Lista CVE - 2024 / Novembre
Visualizzazione 1001 - 1100 di 4054 CVE per Novembre 2024 (Pagina 11 di 41)
ID CVE | Data | Titolo |
---|---|---|
CVE-2024-51601 | 2024-11-09 | WordPress Website price calculator plugin <= 4.1 - SQL Injection vulnerability |
CVE-2024-51579 | 2024-11-09 | WordPress 5 Stars Rating Funnel plugin <= 1.4.01 - SQL Injection vulnerability |
CVE-2024-51570 | 2024-11-09 | WordPress Easy Gallery plugin <= 1.4 - SQL Injection vulnerability |
CVE-2024-50544 | 2024-11-09 | WordPress RSVP ME plugin <= 1.9.9 - SQL Injection vulnerability |
CVE-2024-50539 | 2024-11-09 | WordPress Lodgix.com Vacation Rental Website Builder plugin <= 3.9.73 - SQL Injection vulnerability |
CVE-2024-50524 | 2024-11-09 | WordPress Administrator Z plugin <= 2024.11.04 - SQL Injection vulnerability |
CVE-2024-51781 | 2024-11-09 | WordPress Firework Shoppable Live Video plugin <= 6.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51780 | 2024-11-09 | WordPress eewee admin custom plugin <= 1.8.2.4 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51779 | 2024-11-09 | WordPress Don't Break The Code plugin <= .3.1 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51778 | 2024-11-09 | WordPress Satisfaction Reports from Help Scout plugin <= 2.0.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51776 | 2024-11-09 | WordPress Daily Image plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-10676 | 2024-11-09 | WordPress Conversion Helper plugin <= 1.12 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51763 | 2024-11-09 | WordPress Team Showcase and Slider plugin <= 1.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51762 | 2024-11-09 | WordPress PropertyShift plugin <= 1.0.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-50212 | 2024-11-09 | lib: alloc_tag_module_unload must wait for pending kfree_rcu calls |
CVE-2024-50213 | 2024-11-09 | drm/tests: hdmi: Fix memory leaks in drm_display_mode_from_cea_vic() |
CVE-2024-50214 | 2024-11-09 | drm/connector: hdmi: Fix memory leak in drm_display_mode_from_cea_vic() |
CVE-2024-50215 | 2024-11-09 | nvmet-auth: assign dh_key to NULL after kfree_sensitive |
CVE-2024-50216 | 2024-11-09 | xfs: fix finding a last resort AG in xfs_filestream_pick_ag |
CVE-2024-50217 | 2024-11-09 | btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() |
CVE-2024-50218 | 2024-11-09 | ocfs2: pass u64 to ocfs2_truncate_inline maybe overflow |
CVE-2024-50220 | 2024-11-09 | fork: do not invoke uffd on fork if error occurs |
CVE-2024-50221 | 2024-11-09 | drm/amd/pm: Vangogh: Fix kernel memory out of bounds write |
CVE-2024-50222 | 2024-11-09 | iov_iter: fix copy_page_from_iter_atomic() if KMAP_LOCAL_FORCE_MAP |
CVE-2024-50223 | 2024-11-09 | sched/numa: Fix the potential null pointer dereference in task_numa_work() |
CVE-2024-50224 | 2024-11-09 | spi: spi-fsl-dspi: Fix crash when not using GPIO chip select |
CVE-2024-50225 | 2024-11-09 | btrfs: fix error propagation of split bios |
CVE-2024-50226 | 2024-11-09 | cxl/port: Fix use-after-free, permit out-of-order decoder shutdown |
CVE-2024-50227 | 2024-11-09 | thunderbolt: Fix KASAN reported stack out-of-bounds read in tb_retimer_scan() |
CVE-2024-50229 | 2024-11-09 | nilfs2: fix potential deadlock with newly created symlinks |
CVE-2024-50230 | 2024-11-09 | nilfs2: fix kernel bug due to missing clearing of checked flag |
CVE-2024-50231 | 2024-11-09 | iio: gts-helper: Fix memory leaks in iio_gts_build_avail_scale_table() |
CVE-2024-50232 | 2024-11-09 | iio: adc: ad7124: fix division by zero in ad7124_set_channel_odr() |
