Skip to content

Commit

Permalink
generated content from 2024-12-07
Browse files Browse the repository at this point in the history
  • Loading branch information
github-actions[bot] committed Dec 7, 2024
1 parent e7c3cf6 commit 4b59cde
Show file tree
Hide file tree
Showing 170 changed files with 3,887 additions and 0 deletions.
169 changes: 169 additions & 0 deletions mapping.csv
Original file line number Diff line number Diff line change
Expand Up @@ -258765,3 +258765,172 @@ vulnerability,CVE-2018-9386,vulnerability--34bb85d2-a77d-470a-9b9e-a933a82707d4
vulnerability,CVE-2018-9390,vulnerability--08c3e97f-d69f-40b8-808b-f6647eb01452
vulnerability,CVE-2018-9388,vulnerability--b4c0d2eb-8775-4de1-8f05-bceb3c5665b9
vulnerability,CVE-2018-9391,vulnerability--948d1aef-ba8b-4c8a-bf54-c2ecf6942753
vulnerability,CVE-2024-51727,vulnerability--2b6a6f4a-6f64-4d5d-ac8b-da95ca592f97
vulnerability,CVE-2024-51815,vulnerability--91a638ae-92ab-4915-866c-3306def20898
vulnerability,CVE-2024-51615,vulnerability--70a79d6d-b0f1-42a0-8aa1-efaf12eab21c
vulnerability,CVE-2024-48859,vulnerability--d3242e41-cf80-43b4-abc3-f98a29bd74b2
vulnerability,CVE-2024-48868,vulnerability--e14aba10-e208-4c32-96ef-192819501a62
vulnerability,CVE-2024-48871,vulnerability--318bc8a5-995c-4d83-a053-15e08a130a9d
vulnerability,CVE-2024-48863,vulnerability--60f19f64-ecf5-4f84-9113-605f38f74ab6
vulnerability,CVE-2024-48865,vulnerability--d2ec128e-a102-49dd-b56b-d9fd2f76145a
vulnerability,CVE-2024-48703,vulnerability--876e0ef1-b950-41b5-91fb-824def78b7aa
vulnerability,CVE-2024-48874,vulnerability--f4d68e7b-3bc9-4616-a261-c3c866a9a7ce
vulnerability,CVE-2024-48867,vulnerability--d0e65f38-2210-433b-9412-cb30d4fbd47e
vulnerability,CVE-2024-48866,vulnerability--49b5214d-8689-4d51-942a-5931df74e3fe
vulnerability,CVE-2024-30129,vulnerability--6d4bd18a-9e57-4353-a493-02335422f1f1
vulnerability,CVE-2024-52558,vulnerability--1e910860-fd3c-4907-955c-e6600376a968
vulnerability,CVE-2024-52320,vulnerability--94b0b792-be99-48eb-848b-fc8d53f65e10
vulnerability,CVE-2024-52335,vulnerability--78bdb87d-f712-4166-a04e-19f48371aaff
vulnerability,CVE-2024-52324,vulnerability--67661011-fb75-4e3a-adeb-582f32817f7e
vulnerability,CVE-2024-45722,vulnerability--60f8844e-0b19-4921-af80-e0a647cd617c
vulnerability,CVE-2024-12110,vulnerability--0183669a-c925-4093-a1d7-f23d2cbe5788
vulnerability,CVE-2024-12028,vulnerability--aabb2a19-c47c-40b4-a64d-fd7778f64b1c
vulnerability,CVE-2024-12254,vulnerability--256f2cb6-f88b-46b5-b4ad-7853ce066457
vulnerability,CVE-2024-12003,vulnerability--8e93d424-ddb4-4bc7-b3dd-e154ee2162d7
vulnerability,CVE-2024-12326,vulnerability--a9b2f471-2340-490c-bc62-67cfb391954c
vulnerability,CVE-2024-12155,vulnerability--1f0a6a0d-4bfd-4817-99ec-47fc5ca6c0a3
