Show filters
917 Total Results
Displaying 111-120 of 917
Sort by:
Attacker Value
Unknown
CVE-2024-5142
Disclosure Date: May 24, 2024 (last updated August 27, 2024)
Stored Cross-Site Scripting vulnerability in Social Module in M-Files Hubshare before version 5.0.6.0 allows authenticated attacker to run scripts in other users browser
0
Attacker Value
Unknown
CVE-2024-3648
Disclosure Date: May 23, 2024 (last updated January 05, 2025)
The ShareThis Share Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sharethis-inline-button' shortcode in all versions up to, and including, 2.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown
CVE-2024-3198
Disclosure Date: May 22, 2024 (last updated January 05, 2025)
The WP Font Awesome Share Icons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's
'wpfai_social' shortcode in all versions up to, and including, 1.1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown
CVE-2024-34807
Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in CodeBard Fast Custom Social Share by CodeBard.This issue affects Fast Custom Social Share by CodeBard: from n/a through 1.1.2.
0
Attacker Value
Unknown
CVE-2024-31300
Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in appscreo Easy Social Share Buttons allows PHP Local File Inclusion.This issue affects Easy Social Share Buttons: from n/a through 9.4.
0
Attacker Value
Unknown
CVE-2024-30043
Disclosure Date: May 14, 2024 (last updated January 12, 2025)
Microsoft SharePoint Server Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2024-33930
Disclosure Date: May 02, 2024 (last updated May 02, 2024)
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in ILLID Share This Image.This issue affects Share This Image: from n/a through 1.97.
0
Attacker Value
Unknown
CVE-2024-32679
Disclosure Date: April 23, 2024 (last updated April 24, 2024)
Missing Authorization vulnerability in Shared Files PRO Shared Files.This issue affects Shared Files: from n/a through 1.7.16.
0
Attacker Value
Unknown
CVE-2024-3817
Disclosure Date: April 17, 2024 (last updated April 18, 2024)
HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches.
This vulnerability does not affect the go-getter/v2 branch and package.
0
Attacker Value
Unknown
CVE-2024-2118
Disclosure Date: April 17, 2024 (last updated April 17, 2024)
The Social Media Share Buttons & Social Sharing Icons WordPress plugin before 2.8.9 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
0