Auto-Update: 2024-09-17T08:00:17.671161+00:00

This commit is contained in:
cad-safe-bot 2024-09-17 08:03:15 +00:00
parent fd1667d30a
commit a24d41bf48
11 changed files with 219 additions and 19 deletions

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-5170",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.310",
"lastModified": "2024-09-17T06:15:02.310",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Logo Manager For Enamad WordPress plugin through 0.7.1 does not sanitise and escape in its widgets settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/37b5ed06-0633-49e0-b47d-8aa2f4510179/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8043",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.467",
"lastModified": "2024-09-17T06:15:02.467",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Vikinghammer Tweet WordPress plugin through 0.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/2ba27715-add4-4e2c-ad0d-83ebdc26aec1/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8044",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.550",
"lastModified": "2024-09-17T06:15:02.550",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The infolinks Ad Wrap WordPress plugin through 1.0.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/14b42ba8-7a8b-4fbf-86fb-6095879ec05c/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8047",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.617",
"lastModified": "2024-09-17T06:15:02.617",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Visual Sound (old) WordPress plugin through 1.06 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/0ae1474c-9193-48ee-8cf6-d19900ad95f4/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8051",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.690",
"lastModified": "2024-09-17T06:15:02.690",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Special Feed Items WordPress plugin through 1.0.1 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/d5edf7ed-207c-48bb-9226-8647ad4348e4/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8052",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.780",
"lastModified": "2024-09-17T06:15:02.780",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Review Ratings WordPress plugin through 1.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/d821a6d0-d749-4e02-9b7c-3065e66e1c97/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8091",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.850",
"lastModified": "2024-09-17T06:15:02.850",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Enhanced Search Box WordPress plugin through 0.6.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/1ca90b81-7539-4a15-8c5a-39a8d96a74a2/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8092",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.920",