vulnerability,CVE-2024-12027,vulnerability--11a51272-c4c9-49cb-9326-7e0a07cec164
vulnerability,CVE-2024-12060,vulnerability--4d9bc1cf-45b4-436a-8696-d74b2cbaf6f2
vulnerability,CVE-2024-10578,vulnerability--78f8f4fe-7b58-4b2a-984f-488bf45dbc1c
vulnerability,CVE-2024-10879,vulnerability--996b9546-6d5d-4263-9e2c-2b110449b609
vulnerability,CVE-2024-10692,vulnerability--788f4785-b8f3-4094-86a7-66b8528196c8
vulnerability,CVE-2024-10689,vulnerability--8904ed43-9c7f-485e-ba75-33a5ce054d9d
vulnerability,CVE-2024-10849,vulnerability--4fc2a13c-27b1-4af5-bf29-81b99b8c4de1
vulnerability,CVE-2024-10516,vulnerability--9e296cc4-43a3-469c-bebe-56bd2cb640ec
vulnerability,CVE-2024-10776,vulnerability--c94e28b5-23ad-4677-8587-7d0762ef7cb8
vulnerability,CVE-2024-10480,vulnerability--dbb7625c-a19e-4ca2-ab72-07df2c82480c
vulnerability,CVE-2024-10773,vulnerability--a0514325-35a1-4764-971c-009fd5e83d4f
vulnerability,CVE-2024-10551,vulnerability--278cc9a3-78e7-4afd-b966-ca698089da72
vulnerability,CVE-2024-10681,vulnerability--97eab1b0-ace6-43de-9dbe-fff52196d085
vulnerability,CVE-2024-10772,vulnerability--063a5d76-369a-4daf-b1bd-cd2bb316ceb4
vulnerability,CVE-2024-10771,vulnerability--126a8c91-28f5-4dc9-ba0c-0b74a3c2f693
vulnerability,CVE-2024-10320,vulnerability--5075a25a-22ef-407b-b9c5-cde50f6daf78
vulnerability,CVE-2024-10909,vulnerability--c8b03aa1-0ffd-47a3-8fad-ccd440952d2d
vulnerability,CVE-2024-10774,vulnerability--961cbf2b-102a-42d8-a58f-44b110d64731
vulnerability,CVE-2024-10247,vulnerability--a1332b89-1ba4-4081-bd57-4e4de4c2f443
vulnerability,CVE-2024-10836,vulnerability--bade830f-0c13-4a1a-ab97-a86fa0174574
vulnerability,CVE-2024-9866,vulnerability--264df4c1-b437-43eb-9ab1-a4ef34c5bc6a
vulnerability,CVE-2024-9872,vulnerability--9d66ca7f-6799-42e8-9beb-3f75ba48c242
vulnerability,CVE-2024-9705,vulnerability--c37ba43f-41e6-432d-9a14-81e3e43f92e7
vulnerability,CVE-2024-9706,vulnerability--fe305d6d-fab8-41ea-80ce-4f365c3c28b6
vulnerability,CVE-2024-9769,vulnerability--7fe4bd1d-e4a9-46ac-9ba9-343ef72a872a
vulnerability,CVE-2024-47547,vulnerability--5b8fe7ea-67ca-458b-a0b7-d2d0fd858bc2
vulnerability,CVE-2024-47043,vulnerability--d1c6ee30-9064-4b3b-9f48-57c20314b80f
vulnerability,CVE-2024-47791,vulnerability--a28b45ed-f5d3-4851-8da7-0c80c0fd9197
vulnerability,CVE-2024-47146,vulnerability--8dc4282f-af7d-4bcf-afe5-7d83d81b2f67
vulnerability,CVE-2024-50389,vulnerability--29906dfd-e253-4419-b936-8c11bff1b254
vulnerability,CVE-2024-50677,vulnerability--50ad54fe-dd83-4285-8cb4-3da86022553d
vulnerability,CVE-2024-50402,vulnerability--ddb969c4-274f-4928-8e63-e79a0da3b536
vulnerability,CVE-2024-50388,vulnerability--73b4f6f6-67a9-4f2d-bc72-8d0899d507e1
vulnerability,CVE-2024-50393,vulnerability--51b7f524-cb67-450d-aeb9-0becbf44c7d4