CVE-2024-50233 | 2024-11-09 | staging: iio: frequency: ad9832: fix division by zero in ad9832_calc_freqreg() |
CVE-2024-50234 | 2024-11-09 | wifi: iwlegacy: Clear stale interrupts before resuming device |
CVE-2024-50235 | 2024-11-09 | wifi: cfg80211: clear wdev->cqm_config pointer on free |
CVE-2024-50236 | 2024-11-09 | wifi: ath10k: Fix memory leak in management tx |
CVE-2024-50237 | 2024-11-09 | wifi: mac80211: do not pass a stopped vif to the driver in .get_txpower |
CVE-2024-50238 | 2024-11-09 | phy: qcom: qmp-usbc: fix NULL-deref on runtime suspend |
CVE-2024-50239 | 2024-11-09 | phy: qcom: qmp-usb-legacy: fix NULL-deref on runtime suspend |
CVE-2024-50240 | 2024-11-09 | phy: qcom: qmp-usb: fix NULL-deref on runtime suspend |
CVE-2024-50241 | 2024-11-09 | NFSD: Initialize struct nfsd4_copy earlier |
CVE-2024-50242 | 2024-11-09 | fs/ntfs3: Additional check in ntfs_file_release |
CVE-2024-50243 | 2024-11-09 | fs/ntfs3: Fix general protection fault in run_is_mapped_full |
CVE-2024-50244 | 2024-11-09 | fs/ntfs3: Additional check in ni_clear() |
CVE-2024-50245 | 2024-11-09 | fs/ntfs3: Fix possible deadlock in mi_read |
CVE-2024-50246 | 2024-11-09 | fs/ntfs3: Add rough attr alloc_size check |
CVE-2024-50247 | 2024-11-09 | fs/ntfs3: Check if more than chunk-size bytes are written |
CVE-2024-50248 | 2024-11-09 | ntfs3: Add bounds checking to mi_enum_attr() |
CVE-2024-50249 | 2024-11-09 | ACPI: CPPC: Make rmw_lock a raw_spin_lock |
CVE-2024-50250 | 2024-11-09 | fsdax: dax_unshare_iter needs to copy entire blocks |
CVE-2024-50251 | 2024-11-09 | netfilter: nft_payload: sanitize offset and length before calling skb_checksum() |
CVE-2024-50252 | 2024-11-09 | mlxsw: spectrum_ipip: Fix memory leak when changing remote IPv6 address |
CVE-2024-50253 | 2024-11-09 | bpf: Check the validity of nr_words in bpf_iter_bits_new() |
CVE-2024-50254 | 2024-11-09 | bpf: Free dynamically allocated bits in bpf_iter_bits_destroy() |
CVE-2024-50255 | 2024-11-09 | Bluetooth: hci: fix null-ptr-deref in hci_read_supported_codecs |
CVE-2024-50256 | 2024-11-09 | netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6() |
CVE-2024-50257 | 2024-11-09 | netfilter: Fix use-after-free in get_info() |
CVE-2024-50258 | 2024-11-09 | net: fix crash when config small gso_max_size/gso_ipv4_max_size |
CVE-2024-50259 | 2024-11-09 | netdevsim: Add trailing zero to terminate the string in nsim_nexthop_bucket_activity_write() |
CVE-2024-50260 | 2024-11-09 | sock_map: fix a NULL pointer dereference in sock_map_link_update_prog() |
CVE-2024-50261 | 2024-11-09 | macsec: Fix use-after-free while sending the offloading packet |
CVE-2024-50262 | 2024-11-09 | bpf: Fix out-of-bounds write in trie_get_next_key() |
CVE-2024-10640 | 2024-11-09 | The FOX – Currency Switcher Professional for WooCommerce <= 1.4.2.2 - Unauthenticated Arbitrary Shortcode Execution |
CVE-2024-10261 | 2024-11-09 | Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction <= 2.13.0 - Unauthenticated Arbitrary Shortcode Execution |
CVE-2024-10352 | 2024-11-09 | Magical Addons For Elementor <= 1.2.4 - Authenticated (Contributor+) Sensitive Information Exposure via Elementor Template |
