CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| Exploit 1mo ago | 8.2 | Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::NodeSet#[] (and its alias #slice) checked the requested index against the node set's bounds using a 32-bit-truncated copy of the index. A large negative index could pass the check and then be used at full width, reading outside the node set's storage. On CRuby this is an out-of-bounds read that typically crashes the process; on JRuby it is not memory-unsafe but returns an incorrect node. This vulnerability is fixed in 1.19.4. |
| Exploit 1mo ago | 2.6 | Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, the NONET parse option, which Nokogiri turns on by default for Nokogiri::XML::Schema (see CVE-2020-26247), was not correctly enforced on the JRuby implementation. As a result, a schema parsed with default options could still cause external resources to be fetched over the network, potentially enabling SSRF or XXE attacks. This vulnerability is fixed in 1.19.4. |
| 1mo ago | 6.5 | Remote Keyless Entry System (RKES), using the 433 MHz key fob bearing FCC ID CWTR53R0 manufactured by ALPS ALPINE CO., LTD., is vulnerable to a roll-back attack against its rolling-code authentication. An attacker within RF range who records two consecutive lock or unlock transmissions from a legitimate key fob can later replay the same pair of transmissions repeatedly. During testing, replaying the first captured transmission caused the RKES to enter a state in which replaying the second captured transmission resulted in a successful lock or unlock operation of the vehicle. Tested and confirmed on a 2024 Suzuki Swift (SWIFT ISG GLS AC 1.2 5P 4x2 TM). |
| Exploit 1mo ago | 7.8 | Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution. |
| 1mo ago | — | Malicious HTML content could be injected into the content rendered by the pretix-digital plugin. |
| 1mo ago | — | Malicious HTML content could be injected into the email address of an order, which pretix showed without sanitization on the confirmation page for individual tickets in that order. |
| 1mo ago | — | Our payment integration with Computop-based payment methods did not properly validate payment status responses. An attacker could use a successful payment status response from one payment and supply it to the system for a different payment, gaining access to multiple valid tickets with only one payment. |
| 1mo ago | — | Our payment integration with Oppwa-based payment methods did not properly validate payment status responses. An attacker could use a successful payment status response from one payment and supply it to the system for a different payment, gaining access to multiple valid tickets with only one payment. |
| 1mo ago | 6.5 | Contributor Sensitive Data Exposure in Elementor Website Builder <= 4.1.3 versions. |
| 1mo ago | 6.5 | Contributor Broken Access Control in Slim SEO <= 4.6.2 versions. |
| Exploit 1mo ago | 7.5 | Winstone Servlet Engine through 0.9.10 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by sending HTTP GET requests with dot-dot-slash sequences that are not sanitized when serving static files from the configured webroot. Attackers can traverse outside the webroot directory using traversal-prefixed paths in a single HTTP request to read any file accessible to the servlet engine process, including sensitive system files when the service runs with elevated privileges. |
| 1mo ago | 7.1 | Unauthenticated Cross Site Scripting (XSS) in Forminator <= 1.53.1 versions. |
| 1mo ago | 7.7 | Subscriber Arbitrary File Deletion in JS Help Desk <= 3.1.1 versions. |
| 1mo ago | 8.8 | Subscriber PHP Object Injection in EventPrime <= 4.3.4.1 versions. |
| 1mo ago | 7.1 | Unauthenticated Cross Site Scripting (XSS) in TablePress <= 3.3.1 versions. |
| Exploit 1mo ago | 6.5 | Improper Access Control vulnerability in Themeisle PPOM for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects PPOM for WooCommerce: from n/a through 33.0.18. |
| Exploit 1mo ago | 8.5 | Contributor Remote Code Execution (RCE) in Post Snippets <= 4.0.19 versions. |
| 1mo ago | 7.1 | Customer Cross Site Scripting (XSS) in Advanced Order Export For WooCommerce <= 4.0.9 versions. |
| 1mo ago | 5.4 | Customer Broken Access Control in UPI QR Code Payment Gateway for WooCommerce <= 1.6.2 versions. |
| 1mo ago | 7.1 | Unauthenticated Cross Site Scripting (XSS) in Master Slider <= 3.11.2 versions. |
| 1mo ago | 6.5 | Unauthenticated Insecure Direct Object References (IDOR) in License Manager for WooCommerce <= 3.0.15 versions. |
| 1mo ago | 7.1 | Unauthenticated Cross Site Scripting (XSS) in H5P <= 1.17.6 versions. |
| 1mo ago | 7.1 | Subscriber Cross Site Scripting (XSS) in WP Activity Log <= 5.6.3.1 versions. |
| 1mo ago | 9.3 | Unauthenticated SQL Injection in Premmerce Wishlist for WooCommerce <= 1.1.11 versions. |
| 1mo ago | 8.3 | Insertion of Sensitive Information Into Sent Data vulnerability in Saad Iqbal APIExperts Square for WooCommerce allows Retrieve Embedded Sensitive Data. This issue affects APIExperts Square for WooCommerce: from n/a through 4.7.3. |
| 1mo ago | 8.1 | Unauthenticated Local File Inclusion in MDTF <= 1.3.8 versions. |
| 1mo ago | 7.5 | Unauthenticated Broken Access Control in CheckView Automated Testing <= 2.1.0 versions. |
| 1mo ago | 9.3 | Unauthenticated SQL Injection in MDTF <= 1.3.7 versions. |
| Exploit 1mo ago | 8.1 | Missing Authorization vulnerability in Royal Plugins Royal MCP allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Royal MCP: from n/a through 1.4.25. |
| 1mo ago | 7.5 | Unauthenticated Sensitive Data Exposure in Vitepos <= 3.4.2 versions. |