vulnerability,CVE-2024-50404,vulnerability--ca1b4832-3384-458a-9274-d43e85e54fe9
vulnerability,CVE-2024-50387,vulnerability--22186c95-21d0-4dc7-8a55-942851c6535f
vulnerability,CVE-2024-50403,vulnerability--c23a93ae-6072-4253-b468-3ad685daca8c
vulnerability,CVE-2024-7875,vulnerability--08efe41d-936b-465b-aaf0-df7010a4f19a
vulnerability,CVE-2024-7874,vulnerability--20ea316b-7c5e-4d82-8271-18148b3676da
vulnerability,CVE-2024-11204,vulnerability--fa9d6ba5-77d4-4067-a7f3-7f5f21e8bef2
vulnerability,CVE-2024-11729,vulnerability--793bf1e8-7953-4089-af9e-6bd7cc6538f3
vulnerability,CVE-2024-11323,vulnerability--58764a45-d4ab-4321-a392-8b68df360240
vulnerability,CVE-2024-11687,vulnerability--80402464-aa85-4fa4-9502-e8c40f7ff406
vulnerability,CVE-2024-11289,vulnerability--71b0d7b6-e5b2-46af-9351-32d3a37ee238
vulnerability,CVE-2024-11201,vulnerability--c48fbbda-5325-4947-b4e8-f94772c946b9
vulnerability,CVE-2024-11728,vulnerability--c3b260c3-9903-4301-babd-f6ed9c8d34ef
vulnerability,CVE-2024-11823,vulnerability--0c774071-53c1-4864-890b-624f03a6223b
vulnerability,CVE-2024-11321,vulnerability--70583a10-384f-4853-9607-7a4d76bb6e8c
vulnerability,CVE-2024-11450,vulnerability--78d4c926-486d-4028-88b8-aa5dea26cb07
vulnerability,CVE-2024-11352,vulnerability--15ae8729-31db-4b05-84d6-196ccba36b93
vulnerability,CVE-2024-11178,vulnerability--05e8e788-2c35-46fe-8185-b8954f7b7376
vulnerability,CVE-2024-11292,vulnerability--6152507c-8cfa-42ac-8049-994cb1b1168e
vulnerability,CVE-2024-11220,vulnerability--4e1cb2bb-50a6-4f11-8a63-b6358747f190
vulnerability,CVE-2024-11460,vulnerability--3d57875b-9981-4aca-a442-0cf8643c29e7
vulnerability,CVE-2024-11022,vulnerability--379b09f9-2ae0-43e4-9804-f039e062c201
vulnerability,CVE-2024-11444,vulnerability--782796be-c5db-43e7-ad25-382a1f649c4b
vulnerability,CVE-2024-11149,vulnerability--6c94d0e9-36ac-4708-aee4-1dd1be074141
vulnerability,CVE-2024-11276,vulnerability--795d2e26-0fe2-4c13-8d8b-b925dbe31650
vulnerability,CVE-2024-11339,vulnerability--c1f049a5-ba2a-4a44-ba75-db5f3cf779ef
vulnerability,CVE-2024-11738,vulnerability--358cdcba-6c40-4bb7-b8d6-4dc392eaf36c
vulnerability,CVE-2024-11730,vulnerability--66a0ce67-a5bb-413b-859b-d9a6f41f11a5
vulnerability,CVE-2024-11585,vulnerability--d749f666-ac4b-46e2-9528-cf0f651bf6ba
vulnerability,CVE-2024-11379,vulnerability--491755c6-6b93-4f0c-ac36-cd08c56f5723
vulnerability,CVE-2024-11336,vulnerability--438c7f65-4b41-4127-8717-0451d85ae22f
vulnerability,CVE-2024-11368,vulnerability--8779ed84-954f-4599-bf0a-8ee6e6d860b5
vulnerability,CVE-2024-44853,vulnerability--07e08b24-1f64-4c74-a5ca-c0830a2b10a2
vulnerability,CVE-2024-44856,vulnerability--12ff199a-6f0b-4ec4-aef8-4da6a115ed5c
