CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-46839
5.3 MEDIUM

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions …

Mar 20, 2024
CVE-2024-2702
8.2 HIGH

Missing Authorization vulnerability in Olive Themes Olive One Click Demo Import allows importing settings and data, ultimately leading to XSS.This issue affects Olive One Click …

Mar 20, 2024
CVE-2024-2690
6.3 MEDIUM

A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been classified as critical. Affected is an unknown function of the file …

Mar 20, 2024
CVE-2024-2687
6.3 MEDIUM

A vulnerability was found in Campcodes Online Job Finder System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/applicants/index.php. …

Mar 20, 2024
CVE-2024-2686
3.5 LOW

A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/applicants/controller.php. …

Mar 20, 2024
CVE-2024-2685
3.5 LOW

A vulnerability, which was classified as problematic, was found in Campcodes Online Job Finder System 1.0. This affects an unknown part of the file /admin/applicants/index.php. …

Mar 20, 2024
CVE-2024-2684
3.5 LOW

A vulnerability, which was classified as problematic, has been found in Campcodes Online Job Finder System 1.0. Affected by this issue is some unknown functionality …

Mar 20, 2024
CVE-2024-2683
3.5 LOW

A vulnerability classified as problematic was found in Campcodes Online Job Finder System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Mar 20, 2024
CVE-2024-2682
3.5 LOW

A vulnerability classified as problematic has been found in Campcodes Online Job Finder System 1.0. Affected is an unknown function of the file /admin/employee/controller.php. The …

Mar 20, 2024
CVE-2024-2681
3.5 LOW

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been rated as problematic. This issue affects some unknown processing of the …

Mar 20, 2024
CVE-2024-2680
3.5 LOW

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file …

Mar 20, 2024
CVE-2024-2679
3.5 LOW

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as problematic. This affects an unknown part of the file …

Mar 20, 2024
CVE-2024-2678
6.3 MEDIUM

A vulnerability was found in Campcodes Online Job Finder System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the …

Mar 20, 2024
CVE-2024-2677
6.3 MEDIUM

A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of …

Mar 20, 2024
CVE-2024-2459
7.4 HIGH

The UX Flat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'button' shortcode in all versions up to, and including, 4.4 …

Mar 20, 2024
CVE-2024-2304
6.4 MEDIUM

The Animated Headline plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'animated-headline' shortcode in all versions up to, and including, 4.0 …

Mar 20, 2024
CVE-2024-2129
6.4 MEDIUM

The WPBITS Addons For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's heading widget in all versions up …

Mar 20, 2024
CVE-2024-1844
4.3 MEDIUM

The RevivePress – Keep your Old Content Evergreen plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability …

Mar 20, 2024
CVE-2024-1711
9.8 CRITICAL

The Create by Mediavine plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 1.9.4 due …

Mar 20, 2024
CVE-2024-1477
5.3 MEDIUM

The Easy Maintenance Mode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.2 via the REST API. …

Mar 20, 2024
CVE-2024-1473
5.3 MEDIUM

The Coming Soon & Maintenance Mode by Colorlib plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.99 via …

Mar 20, 2024
CVE-2024-1379
6.1 MEDIUM

The Website Article Monetization By MageNet plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'abp_auth_key' parameter in all versions up to, and …

Mar 20, 2024
CVE-2024-1325
4.3 MEDIUM

The Live Sales Notification for Woocommerce – Woomotiv plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.4.3. …

Mar 20, 2024
CVE-2024-1205
8.8 HIGH

The Management App for WooCommerce – Order notifications, Order management, Lead management, Uptime Monitoring plugin for WordPress is vulnerable to arbitrary file uploads due to …

Mar 20, 2024
CVE-2024-1181
5.3 MEDIUM

The Coming Soon, Under Construction & Maintenance Mode By Dazzler plugin for WordPress is vulnerable to maintenance mode bypass in all versions up to, and …

Mar 20, 2024
CVE-2024-1119
5.3 MEDIUM

The Order Tip for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_tips_to_csv() function …

Mar 20, 2024
CVE-2024-2676
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in Campcodes Online Job Finder System 1.0. Affected is an unknown function of the file /admin/company/controller.php. …

Mar 20, 2024
CVE-2024-2675
6.3 MEDIUM

A vulnerability, which was classified as critical, has been found in Campcodes Online Job Finder System 1.0. This issue affects some unknown processing of the …

Mar 20, 2024
CVE-2024-2674
6.3 MEDIUM

A vulnerability classified as critical was found in Campcodes Online Job Finder System 1.0. This vulnerability affects unknown code of the file /admin/employee/index.php. The manipulation …

Mar 20, 2024
CVE-2024-2538
5.4 MEDIUM

The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ajax_save_permalink' function in …

Mar 20, 2024
CVE-2024-28584
3.3 LOW

Null Pointer Dereference vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the J2KImageToFIBITMAP() function …

Mar 20, 2024
CVE-2024-28583
7.8 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the readLine() function when reading images in …

Mar 20, 2024
CVE-2024-28582
8.4 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the rgbe_RGBEToFloat() function when reading images in …

Mar 20, 2024
CVE-2024-28581
8.4 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the _assignPixel<>() function when reading images in …

Mar 20, 2024
CVE-2024-28580
8.4 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the ReadData() function when reading images in …

Mar 20, 2024
CVE-2024-28579
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FreeImage_Unload() function when …

Mar 20, 2024
CVE-2024-28578
8.4 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Load() function when reading images in …

Mar 20, 2024
CVE-2024-28577
5.5 MEDIUM

Null Pointer Dereference vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the jpeg_read_exif_profile_raw() function …

Mar 20, 2024
CVE-2024-28576
5.5 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the opj_j2k_tcp_destroy() function when …

Mar 20, 2024
CVE-2024-28575
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the opj_j2k_read_mct() function when …

Mar 20, 2024
CVE-2024-28574
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the opj_j2k_copy_default_tcp_and_create_tcd() function when …

Mar 20, 2024
CVE-2024-28573
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the jpeg_read_exif_profile() function when …

Mar 20, 2024
CVE-2024-28572
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FreeImage_SetTagValue() function when …

Mar 20, 2024
CVE-2024-28571
5.5 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the fill_input_buffer() function when …

Mar 20, 2024
CVE-2024-28570
5.5 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the processMakerNote() function when …

Mar 20, 2024
CVE-2024-28569
7.8 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::Xdr::read() function when reading images in …

Mar 20, 2024
CVE-2024-28568
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the read_iptc_profile() function when …

Mar 20, 2024
CVE-2024-28567
6.2 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the FreeImage_CreateICCProfile() function when …

Mar 20, 2024
CVE-2024-28566
8.4 HIGH

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the AssignPixel() function when reading images in …

Mar 20, 2024
CVE-2024-28565
5.5 MEDIUM

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the psdParser::ReadImageData() function when …

Mar 20, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.