| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-10016 | File Upload Types by WPForms <= 1.4.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | jaredatch | File Upload Types by WPForms | Medium | 6.4 | 2024-10-25 08:34:40 | Deep Dive |
| CVE-2016-15042 | Frontend File Manager < 4.0 & N-Media Post Front-end Form < 1.1 & - Arbitrary File Upload | nmedia | N-Media Post Front-end Form | Critical | 9.8 | 2024-10-16 07:31:50 | Deep Dive |
| CVE-2024-8507 | File Manager Pro <= 8.3.9 - Cross-Site Request Forgery to Arbitrary File Upload | File Manager | File Manager Pro | High | 8.8 | 2024-10-16 06:43:45 | Deep Dive |
| CVE-2018-25105 | File Manager <= 3.0 - Unauthenticated Arbitrary File Upload/Download | mndpsingh287 | File Manager | Critical | 9.8 | 2024-10-16 06:43:39 | Deep Dive |
| CVE-2024-8746 | File Manager Pro <= 8.3.9 - Unauthenticated Backup File Download and Upload | File Manager | File Manager Pro | High | 7.5 | 2024-10-16 06:43:35 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-8918 | File Manager Pro <= 8.3.9 - Unauthenticated Limited JavaScript File Upload | File Manager | File Manager Pro | High | 7.4 | 2024-10-16 06:43:23 | Deep Dive |
| CVE-2024-9546 | WPIDE <= 3.4.9 - Unauthenticated Full Path Dislcosure | xplodedthemes | WPIDE – File Manager & Code Editor | Medium | 5.3 | 2024-10-14 23:29:56 | Deep Dive |
| CVE-2024-9047 | WordPress File Upload <= 4.24.11 - Unauthenticated Path Traversal to Arbitrary File Read and Deletion in wfu_file_downloader.php | nickboss | Iptanus File Upload | Critical | 9.8 | 2024-10-12 06:51:12 | Deep Dive |
| CVE-2024-9611 | Increase upload file size & Maximum Execution Time limit <= 2.0 - Reflected Cross-Site Scripting | ttodua | Increase upload file size & Maximum Execution Time limit | Medium | 6.1 | 2024-10-11 06:50:15 | Deep Dive |
| CVE-2024-8743 | Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress <= 6.5.7 - Authenticated (Subscriber+) Limited JavaScript File Upload | bitpressadmin | File Manager | Medium | 6.8 | 2024-10-05 06:44:11 | Deep Dive |
| CVE-2024-42415 | GNOME Project G Structured File Library 输入验证错误漏洞 | GNOME Project | G Structured File Library (libgsf) | High | 8.4 | 2024-10-03 15:24:58 | Deep Dive |
| CVE-2024-36474 | GNOME Project G Structured File Library 安全漏洞 | GNOME Project | G Structured File Library (libgsf) | High | 8.4 | 2024-10-03 15:24:46 | Deep Dive |
| CVE-2024-9220 | LH Copy Media File <= 1.08 - Reflected Cross-Site Scripting | shawfactor | LH Copy Media File | Medium | 6.1 | 2024-10-01 08:30:16 | Deep Dive |
| CVE-2024-7400 | Local privilege escalation in ESET products for Windows | ESET, spol. s r.o. | ESET NOD32 Antivirus | - | - | 2024-09-27 07:02:29 | Deep Dive |
| CVE-2024-8126 | Advanced File Manager <= 5.2.8 - Authenticated (Subscriber+) Arbitrary File Upload | saadiqbal | Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution | High | 7.5 | 2024-09-26 10:59:34 | Deep Dive |
| CVE-2024-8725 | Advanced File Manager <= 5.2.8 - Authenticated (Subscriber+) Limited File Upload | saadiqbal | Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution | Medium | 6.8 | 2024-09-26 10:59:34 | Deep Dive |
| CVE-2024-8704 | Advanced File Manager <= 5.2.8 - Authenticated (Administrator+) Local JavaScript File Inclusion via fma_locale | saadiqbal | Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution | High | 7.2 | 2024-09-26 10:59:33 | Deep Dive |
| CVE-2024-7770 | Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress <= 6.5.5 - Authenticated (Subscriber+) Arbitrary File Upload | bitpressadmin | File Manager | High | 8.8 | 2024-09-10 10:59:05 | Deep Dive |
| CVE-2024-1596 | Ninja Forms File Uploads <= 3.3.16 - Unauthenticated Stored Cross-Site Scripting via File Upload | SaturdayDrive | Ninja Forms - File Uploads | High | 7.2 | 2024-09-07 11:17:03 | Deep Dive |