vulnerability,CVE-2024-44852,vulnerability--53fd424c-cf8f-47b0-b9aa-7903abd06bca
vulnerability,CVE-2024-44855,vulnerability--d3e1baec-3f45-4b2f-b551-81b4557b1846
vulnerability,CVE-2024-44854,vulnerability--50d5de35-4e35-4e42-b9b3-e6b0496276fd
vulnerability,CVE-2024-53826,vulnerability--dafbe7dd-14d3-4f75-b736-8fd7530c2f3b
vulnerability,CVE-2024-53797,vulnerability--f9175daa-9633-4f4c-828a-502df2c80a80
vulnerability,CVE-2024-53806,vulnerability--a97d7b37-7be3-4cc0-ad2b-4473a9e7d667
vulnerability,CVE-2024-53804,vulnerability--c74589a4-776f-40b9-a542-e5e1abfa0f32
vulnerability,CVE-2024-53794,vulnerability--12124bef-5ec9-4afe-9a3f-cd55fad10180
vulnerability,CVE-2024-53803,vulnerability--9695f7f0-0f7c-44b1-9165-cc9e99ba8d2a
vulnerability,CVE-2024-53908,vulnerability--3d3fe1ff-1649-41a7-95ff-168312fdad7c
vulnerability,CVE-2024-53821,vulnerability--cca7fe09-70e8-4d47-8b3b-c2b55090a53b
vulnerability,CVE-2024-53691,vulnerability--a7928626-243b-454b-a5d7-296a081a43dd
vulnerability,CVE-2024-53801,vulnerability--1ae695b2-102a-4243-bf08-831f3b61f5dc
vulnerability,CVE-2024-53817,vulnerability--5da427c0-baa6-4a10-8b25-34eb2d9e5f33
vulnerability,CVE-2024-53805,vulnerability--82e3e693-e09a-4b2d-ac32-4117174d0fc1
vulnerability,CVE-2024-53813,vulnerability--401d58d0-b98d-4b73-8bd8-9f7478e186b0
vulnerability,CVE-2024-53907,vulnerability--043f2ab5-a6a4-42c1-983d-1161d13f68fe
vulnerability,CVE-2024-53142,vulnerability--e7efbea7-daf9-4c70-bc8e-d0aca545f236
vulnerability,CVE-2024-53807,vulnerability--2c7b4d2e-991f-4c97-b8ee-f2d55d2596eb
vulnerability,CVE-2024-53815,vulnerability--46785564-103e-412a-afa3-91c28d568e84
vulnerability,CVE-2024-53809,vulnerability--c42fe83c-eab6-4f04-a4e1-596d267533a1
vulnerability,CVE-2024-53808,vulnerability--f674ee76-b02a-4c0b-b868-af0ce2f89c46
vulnerability,CVE-2024-53141,vulnerability--f4000edd-ef02-4025-a892-b782ea5710cb
vulnerability,CVE-2024-53812,vulnerability--aa297e3e-d095-4291-8f5c-cf97db550bf9
vulnerability,CVE-2024-53824,vulnerability--acddd76f-612d-417d-a447-74e7f61b62da
vulnerability,CVE-2024-53825,vulnerability--21bacda5-a534-494a-ad20-8e26d1985446
vulnerability,CVE-2024-53799,vulnerability--83618e7a-334c-4489-96b3-8677b8acabc2
vulnerability,CVE-2024-53796,vulnerability--70622595-89c3-4bd9-aff3-38209c7dddc0
vulnerability,CVE-2024-53795,vulnerability--d0ed90a0-4cf2-4358-b0a6-12752848e9fc
vulnerability,CVE-2024-53810,vulnerability--f1d0e62c-fd9d-4301-ac7c-b32c25a933b8
vulnerability,CVE-2024-53802,vulnerability--f2dc233d-0ad4-4afb-a361-a30184183795
vulnerability,CVE-2024-53820,vulnerability--e634e83d-2a2c-48bb-918a-68c022386e89
vulnerability,CVE-2024-53811,vulnerability--94e438e3-9b39-4d63-9045-b6b7c49cdd4a
vulnerability,CVE-2024-53823,vulnerability--108c40db-9150-44e2-80d8-ea031cbdfe96
