specifically in version 1.10CNB05_R1B011D88210. The issue resides within the DDNS service component, particularly in the '/goform/DDNS' file. This vulnerability allows for improper access control, enabling unauthorized users to manipulate DDNS settings remotely without authentication.
ASUS Routers Unintended Entry Point Vulnerability Allowing Arbitrary Command Execution
A vulnerability has been identified in certain ASUS router models that creates an unintended entry point, potentially allowing arbitrary command execution. This issue is detailed in the '01/02/2025 ASUS Router AiCloud vulnerability' section of the ASUS Security Advisory.
Code-Projects Job Recruitment SQL Injection Vulnerability in Seeker Profile Handler
A critical SQL injection vulnerability has been identified in Code-Projects Job Recruitment version 1.0. The issue resides in the Seeker Profile Handler component, specifically within the file '_parse/_call_main_search_ajax.php'. The vulnerability is triggered by manipulating the 's1' parameter, allowing remote attackers to execute arbitrary SQL commands. This exploitation could lead to unauthorized access to sensitive information in the server's database.
Code-Projects Job Recruitment SQL Injection Vulnerability
A critical SQL injection vulnerability has been identified in the Job Recruitment application, version 1.0. The issue arises in the Job Post Handler component, specifically within the file '/_parse/_call_job/search_ajax.php'. The vulnerability allows remote attackers to manipulate the 'n' argument, leading to unauthorized database access or manipulation.
ASUS Routers AiCloud Improper Input Insertion Vulnerability Leading to Arbitrary Command Execution
A vulnerability allowing arbitrary command execution has been identified in the AiCloud feature of certain ASUS router models. This issue arises from improper input insertion and affects several different router models. Users can refer to the ASUS Security Advisory for detailed information about the specific models impacted.
AHAthat WordPress Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the AHAthat WordPress plugin, affecting versions through 1.6. The issue arises because the plugin does not properly escape the 'REQUEST_URI' parameter from the server before outputting it in an attribute. This flaw could be exploited in older web browsers.
Goodlayers Core WordPress Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Goodlayers Core WordPress plugin, affecting versions prior to 2.0.10. The issue arises because the plugin fails to properly sanitize and escape certain settings, potentially allowing users with contributor roles and above to execute XSS attacks that are stored and could be triggered later.
wp-enable-svg WordPress Plugin SVG Upload Vulnerability Allowing Cross-Site Scripting
A stored cross-site scripting vulnerability has been identified in the wp-enable-svg WordPress plugin, affecting versions through 0.7. The issue arises because the plugin does not properly sanitize SVG files upon upload, allowing users with author roles and above to upload SVGs that contain malicious scripts.
Net::EasyTCP Perl Package Random Number Generation Vulnerability
A vulnerability exists in the Net::EasyTCP package for Perl, specifically in versions 0.15 through 0.26. The issue arises because the package relies on Perl's built-in random number generator, rand(), which is not secure, unless a stronger randomization module is available. This vulnerability can lead to predictable random number generation, potentially compromising cryptographic operations.
Net::EasyTCP Cryptographic Weakness Vulnerability
A vulnerability exists in the Net::EasyTCP package for Perl, specifically in versions prior to 0.15. The issue arises because the package relies on Perl's built-in random number generator, rand(), which is not suitable for cryptographic purposes, to create cryptographic keys. This could lead to predictable key generation and potential security risks in applications using this module.
Landray EIS SQL Injection Vulnerability
A SQL injection vulnerability has been identified in Landray EIS versions 2001 through 2006. The issue arises in the 'Message/fi_message_receiver.aspx' page, where the 'replyid' parameter is vulnerable to injection attacks.
Huang Yaoshi Pharmaceutical Management Software Arbitrary File Upload Vulnerability
An arbitrary file upload vulnerability has been identified in Huang Yaoshi Pharmaceutical Management Software versions through 16.0. The issue arises in the UploadFile function within the XSDService.asmx file, where the fileName element can be manipulated to upload files with .asp extensions. This vulnerability allows attackers to upload arbitrary files and potentially execute them on the server.
