| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-27989 | WordPress WP Responsive Tabs horizontal vertical and accordion Tabs plugin <= 1.1.17 - Cross Site Scripting (XSS) vulnerability | I Thirteen Web Solution | WP Responsive Tabs horizontal vertical and accordion Tabs | Medium | 6.5 | 2024-03-21 15:14:51 | Deep Dive |
| CVE-2024-29732 | SQL Injection vulnerability on SCAN_VISIO eDocument Suite Web Viewer from Abast | Abast | SCAN_VISIO eDocument Suite Web Viewer | Critical | 9.8 | 2024-03-21 10:37:08 | Deep Dive |
| CVE-2024-29122 | WordPress FV Player plugin <= 7.5.41.7212 - Cross Site Scripting (XSS) vulnerability | Foliovision: Making the web work for you | FV Flowplayer Video Player | Medium | 6.5 | 2024-03-19 14:46:36 | Deep Dive |
| CVE-2024-27960 | WordPress Email Subscription Popup plugin <= 1.2.20 - Cross Site Scripting (XSS) vulnerability | I Thirteen Web Solution | Email Subscription Popup | High | 7.1 | 2024-03-17 16:30:31 | Deep Dive |
| CVE-2024-25597 | WordPress Ultimate Reviews plugin <= 3.2.8 - Unauthenticated Cross Site Scripting (XSS) vulnerability | Etoile Web Design | Ultimate Reviews | High | 7.1 | 2024-03-15 14:01:45 | Deep Dive |
| CVE-2024-2172 | Malware Scanner <= 4.7.2 and Web Application Firewall <= 2.1.1 - Unauthenticated Privilege Escalation | cyberlord92 | Web Application Firewall – website security | Critical | 9.8 | 2024-03-13 15:26:53 | Deep Dive |
| CVE-2024-28163 | Information Disclosure vulnerability in SAP NetWeaver Process Integration (Support Web Pages) | SAP_SE | SAP NetWeaver Process Integration (Support Web Pages) | Medium | 5.3 | 2024-03-12 00:45:42 | Deep Dive |
| CVE-2023-4479 | Stored XSS Vulnerability in M-Files Web | M-Files Corporation | M-Files Web | High | 7.3 | 2024-03-04 07:17:20 | Deep Dive |
| CVE-2024-1928 | SourceCodester Web-Based Student Clearance System Edit User Profile Page edit-admin.php sql injection | SourceCodester | Web-Based Student Clearance System | Medium | 4.7 | 2024-02-27 17:31:06 | Deep Dive |
| CVE-2024-1927 | SourceCodester Web-Based Student Clearance System login.php sql injection | SourceCodester | Web-Based Student Clearance System | Medium | 6.3 | 2024-02-27 17:31:05 | Deep Dive |
| CVE-2024-25640 | Improper Neutralization of Alternate XSS Syntax in iris-web | dfir-iris | iris-web | Medium | 4.6 | 2024-02-19 19:56:33 | Deep Dive |
| CVE-2024-20907 | Oracle E-Business Suite 安全漏洞 | Oracle Corporation | Web Applications Desktop Integrator | Medium | 6.1 | 2024-02-17 01:50:08 | Deep Dive |
| CVE-2024-1523 | EC-WEB FS-EZViewer(Web) - SQL Injection | EC-WEB | FS-EZViewer(Web) | High | 8.8 | 2024-02-15 01:57:09 | Deep Dive |
| CVE-2024-1040 | Use of a Broken or Risky Cryptographic Algorithm in Gessler GmbH WEB-MASTER | Gessler GmbH | WEB-MASTER | Medium | 4.4 | 2024-02-01 21:41:09 | Deep Dive |
| CVE-2024-1039 | Use of Hard-coded Credentials in Gessler GmbH WEB-MASTER | Gessler GmbH | WEB-MASTER | Critical | 9.8 | 2024-02-01 21:38:48 | Deep Dive |
| CVE-2023-7238 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Orthanc Osimis DICOM Web Viewer | Orthanc | Osimis DICOM Web Viewer | High | 7.1 | 2024-01-23 19:20:02 | Deep Dive |
| CVE-2022-4960 | cloudfavorites favorites-web Nickname cross site scripting | cloudfavorites | favorites-web | Low | 3.5 | 2024-01-12 02:31:04 | Deep Dive |
| CVE-2024-0310 | Trellix Endpoint Security 跨站脚本漏洞 | Trellix | Trellix Endpoint Security (ENS) Web Control | Medium | 6.1 | 2024-01-10 10:43:46 | Deep Dive |
| CVE-2023-6149 | Possible XXE vulnerability in Jenkins Plugin for Qualys Web Application Security | Qualys,Inc. | Web App Scanning Connector Jenkins Plugin | Medium | 5.7 | 2024-01-09 08:21:13 | Deep Dive |
| CVE-2022-34344 | WordPress Wholesale Suite Plugin <= 2.1.5 is vulnerable to Broken Access Control | Rymera Web Co | Wholesale Suite – WooCommerce Wholesale Prices, B2B, Catalog Mode, Order Form, Wholesale User Roles, Dynamic Pricing & More | Medium | 5.4 | 2024-01-08 21:13:45 | Deep Dive |