vulnerability,CVE-2024-38927,vulnerability--a5f83a1f-797c-4115-af3a-7ddcaf0c20ce
vulnerability,CVE-2024-38921,vulnerability--fedd9ef1-4417-4a99-8f9d-06279225f481
vulnerability,CVE-2024-38926,vulnerability--41f8962f-3e29-4bd3-8444-e2238293e5f3
vulnerability,CVE-2024-38922,vulnerability--4983b77d-343e-46f1-8728-8f124486a1f1
vulnerability,CVE-2024-38924,vulnerability--31e64ca9-87f7-4512-8e38-a4096a409b2c
vulnerability,CVE-2024-38925,vulnerability--29201a51-f74d-420b-ba46-8a16767770b4
vulnerability,CVE-2024-38923,vulnerability--4c17ec05-739e-4b73-b9b5-dc27f6af6a3a
vulnerability,CVE-2024-41644,vulnerability--0eabeb3f-0b1d-4a2e-8c4c-aed7b00c66f2
vulnerability,CVE-2024-41649,vulnerability--27d45bdb-ead9-43eb-9529-5daf626b85bd
vulnerability,CVE-2024-41647,vulnerability--8ea3bc91-53ce-4f96-bd16-6c93076131ef
vulnerability,CVE-2024-41646,vulnerability--318b4d65-893c-43ae-9421-516aeebebb2c
vulnerability,CVE-2024-41645,vulnerability--acc7ea32-8293-4415-8c0f-bb4cee4c95a8
vulnerability,CVE-2024-41650,vulnerability--3703e06c-96c5-4655-be5d-6d431d3432a0
vulnerability,CVE-2024-41648,vulnerability--b33ce97f-7241-4295-9507-7ba390923e6b
vulnerability,CVE-2024-21571,vulnerability--6d093141-0a15-4847-a335-b1fd5707b3d7
vulnerability,CVE-2024-54747,vulnerability--4a3fdc76-1640-43e3-91f1-f62a3a28dbb0
vulnerability,CVE-2024-54207,vulnerability--06042d3c-a8a7-4993-ac52-18d262e8da8d
vulnerability,CVE-2024-54210,vulnerability--93f3723d-1734-4188-a5e6-187cff354b4c
vulnerability,CVE-2024-54141,vulnerability--e20e8d89-a279-45b0-8c23-f5908e69feef
vulnerability,CVE-2024-54136,vulnerability--b989f9c5-2c42-445b-9c97-9f02f0910ade
vulnerability,CVE-2024-54749,vulnerability--c0b0f6f8-775a-4c11-9d8d-d025b8717fd2
vulnerability,CVE-2024-54209,vulnerability--da88dcfa-4fee-4bee-8ae5-415744503c37
vulnerability,CVE-2024-54212,vulnerability--003d1f4d-8a53-4dbd-a074-76a8d23f6a5f
vulnerability,CVE-2024-54214,vulnerability--b3d499b5-4b20-4414-9dba-b07592878727
vulnerability,CVE-2024-54205,vulnerability--9c27f911-981d-44d4-8b47-0e76cca25032
vulnerability,CVE-2024-54208,vulnerability--5f9d32b8-d364-4b04-b6b0-8014b722212f
vulnerability,CVE-2024-54750,vulnerability--23a18630-8c41-4430-ad0e-2974251016f4
vulnerability,CVE-2024-54211,vulnerability--0550de7e-c0aa-4ffd-b5cd-378c96461690
vulnerability,CVE-2024-54745,vulnerability--b817ce4c-400a-4cf2-b5d8-83c88551db2b
vulnerability,CVE-2024-54216,vulnerability--51342d5c-a474-4527-931a-a0752b0f5358
vulnerability,CVE-2024-54137,vulnerability--37b1b76f-a417-4bb2-b77b-a07612f653b0
vulnerability,CVE-2024-54138,vulnerability--98150763-f09c-4eed-85df-0772b9658442
vulnerability,CVE-2024-54135,vulnerability--e683ba6e-ef0d-4577-ba2b-7c5a2bc2217c
vulnerability,CVE-2024-54213,vulnerability--f0a7ef0b-a24e-4c06-8543-32f05a90da75
