Show filters
1,231 Total Results
Displaying 81-90 of 1,231
Sort by:
Attacker Value
Unknown

CVE-2024-1090

Disclosure Date: February 29, 2024 (last updated February 26, 2025)
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the stopOptimizeAll function in all versions up to, and including, 3.1.13. This makes it possible for authenticated attackers, with subscriber-level access and above, to modify image optimization settings.
Attacker Value
Unknown

CVE-2024-1089

Disclosure Date: February 29, 2024 (last updated February 26, 2025)
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the optimizeAllOn function in all versions up to, and including, 3.1.13. This makes it possible for authenticated attackers, with subscriber-level access and above, to modify image optimization settings.
Attacker Value
Unknown

CVE-2024-0984

Disclosure Date: February 29, 2024 (last updated February 26, 2025)
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the disableOptimization function in all versions up to, and including, 3.1.13. This makes it possible for authenticated attackers, with subscriber-level access and above, to disable the image optimization setting.
Attacker Value
Unknown

CVE-2024-0983

Disclosure Date: February 29, 2024 (last updated February 26, 2025)
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the enableOptimization function in all versions up to, and including, 3.1.13. This makes it possible for authenticated attackers, with subscriber-level access and above, to enable image optimization.
Attacker Value
Unknown

CVE-2024-24796

Disclosure Date: February 12, 2024 (last updated February 26, 2025)
Deserialization of Untrusted Data vulnerability in MagePeople Team Event Manager and Tickets Selling Plugin for WooCommerce – WpEvently – WordPress Plugin.This issue affects Event Manager and Tickets Selling Plugin for WooCommerce – WpEvently – WordPress Plugin: from n/a through 4.1.1.
Attacker Value
Unknown

CVE-2023-52187

Disclosure Date: January 27, 2024 (last updated February 26, 2025)
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Thomas Maier Image Source Control Lite – Show Image Credits and Captions.This issue affects Image Source Control Lite – Show Image Credits and Captions: from n/a through 2.17.0.
Attacker Value
Unknown

CVE-2023-47997

Disclosure Date: January 10, 2024 (last updated February 25, 2025)
An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an infinite loop and allows attackers to cause a denial of service.
Attacker Value
Unknown

CVE-2023-47996

Disclosure Date: January 09, 2024 (last updated February 25, 2025)
An integer overflow vulnerability in Exif.cpp::jpeg_read_exif_dir in FreeImage 3.18.0 allows attackers to obtain information and cause a denial of service.
Attacker Value
Unknown

CVE-2023-47995

Disclosure Date: January 09, 2024 (last updated February 25, 2025)
Memory Allocation with Excessive Size Value discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 allows attackers to cause a denial of service.
Attacker Value
Unknown

CVE-2023-47994

Disclosure Date: January 09, 2024 (last updated February 25, 2025)
An integer overflow vulnerability in LoadPixelDataRLE4 function in PluginBMP.cpp in Freeimage 3.18.0 allows attackers to obtain sensitive information, cause a denial of service and/or run arbitrary code.