| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-5142 | XSS in Hubshare's social module | M-Files Corporation | Hubshare | 中危 | - | 2024-05-24 05:58:41 | Deep Dive |
| CVE-2024-2324 | FileOrganizer and FileOrganizer Pro <= 1.0.6 - Authenticated Stored Cross-Site Scripting | softaculous | FileOrganizer – WordPress File Manager | Medium | 4.4 | 2024-05-02 16:52:55 | Deep Dive |
| CVE-2024-4056 | Denial of service condition in M-Files Server | M-Files Corporation | M-Files Server | High | 7.5 | 2024-04-26 06:02:22 | Deep Dive |
| CVE-2024-32679 | WordPress Shared Files plugin <= 1.7.16 - Broken Access Control vulnerability | Anssi Laitila | Shared Files | Medium | 5.3 | 2024-04-23 14:12:13 | Deep Dive |
| CVE-2024-32096 | WordPress WP Synchro plugin <= 1.11.2 - Cross Site Request Forgery (CSRF) vulnerability | DAEV.tech | WP Migration Plugin DB & Files – WP Synchro | Medium | 5.4 | 2024-04-15 08:55:59 | Deep Dive |
| CVE-2024-2302 | Easy Digital Downloads – Sell Digital Files & Subscriptions (eCommerce Store + Payments Made Easy) <= 3.2.9 - Sensitive Information Exposure | smub | Easy Digital Downloads – eCommerce Payments and Subscriptions made easy | Medium | 5.3 | 2024-04-09 18:58:30 | Deep Dive |
| CVE-2024-2086 | Integrate Google Drive <= 1.3.8 - Missing Authorization to Unauthenticated Settings Modification and Export | princeahmed | File Manager for Google Drive – Integrate Google Drive | Critical | 10.0 | 2024-03-30 04:31:09 | Deep Dive |
| CVE-2024-1487 | Photos and Files Contest Gallery < 21.3.1 - Author+ Stored Cross Site Scripting | Unknown | Photos and Files Contest Gallery | - | - | 2024-03-11 17:56:07 | Deep Dive |
| CVE-2023-4479 | Stored XSS Vulnerability in M-Files Web | M-Files Corporation | M-Files Web | High | 7.3 | 2024-03-04 07:17:20 | Deep Dive |
| CVE-2024-0563 | Denial of service condition in M-Files Server | M-Files Corporation | M-Files Server | Medium | 4.3 | 2024-02-23 08:52:38 | Deep Dive |
| CVE-2024-24887 | WordPress Contest Gallery Plugin <= 21.2.8.4 is vulnerable to Cross Site Request Forgery (CSRF) | Contest Gallery | Photos and Files Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress | Medium | 5.4 | 2024-02-12 08:43:27 | Deep Dive |
| CVE-2024-0659 | Easy Digital Downloads <= 3.2.6 - Authenticated(Shop Manager+) Stored Cross-Site Scripting via variable pricing options | smub | Easy Digital Downloads – eCommerce Payments and Subscriptions made easy | Medium | 5.5 | 2024-02-05 21:21:36 | Deep Dive |
| CVE-2023-51684 | WordPress Easy Digital Downloads Plugin <= 3.2.5 is vulnerable to Cross Site Scripting (XSS) | Easy Digital Downloads | Easy Digital Downloads – Sell Digital Files (eCommerce Store & Payments Made Easy) | Medium | 6.5 | 2024-02-01 10:34:37 | Deep Dive |
| CVE-2023-52137 | GitHub Action tj-actions/verify-changed-files is vulnerable to command injection in output filenames | tj-actions | verify-changed-files | High | 7.7 | 2023-12-29 17:08:49 | Deep Dive |
| CVE-2023-32095 | WordPress Rename Media Files Plugin <= 1.0.1 is vulnerable to Remote Code Execution (RCE) | Milan Dinić | Rename Media Files | Critical | 9.9 | 2023-12-29 08:56:43 | Deep Dive |
| CVE-2023-51664 | tj-actions/changed-files command injection in output filenames | tj-actions | changed-files | High | 7.3 | 2023-12-27 16:58:32 | Deep Dive |
| CVE-2023-6910 | Uncontrolled Resource Consumption in M-Files Server | M-Files Corporation | M-Files Server | Medium | 6.5 | 2023-12-20 09:36:39 | Deep Dive |
| CVE-2023-6912 | Brute force vulnerability in M-Files user authentication | M-Files Corporation | M-Files Server | High | 7.5 | 2023-12-20 09:35:46 | Deep Dive |
| CVE-2023-44991 | WordPress Media File Renamer Plugin <= 5.6.9 is vulnerable to Sensitive Data Exposure | Jordy Meow | Media File Renamer: Rename Files (Manual, Auto & AI) | Medium | 6.5 | 2023-12-19 15:34:20 | Deep Dive |
| CVE-2023-47548 | WordPress Integrate Google Drive Plugin <= 1.3.2 is vulnerable to Open Redirection | SoftLab | Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files Into Your WordPress Site | Medium | 4.7 | 2023-12-07 12:15:07 | Deep Dive |