"lastModified": "2024-09-17T06:15:02.920",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/d5a91ceb-8a92-4f99-b7b7-1c4e0a587022/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,21 @@
{
"id": "CVE-2024-8093",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-09-17T06:15:02.977",
"lastModified": "2024-09-17T06:15:02.977",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Posts reminder WordPress plugin through 0.20 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/c7fd690a-5f02-491c-a3fb-6eac9ffffe96/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2024-09-17T06:00:17.877285+00:00
2024-09-17T08:00:17.671161+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2024-09-17T05:15:22.973000+00:00
2024-09-17T06:15:02.977000+00:00
```
### Last Data Feed Release
@ -33,26 +33,28 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
263073
263082
```
### CVEs added in the last Commit
Recently added CVEs: `0`
Recently added CVEs: `9`
- [CVE-2024-5170](CVE-2024/CVE-2024-51xx/CVE-2024-5170.json) (`2024-09-17T06:15:02.310`)
- [CVE-2024-8043](CVE-2024/CVE-2024-80xx/CVE-2024-8043.json) (`2024-09-17T06:15:02.467`)
- [CVE-2024-8044](CVE-2024/CVE-2024-80xx/CVE-2024-8044.json) (`2024-09-17T06:15:02.550`)
- [CVE-2024-8047](CVE-2024/CVE-2024-80xx/CVE-2024-8047.json) (`2024-09-17T06:15:02.617`)
- [CVE-2024-8051](CVE-2024/CVE-2024-80xx/CVE-2024-8051.json) (`2024-09-17T06:15:02.690`)
- [CVE-2024-8052](CVE-2024/CVE-2024-80xx/CVE-2024-8052.json) (`2024-09-17T06:15:02.780`)
- [CVE-2024-8091](CVE-2024/CVE-2024-80xx/CVE-2024-8091.json) (`2024-09-17T06:15:02.850`)
- [CVE-2024-8092](CVE-2024/CVE-2024-80xx/CVE-2024-8092.json) (`2024-09-17T06:15:02.920`)
- [CVE-2024-8093](CVE-2024/CVE-2024-80xx/CVE-2024-8093.json) (`2024-09-17T06:15:02.977`)
### CVEs modified in the last Commit
Recently modified CVEs: `7`
Recently modified CVEs: `0`
- [CVE-2021-32036](CVE-2021/CVE-2021-320xx/CVE-2021-32036.json) (`2024-09-17T05:15:22.973`)
- [CVE-2021-35232](CVE-2021/CVE-2021-352xx/CVE-2021-35232.json) (`2024-09-17T04:16:51.820`)
- [CVE-2021-44792](CVE-2021/CVE-2021-447xx/CVE-2021-44792.json) (`2024-09-17T04:16:56.150`)
- [CVE-2021-44793](CVE-2021/CVE-2021-447xx/CVE-2021-44793.json) (`2024-09-17T04:16:56.283`)
- [CVE-2022-24036](CVE-2022/CVE-2022-240xx/CVE-2022-24036.json) (`2024-09-17T04:16:57.613`)
- [CVE-2022-24038](CVE-2022/CVE-2022-240xx/CVE-2022-24038.json) (`2024-09-17T04:16:57.790`)
- [CVE-2022-29923](CVE-2022/CVE-2022-299xx/CVE-2022-29923.json) (`2024-09-17T04:16:58.870`)
## Download and Usage

View File

@ -175920,7 +175920,7 @@ CVE-2021-32029,0,0,c9b5a7b8dc11c5672ce083a3c6eff74583815dce93be9f2eb4d2fba6b7edc
CVE-2021-32030,0,0,d98d6d588a871ab8310e4724423bd08f90e9cd8f21076076a5a0b478d743fe70,2021-05-13T20:12:22.987000
CVE-2021-32032,0,0,5cf54845435393b3da820244542643b087a240339cac6859cd696443a23b55c6,2021-05-27T22:33:48.293000
CVE-2021-32033,0,0,b909cb3f6467294c9a5072a253a9c80b45e6aa19a4956220f783a5552a9d6bdd,2022-07-12T17:42:04.277000
