CVE Database

54613+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-35253
4.4 MEDIUM

Microsoft Azure File Sync Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-34815
5.4 MEDIUM

Missing Authorization vulnerability in Javier Carazo Import and export users and customers import-users-from-csv-with-meta.This issue affects Import and export users and customers: from n/a through <= …

Jun 11, 2024
CVE-2024-34804
5.4 MEDIUM

Missing Authorization vulnerability in Tagembed.This issue affects Tagembed: from n/a through 5.8.

Jun 11, 2024
CVE-2024-34799
6.5 MEDIUM

Missing Authorization vulnerability in Repute Infosystems BookingPress.This issue affects BookingPress: from n/a through 1.0.82.

Jun 11, 2024
CVE-2024-34768
5.3 MEDIUM

Missing Authorization vulnerability in Fastly.This issue affects Fastly: from n/a through 1.2.25.

Jun 11, 2024
CVE-2024-34763
5.3 MEDIUM

Missing Authorization vulnerability in Saleswonder Team: Tobias Builder for WooCommerce reviews shortcodes – ReviewShort woo-product-reviews-shortcode.This issue affects Builder for WooCommerce reviews shortcodes – ReviewShort: from …

Jun 11, 2024
CVE-2024-34758
5.3 MEDIUM

Missing Authorization vulnerability in Wpmet WP Fundraising Donation and Crowdfunding Platform.This issue affects WP Fundraising Donation and Crowdfunding Platform: from n/a through 1.6.4.

Jun 11, 2024
CVE-2024-32146
4.3 MEDIUM

Missing Authorization vulnerability in Aspose.Cloud Marketplace Aspose.Words Exporter.This issue affects Aspose.Words Exporter: from n/a through 6.3.1.

Jun 11, 2024
CVE-2024-32143
4.3 MEDIUM

Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.1.0.

Jun 11, 2024
CVE-2024-30096
5.5 MEDIUM

Windows Cryptographic Services Information Disclosure Vulnerability

Jun 11, 2024
CVE-2024-30076
6.8 MEDIUM

Windows Container Manager Service Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30069
4.7 MEDIUM

Windows Remote Access Connection Manager Information Disclosure Vulnerability

Jun 11, 2024
CVE-2024-30067
5.5 MEDIUM

Winlogon Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30066
5.5 MEDIUM

Winlogon Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30065
5.5 MEDIUM

Windows Themes Denial of Service Vulnerability

Jun 11, 2024
CVE-2024-30063
6.7 MEDIUM

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30052
4.7 MEDIUM

Visual Studio Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-29060
6.7 MEDIUM

Visual Studio Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-26330
6.5 MEDIUM

An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, …

Jun 11, 2024
CVE-2024-23518
4.3 MEDIUM

Missing Authorization vulnerability in Navneil Naicker ACF Photo Gallery Field.This issue affects ACF Photo Gallery Field: from n/a through 2.6.

Jun 11, 2024
CVE-2023-52227
4.3 MEDIUM

Missing Authorization vulnerability in MailerLite MailerLite – WooCommerce integration.This issue affects MailerLite – WooCommerce integration: from n/a through 2.0.8.

Jun 11, 2024
CVE-2023-52224
4.3 MEDIUM

Missing Authorization vulnerability in Revolut Revolut Gateway for WooCommerce.This issue affects Revolut Gateway for WooCommerce: from n/a through 4.9.7.

Jun 11, 2024
CVE-2023-48273
5.3 MEDIUM

Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Preloader for Website.This issue affects Preloader for Website: from n/a through 1.2.2.

Jun 11, 2024
CVE-2024-5813
5.9 MEDIUM

A medium severity vulnerability in BIPS has been identified where an authenticated attacker with high privileges can access the SSH private keys via an information …

Jun 11, 2024
CVE-2024-34822
5.3 MEDIUM

Missing Authorization vulnerability in weDevs weMail.This issue affects weMail: from n/a through 1.14.2.

Jun 11, 2024
CVE-2024-34821
5.3 MEDIUM

Missing Authorization vulnerability in Anssi Laitila Contact List contact-list.This issue affects Contact List: from n/a through <= 2.9.87.

Jun 11, 2024
CVE-2024-34819
5.3 MEDIUM

Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This issue affects MC Woocommerce Wishlist: from n/a through <= 1.7.2.

Jun 11, 2024
CVE-2024-34753
5.3 MEDIUM

Missing Authorization vulnerability in SoftLab Radio Player.This issue affects Radio Player: from n/a through 2.0.73.