Code-Projects Job Recruitment SQL Injection Vulnerability
A critical SQL injection vulnerability has been identified in Code-Projects Job Recruitment version 1.0. The issue resides in the file '/_parse/_feedback_system.php', where the 'person' parameter is manipulated, allowing for remote exploitation. This vulnerability enables attackers to execute arbitrary SQL commands, potentially leading to unauthorized access or manipulation of database information.
Travel Tour Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Travel Tour WordPress theme, versions prior to 5.2.4. The issue arises because the theme fails to properly sanitize and escape a parameter before displaying it on the page. This vulnerability could be exploited against users with high privileges, such as administrators.
WordPress Category Post Shortcode Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress Category Post Shortcode plugin, affecting versions through 2.4. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected site.
WordPress SvegliaT Buttons Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress SvegliaT Buttons plugin, affecting versions through 1.3.0. This vulnerability allows attackers to inject malicious scripts that are executed when users visit the affected site.
Yulio Aleman Jimenez Smart Shopify Product Missing Authorization Vulnerability Allowing Arbitrary Content Deletion
A missing authorization vulnerability has been identified in the Yulio Aleman Jimenez Smart Shopify Product plugin, specifically in versions through 1.0.2. This vulnerability arises from incorrectly configured access control security levels, allowing unauthorized deletion of content such as images, posts, or pages from affected websites.
Next.js Authorization Bypass Vulnerability in Middleware
A vulnerability allowing authorization bypass in Next.js applications has been identified. This issue affects versions 9.5.5 through 14.2.14. The vulnerability arises when authorization in middleware is based on pathname, allowing bypass for pages directly under the application's root directory. For instance, authorization would be bypassed on 'https://example.com/foo' but not on 'https://example.com/' or 'https://example.com/foo/bar'. This vulnerability has been automatically mitigated for Next.js applications hosted on Vercel, regardless of the Next.js version.
CRM Perks WordPress HelpDesk Integration Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the CRM Perks WordPress HelpDesk Integration plugin, specifically in versions through 1.1.6. The issue arises from inadequate input sanitization and output escaping on user-supplied attributes, particularly within the 'crm-perks-tickets' shortcode. This vulnerability allows authenticated attackers with contributor-level access or higher to inject arbitrary web scripts into pages, which are executed when users access the affected page.
WordPress Advanced Fancybox Plugin Cross-Site Request Forgery Vulnerability Allowing Stored Cross-Site Scripting
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the WordPress Advanced Fancybox plugin, specifically in versions through 1.1.1. This vulnerability allows for Stored Cross-Site Scripting (XSS) attacks. The issue arises because the plugin does not properly validate requests, enabling attackers to trick users with higher privileges into performing actions that could inject malicious scripts into the site.
WP Engine Advanced Custom Fields PRO Cross-Site Request Forgery Vulnerability
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WP Engine Advanced Custom Fields PRO plugin, affecting versions prior to 6.3.2. This vulnerability allows attackers to trick users with higher privileges into performing actions they did not intend to.
Perfect Font Awesome Integration Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Perfect Font Awesome Integration plugin for WordPress, affecting all versions through 2.3. The issue arises from inadequate input sanitization and output escaping of user-supplied attributes in the plugin's 'pfai' shortcode. This vulnerability allows authenticated attackers with contributor-level access or higher to inject arbitrary web scripts into pages, which are executed when users access the affected pages.
Angular Expressions Remote Code Execution Vulnerability
A remote code execution vulnerability exists in Angular Expressions versions prior to 1.4.3. The issue arises because an attacker can craft a malicious expression that escapes the sandbox environment, allowing arbitrary code execution on the system. This vulnerability can be exploited by using a complex, undisclosed payload. The vulnerability has been patched in version 1.4.3.