CVE-2021-32036,0,1,ba633803542d04ca16615f60de1c6e2691d36e8d5db51318ab922d888417fd41,2024-09-17T05:15:22.973000
CVE-2021-32036,0,0,ba633803542d04ca16615f60de1c6e2691d36e8d5db51318ab922d888417fd41,2024-09-17T05:15:22.973000
CVE-2021-32037,0,0,cb9eb1a9c4e21be4edcd7948b7e6d08df435ff36a32be7815278fba57668b285,2024-09-16T23:15:51.240000
CVE-2021-32039,0,0,ef8fc7eb5682a4bbdd6756349cf6fe21c6aa25d76d48ea7b1e1ebcad41c51dd6,2024-09-17T02:15:44.030000
CVE-2021-3204,0,0,2e22bce48cae8ac00134abd0180f59ab7a6940af96efa6d3ad45f06ea81ad938,2021-02-25T22:07:44.530000
@ -178352,7 +178352,7 @@ CVE-2021-35229,0,0,96b538a205cb77faa458b253a55f8b1222f842514883443f419478659b4ec
CVE-2021-3523,0,0,d95c5c565abdd30d48084c0ab8870ecd2b42ba6ee046da2de9b100b8f71d7188,2022-05-06T18:49:43.437000
CVE-2021-35230,0,0,02c446c33c0175f3f50d8bbf601e8263f7f873f303b1143aa08cc915abf386d5,2021-10-28T01:17:45.120000
CVE-2021-35231,0,0,ccfe167ad703855ad0dd158faaac97b5f3456ef5225b162824d000a8828211da,2021-10-28T20:06:25.563000
CVE-2021-35232,0,1,bc15273ba7638e7d7fbb0ed9eee0deca5f864836e1cac2f950e5a73128aac27a,2024-09-17T04:16:51.820000
CVE-2021-35232,0,0,bc15273ba7638e7d7fbb0ed9eee0deca5f864836e1cac2f950e5a73128aac27a,2024-09-17T04:16:51.820000
CVE-2021-35233,0,0,bbeb391d8a5ad69f9bcabf3e5f546440ee19038c899c82e92ce996109e055cb4,2021-10-28T17:58:04.630000
CVE-2021-35234,0,0,d3af755e6ff0372907898ebe9ef3c82a3553ee8e6c3796494ca4311c78769bb6,2024-09-16T19:15:58.933000
CVE-2021-35235,0,0,74fe8487b11b8d7d1a6e4bceaebda375fd818a6cd64456df79dff8d4c75261eb,2021-10-28T18:25:41.927000
@ -185449,8 +185449,8 @@ CVE-2021-44777,0,0,51a32f6c5c0bc4fc23a2cab4fbfbdb39b9f5d098e0134716d2c457b8a85da
CVE-2021-44779,0,0,80b2521f3ef5087ce7971c1ff6268ae24016f356a75d614d812e6801641b625c,2022-02-09T02:59:55.127000
CVE-2021-44790,0,0,8f74305cbb2f6bb12f046d53f87457788e74a4076acbc8c9e93727e2db713bee,2023-11-07T03:39:43.780000
CVE-2021-44791,0,0,82fedacf93d0f7bfa563ed73c516734f117c46e296d0375eecfec0c8a6498367,2022-07-15T02:11:50.070000
CVE-2021-44792,0,1,3a2bad7536411b95f9237c87e5c4ea1af1611df7e5fdbe01e730f460fdd7d80f,2024-09-17T04:16:56.150000
CVE-2021-44793,0,1,4b531d3135311d8a596500cde2185c5986e62a8769eb1c5cc5426da88f2d328e,2024-09-17T04:16:56.283000
CVE-2021-44792,0,0,3a2bad7536411b95f9237c87e5c4ea1af1611df7e5fdbe01e730f460fdd7d80f,2024-09-17T04:16:56.150000
CVE-2021-44793,0,0,4b531d3135311d8a596500cde2185c5986e62a8769eb1c5cc5426da88f2d328e,2024-09-17T04:16:56.283000
CVE-2021-44794,0,0,9da96264834e282e2ac3ce56eab795712f30530890324a5d80c83d0967b0463e,2024-09-16T19:16:00.820000
CVE-2021-44795,0,0,23c17c51c381cc390fd03afc72b77ec9caf6ec72c2d7a9f71df9f4c455be9028,2024-09-17T01:15:48.993000
CVE-2021-44827,0,0,9fea81bc59e796705b3477b2e337bc20f992b9d4d1bd6d59ef9163f65b630451,2022-03-15T15:03:08.487000
@ -193141,9 +193141,9 @@ CVE-2022-24030,0,0,57538b987eca2bd869171e4af1ae0fadd8f006d0ed601688d13fa546143d4