Jun 11, 2024
CVE-2024-32144
5.4 MEDIUM

Missing Authorization vulnerability in Welcart Inc. Welcart e-Commerce.This issue affects Welcart e-Commerce: from n/a through 2.9.14.

Jun 11, 2024
CVE-2024-23521
5.3 MEDIUM

Missing Authorization vulnerability in Happyforms.This issue affects Happyforms: from n/a through 1.25.10.

Jun 11, 2024
CVE-2024-23503
4.3 MEDIUM

Missing Authorization vulnerability in WPManageNinja LLC Ninja Tables.This issue affects Ninja Tables: from n/a through 5.0.6.

Jun 11, 2024
CVE-2023-51682
5.3 MEDIUM

Missing Authorization vulnerability in ibericode MC4WP.This issue affects MC4WP: from n/a through 4.9.9.

Jun 11, 2024
CVE-2023-51519
4.3 MEDIUM

Missing Authorization vulnerability in Soliloquy Team Slider by Soliloquy.This issue affects Slider by Soliloquy: from n/a through 2.7.2.

Jun 11, 2024
CVE-2024-37296
5.3 MEDIUM

The Aimeos HTML client provides Aimeos HTML components for e-commerce projects. Starting in version 2020.04.1 and prior to versions 2020.10.27, 2021.10.21, 2022.10.12, 2023.10.14, and 2024.04.5, …

Jun 11, 2024
CVE-2024-37294
5.5 MEDIUM

Aimeos is an Open Source e-commerce framework for online shops. All SaaS and marketplace setups using Aimeos version from 2022/2023/2024 are affected by a potential …

Jun 11, 2024
CVE-2024-37161
4.0 MEDIUM

MeterSphere is an open source continuous testing platform. Prior to version 1.10.1-lts, the system's step editor stores cross-site scripting vulnerabilities. Version 1.10.1-lts fixes this issue.

Jun 11, 2024
CVE-2024-35667
5.3 MEDIUM

Missing Authorization vulnerability in WP EasyCart.This issue affects WP EasyCart: from n/a through 5.5.19.

Jun 11, 2024
CVE-2024-35665
5.3 MEDIUM

Missing Authorization vulnerability in namithjawahar Insert Post Ads.This issue affects Insert Post Ads: from n/a through 1.3.2.

Jun 11, 2024
CVE-2024-35663
5.4 MEDIUM

Missing Authorization vulnerability in HahnCreativeGroup WP Translate.This issue affects WP Translate: from n/a through 5.3.0.

Jun 11, 2024
CVE-2024-35628
4.3 MEDIUM

Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10Web: from n/a through 1.8.25.

Jun 11, 2024
CVE-2024-35235
4.4 MEDIUM

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.8 and earlier, when starting the cupsd server …

Jun 11, 2024
CVE-2024-35168
4.3 MEDIUM

Missing Authorization vulnerability in Discourse WP Discourse.This issue affects WP Discourse: from n/a through 2.5.1.

Jun 11, 2024
CVE-2024-34826
6.3 MEDIUM

Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.4.

Jun 11, 2024
CVE-2024-34820
6.5 MEDIUM

Missing Authorization vulnerability in If So Plugin If-So Dynamic Content Personalization.This issue affects If-So Dynamic Content Personalization: from n/a through 1.7.1.

Jun 11, 2024
CVE-2024-32148
4.3 MEDIUM

Missing Authorization vulnerability in Salesforce Pardot.This issue affects Pardot: from n/a through 2.1.0.

Jun 11, 2024
CVE-2024-31495
4.3 MEDIUM

A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiPortal versions 7.0.0 through 7.0.6 and version 7.2.0 allows privileged …

Jun 11, 2024
CVE-2024-23111
6.8 MEDIUM

An improper neutralization of input during web page Generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiOS version 7.4.3 and below, 7.2 all versions, 7.0 all versions …

Jun 11, 2024
CVE-2023-52199
6.5 MEDIUM

Missing Authorization vulnerability in Matthias Pfefferle & Automattic ActivityPub.This issue affects ActivityPub: from n/a through 1.0.5.

Jun 11, 2024
CVE-2023-51498
5.3 MEDIUM

Missing Authorization vulnerability in Woo WooCommerce Canada Post Shipping.This issue affects WooCommerce Canada Post Shipping: from n/a through 2.8.3.

Jun 11, 2024
CVE-2023-46720
6.7 MEDIUM

A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.7 and 7.0.0 through 7.0.12 and 6.4.6 through 6.4.15 and 6.2.9 …

Jun 11, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.