Webflow Webflow Pages Plugin Broken Access Control Vulnerability
A broken access control vulnerability has been identified in the Webflow Pages WordPress plugin, affecting versions through 1.0.8. This vulnerability arises from missing authorization checks, which could allow an unprivileged user to perform actions reserved for higher privileges.
Zendesk Support for WordPress Missing Authorization Vulnerability Allowing Broken Access Control
A missing authorization vulnerability has been identified in the Zendesk Support for WordPress plugin, affecting versions through 1.8.4. This vulnerability allows unprivileged users to exploit incorrectly configured access control security levels, potentially leading to unauthorized actions that require higher privileges.
WordPress Stored Cross-Site Scripting Vulnerability in Multiple Plugins
A stored cross-site scripting vulnerability has been identified in several WordPress plugins, including Envira Gallery Lite and Getwid, all utilizing a vulnerable version of the FancyBox JavaScript library. The issue arises from inadequate input sanitization and output escaping of user-supplied attributes, allowing authenticated attackers with contributor-level access or higher to inject arbitrary scripts. These scripts are executed when a user accesses the affected page.
PHP Buffer Overread Vulnerability in Convert.quoted-printable-decode Filter
A buffer overread vulnerability has been identified in PHP versions 8.1.* prior to 8.1.31, 8.2.* prior to 8.2.26, and 8.3.* prior to 8.3.14. The issue arises in the convert.quoted-printable-decode filter, where certain data can cause a buffer overread by one byte. This vulnerability can lead to crashes or the unintentional disclosure of memory content from other areas.
PHP Integer Overflow Vulnerability in ldap_escape() Function on 32-bit Systems Allowing Out-of-Bounds Write
In PHP versions 8.1 prior to 8.1.31, 8.2 prior to 8.2.26, and 8.3 prior to 8.3.14, an integer overflow vulnerability has been identified in the ldap_escape() function. This issue arises on 32-bit systems, where uncontrolled long string inputs can lead to an overflow, causing an out-of-bounds write. The vulnerability is particularly exploitable in PHP's Firebird and DBLIB drivers, where similar integer overflow issues have been introduced by unquoted string handling, allowing for out-of-bounds writes as well.
PHP HTTP Request Smuggling Vulnerability via CRLF Injection in Stream Proxies
A vulnerability in PHP streams when using a proxy and the 'request_fulluri' option can lead to HTTP request smuggling. This issue is present in PHP versions 8.1.* prior to 8.1.31, 8.2.* prior to 8.2.26, and 8.3.* prior to 8.3.14. The vulnerability arises because the URI is not properly sanitized, allowing an attacker to inject CRLF characters. This injection can be exploited to perform arbitrary HTTP requests through the proxy, potentially accessing resources not normally available to the user.
PHP MySQLnd Heap Buffer Over-Read Vulnerability Allowing Information Disclosure
A vulnerability exists in PHP versions 8.1.* prior to 8.1.31, 8.2.* prior to 8.2.26, and 8.3.* prior to 8.3.14. When a PHP client connects to a malicious MySQL server, it can be tricked into leaking heap memory contents. This memory may contain sensitive data from previous SQL queries or information belonging to other users on the same server. The issue arises in the MySQLnd extension while processing field packets, where improper handling can lead to over-reading of the heap buffer.
PHP Integer Overflow Vulnerability in ldap_escape Function on 32-Bit Systems
An integer overflow vulnerability has been identified in PHP versions 8.1.* prior to 8.1.31, 8.2.* prior to 8.2.26, and 8.3.* prior to 8.3.14. This vulnerability arises from uncontrolled long string inputs to the ldap_escape() function on 32-bit systems, leading to an out-of-bounds write.
Slick Sitemap WordPress Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Slick Sitemap plugin for WordPress, affecting all versions up to and including 2.0.0. The issue arises from inadequate input sanitization and output escaping of user-supplied attributes in the plugin's 'slick-sitemap' shortcode. This vulnerability allows authenticated attackers with contributor-level access and above to inject arbitrary web scripts into pages, which are executed when users access the affected pages.