CVE-2022-24031,0,0,7399c88a65dd2e023bcfb8271a80b6ba39c4eb2236a83b177d237118eefe2d92,2022-03-29T16:05:57.603000
CVE-2022-24032,0,0,11634fe9753e567298690c288c98eec941c14f44fb3a0a55504b2469b4ba450c,2023-08-08T14:22:24.967000
CVE-2022-24035,0,0,9b23c5bb0f44d86d447cdbf279d274b3929b9de04861d8f9d5fe2e90b1897338,2023-05-04T18:27:25.390000
CVE-2022-24036,0,1,8d7f78d4728954253f020d0554b81462a50e9b8a845404304f005dfe6b077bcd,2024-09-17T04:16:57.613000
CVE-2022-24036,0,0,8d7f78d4728954253f020d0554b81462a50e9b8a845404304f005dfe6b077bcd,2024-09-17T04:16:57.613000
CVE-2022-24037,0,0,949facd785e37cda7ce981e690600cc70f4270ed22b7220176fbc2486299d4e1,2024-09-16T21:15:43.160000
CVE-2022-24038,0,1,fa6bc6f53d78195fcb56df4a38ec6de8557a595e990d6605b1ecb4b3342161cc,2024-09-17T04:16:57.790000
CVE-2022-24038,0,0,fa6bc6f53d78195fcb56df4a38ec6de8557a595e990d6605b1ecb4b3342161cc,2024-09-17T04:16:57.790000
CVE-2022-24039,0,0,274f821a6a221b843547fef84b83dafca66cb4b2aa2e0dd60354228ae4915a8a,2023-06-30T18:48:00.477000
CVE-2022-2404,0,0,2abb86e60e00a2e4c0a3972c8311c7d80ff04179de98dd22ce51079be2e476c8,2022-10-29T02:52:14.990000
CVE-2022-24040,0,0,e9cef9313d384260775f669283f2853635c23d6c6e74ad3936e6f3a2cceaccac,2022-10-06T02:50:56.453000
@ -198015,7 +198015,7 @@ CVE-2022-29918,0,0,6af04b580f4e07c828ec246c26766f29d2f300682e3a83c9e40a7eba57116
CVE-2022-29919,0,0,d67261510792919e281a645a7017a0c9c1af205f8e8e08c183abe83252ae71ac,2023-11-07T03:46:08.137000
CVE-2022-2992,0,0,a1173479347d95f7598fc6dba60f08b28b255e517bcaa53892042754e5afe03d,2023-08-08T14:21:49.707000
CVE-2022-29922,0,0,4a9f7eb5bcac916d2a56c26a664e768af63b9c61902372e2728d2e54046da6db,2022-10-05T13:45:56.650000
CVE-2022-29923,0,1,1a03f7be95fc5e35d3595dcd79190a8e9af84aa1b5855c1f468173093ed91535,2024-09-17T04:16:58.870000
CVE-2022-29923,0,0,1a03f7be95fc5e35d3595dcd79190a8e9af84aa1b5855c1f468173093ed91535,2024-09-17T04:16:58.870000
CVE-2022-29925,0,0,f9599aae4be2ac78df9906063071e11d3117e1389d4b8adb793331e5210d3158,2023-08-08T14:21:49.707000
CVE-2022-29926,0,0,128c39044676388dfe021bc3d1b1ad399f900f98eacc5dce1a4c50ab82558ef7,2023-11-07T03:46:08.290000
CVE-2022-29927,0,0,c7f5465b42ce06e8adf9fe7eba9c32953f8bfd840c3b20156745c390b4e47498,2022-05-23T13:12:44.993000
@ -260454,6 +260454,7 @@ CVE-2024-5166,0,0,5c544eab21844e01fabd3874ed7776a55145987bd3a510311ad16f12f33bd2
CVE-2024-5167,0,0,a26d674346a63d8730649864e3fcc22e33fb8b5877ed990bcd49874aef8d8c48,2024-08-01T13:59:41.660000
CVE-2024-5168,0,0,cbe1b6c96aef7b506dd526cf00951c936dfc5233fd9563b4af0bf7fdab7a5899,2024-05-24T01:15:30.977000
CVE-2024-5169,0,0,882a6aa1fee4c71f4df51ce353ec6b27431ae776e2b2b23b3c5ba8c59ca21797,2024-08-02T15:00:10.200000
CVE-2024-5170,1,1,fbba9f8401d89141e05e0919ee12cd3669a094e4738794dafb81e271bc2acb4c,2024-09-17T06:15:02.310000
CVE-2024-5171,0,0,dd574bf92e93c62d270c5e3b0cb384556e01dba1d43a5b9db2a02845fa564cb4,2024-07-23T18:09:56.753000