CVE-2024-51761 | 2024-11-09 | WordPress WPHelpful plugin <= 1.2.4 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51760 | 2024-11-09 | WordPress Dashing Memberships plugin <= 1.1 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51759 | 2024-11-09 | WordPress SVT Simple plugin <= 1.0.1 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51719 | 2024-11-09 | WordPress Simplistic SEO plugin <= 2.3.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51718 | 2024-11-09 | WordPress Simple Modal plugin <= 0.3.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51717 | 2024-11-09 | WordPress Ajax Content Filter plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51716 | 2024-11-09 | WordPress Twitter real time search scrolling plugin <= 7.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51714 | 2024-11-09 | WordPress User Password Reset plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51713 | 2024-11-09 | WordPress HQ60 Fidelity Card plugin <= 1.8 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51712 | 2024-11-09 | WordPress Jigoshop plugin <= 1.4.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51711 | 2024-11-09 | WordPress Saragna plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51710 | 2024-11-09 | WordPress Responsive Data Table plugin <= 1.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51709 | 2024-11-09 | WordPress TeleAdmin plugin <= 1.0.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51708 | 2024-11-09 | WordPress Narnoo Commerce Manager plugin <= 1.6.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51707 | 2024-11-09 | WordPress WP Visual Adverts plugin <= 2.3.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51706 | 2024-11-09 | WordPress UW Freelancer plugin <= 0.1 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51705 | 2024-11-09 | WordPress WP MMenu Lite plugin <= 1.0.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51704 | 2024-11-09 | WordPress imPress plugin <= 0.1.4 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51703 | 2024-11-09 | WordPress WP-Basics plugin <= 2.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-10837 | 2024-11-09 | SysBasics Customize My Account for WooCommerce <= 2.7.29 - Reflected Cross-Site Scripting via tab Parameter |
CVE-2024-51702 | 2024-11-09 | WordPress SrcSet Responsive Images for WordPress plugin <= 1.4 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51701 | 2024-11-09 | WordPress MG Post Contributors plugin <= 1.3. - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51699 | 2024-11-09 | WordPress Buooy Sticky Header plugin <= 0.5.2 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51698 | 2024-11-09 | WordPress Master Bar plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51697 | 2024-11-09 | WordPress Doofinder plugin <= 0.5.4 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51696 | 2024-11-09 | WordPress Content Syndication Toolkit Reader plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51695 | 2024-11-09 | WordPress Fabrica Synced Pattern Instances plugin <= 1.0.8 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51694 | 2024-11-09 | WordPress Geotagged Media plugin <= 0.3.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51693 | 2024-11-09 | WordPress Search order by product SKU for WooCommerce plugin <= 0.2 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51692 | 2024-11-09 | WordPress Bing Search API Integration plugin <= 0.3.3 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51691 | 2024-11-09 | WordPress Admin Amplify plugin <= 1.3.0 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51690 | 2024-11-09 | WordPress Wp Slide Categorywise plugin <= 1.1 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51689 | 2024-11-09 | WordPress CF7 WOW Styler plugin <= 1.6.8 - Reflected Cross Site Scripting (XSS) vulnerability |
CVE-2024-51676 | 2024-11-09 | WordPress Delisho plugin <= 1.0.6 - Cross Site Scripting (XSS) vulnerability |