CVE-2024-5172,0,0,b469524ff2309ced9aec08b056578c23e8b8b5248adb8fcea2b38cb214c81275,2024-07-05T14:05:48.213000
CVE-2024-5173,0,0,e808cbd0ff507575dfa32503bcc3a2123c9461298f1a4a4ef8cd294367da6464,2024-06-26T12:44:29.693000
@ -262706,8 +262707,13 @@ CVE-2024-8035,0,0,e11fe8c378f080395f404658baee2e1c5cd70ef826bdf0b13fe46f85c653ad
CVE-2024-8039,0,0,75dd15cbf64fe4bb3f25b4e678f58a350c7ac0d4791106998aa5586c640f03c8,2024-09-17T02:35:59.503000
CVE-2024-8041,0,0,d1a08eb64fa9104259a4b82950c39baccb3cd8ac76a0f9fe28938628a6898399,2024-09-11T16:54:10.997000
CVE-2024-8042,0,0,4d76e0fe9d137db196cca6155876f0d5898dcc370be2eba60c3750caf6d57c78,2024-09-09T18:30:12.050000
CVE-2024-8043,1,1,dd26cdd0b118c857b1f0f96e8a5394647e578551a7e726fe8d580383879b4250,2024-09-17T06:15:02.467000
CVE-2024-8044,1,1,deb01dda329d3a69d68c65e36271860a4e9de1c2ea7a8202e978b874985f7084,2024-09-17T06:15:02.550000
CVE-2024-8045,0,0,05d36d75d042c2c9517546223100d3f67299fb6baf521e764ed39ac43e964a74,2024-09-11T16:26:11.920000
CVE-2024-8046,0,0,b737fce0801d82db74076beb4b2a2085f8323b47e71780060f37f6f5c3050f1a,2024-08-27T13:01:37.913000
CVE-2024-8047,1,1,fd2cef2d94ef41159bd0e8e273c2b1cf3a1c54984b732395ec323f937d9e2b85,2024-09-17T06:15:02.617000
CVE-2024-8051,1,1,9c09f69bf2e4b9e1e13cd23830ec93ed3ad78868abf1ec340cfe6f16ce50683a,2024-09-17T06:15:02.690000
CVE-2024-8052,1,1,fb64b1bd32fb7c9c5f7421917f7a3d76389fe249c379b52a75abd2cd8cd8a231,2024-09-17T06:15:02.780000
CVE-2024-8054,0,0,cd3f21fbab232193f2e1023cd4fdcf2e5fe80aa9a017de7b992adfbc243b258d,2024-09-12T14:35:22.300000
CVE-2024-8056,0,0,5fb88a6ca250e6ff67f8a1ef0c841abbb4c8f2529c05613c2143403e703e96cb,2024-09-12T13:35:23.340000
CVE-2024-8059,0,0,cfbf4f8f44b252e848882465d205a6335741f212b7c8eb409750cba9932c228f,2024-09-14T11:47:14.677000
@ -262728,6 +262734,9 @@ CVE-2024-8086,0,0,1db8fbbbc3b8bbc355402aca80f0447c54000b25360ca3b1fa582aada4800d
CVE-2024-8087,0,0,9e47ad2dfed1c8a4045274b6d757cb5a75d1e05917b45ee6f1489b72f67b871b,2024-08-27T13:19:35.530000
CVE-2024-8088,0,0,8ddda94d9e5d462484d35576871f82a931bed67f85a71db29ea75a996b1d19a4,2024-09-04T23:15:13.100000
CVE-2024-8089,0,0,e6e12db9d845890df3284b8f9ed104fa7a1183d91532c3c72d090f8235aedb4e,2024-08-27T13:21:22.927000
CVE-2024-8091,1,1,e9667f9aeed25c579032ea56f2cda252a321b1f203b8db2b3721c5e9c8125ecc,2024-09-17T06:15:02.850000
CVE-2024-8092,1,1,4fc6d3e56cf1cdb7fea3d8201afbda7b12a03f1e5b41bcff9ab18202a46534e8,2024-09-17T06:15:02.920000
CVE-2024-8093,1,1,6675b99dbed06259af5a836f3096d93cc319918beb19399bc32e714e298fe211,2024-09-17T06:15:02.977000
CVE-2024-8096,0,0,33268897f7f8b2273839db6d4e75fbc8fdf5f760a220b507e80b08e690a9edf4,2024-09-11T16:26:11.920000
CVE-2024-8097,0,0,9eb75255abcd069d744af59bd7e8120e62794401b3e1be4e7c495de1066a7b41,2024-09-12T12:35:54.013000
CVE-2024-8102,0,0,59b268e27a6763219f51e9e55e73ae4276fd3b992bf79726ec1ccd845c10f5f9,2024-09-05T13:28:54.747000

Can't render this file because it is too large.