vulnerability,CVE-2024-54206,vulnerability--47149492-327a-4e68-b44f-6db4f8679535
vulnerability,CVE-2024-54143,vulnerability--9863932c-8f33-48d6-80df-68d27e653935
vulnerability,CVE-2024-55268,vulnerability--10cb2d7d-ab75-4101-831a-c997811886e8
vulnerability,CVE-2024-49041,vulnerability--61c9cf7a-27c7-4e2f-80b7-c326ccbee7bf
vulnerability,CVE-2024-46874,vulnerability--d5a77cc5-62ec-448b-8f67-057f407bba33
vulnerability,CVE-2024-42494,vulnerability--ae7baaab-5524-4881-ae94-abdc352b2f18
vulnerability,CVE-2024-42196,vulnerability--97e4a9b3-7928-4f88-9983-8d0bfae470d9
vulnerability,CVE-2024-0139,vulnerability--3c57e4b2-c0b4-4656-881d-bb10c24ea8cd
vulnerability,CVE-2024-0130,vulnerability--129c26f0-daa4-41c3-b893-e7a167ef74a2
vulnerability,CVE-2024-4633,vulnerability--9948d7eb-1428-4048-9208-48094b71dacd
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
{
"type": "bundle",
"id": "bundle--870db6ae-97fb-4fcc-ba08-1ddc7d749cbd",
"objects": [
{
"type": "vulnerability",
"spec_version": "2.1",
"id": "vulnerability--003d1f4d-8a53-4dbd-a074-76a8d23f6a5f",
"created_by_ref": "identity--8ce3f695-d5a4-4dc8-9e93-a65af453a31a",
"created": "2024-12-07T00:22:23.475566Z",
"modified": "2024-12-07T00:22:23.475566Z",
"name": "CVE-2024-54212",
"description": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Noor alam Magical Addons For Elementor allows Stored XSS.This issue affects Magical Addons For Elementor: from n/a through 1.2.6.",
"external_references": [
{
"source_name": "cve",
"external_id": "CVE-2024-54212"
}
]
}
]
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
{
"type": "bundle",
"id": "bundle--a2b6c2fa-fc55-4f8e-9507-397bcd8a486f",
"objects": [
{
"type": "vulnerability",
"spec_version": "2.1",
"id": "vulnerability--0183669a-c925-4093-a1d7-f23d2cbe5788",
"created_by_ref": "identity--8ce3f695-d5a4-4dc8-9e93-a65af453a31a",
"created": "2024-12-07T00:22:21.900327Z",
"modified": "2024-12-07T00:22:21.900327Z",
"name": "CVE-2024-12110",
"description": "The Gold Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the activate() and deactivate() functions in all versions up to, and including, 1.3.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to activate and deactivate licenses.",
"external_references": [
{
"source_name": "cve",
"external_id": "CVE-2024-12110"
}
]
}
]
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
{
"type": "bundle",
"id": "bundle--4e0f0f3e-fb36-4460-b65f-7622e93759b8",
"objects": [
{
"type": "vulnerability",
"spec_version": "2.1",
"id": "vulnerability--043f2ab5-a6a4-42c1-983d-1161d13f68fe",
"created_by_ref": "identity--8ce3f695-d5a4-4dc8-9e93-a65af453a31a",
"created": "2024-12-07T00:22:22.730388Z",
"modified": "2024-12-07T00:22:22.730388Z",
"name": "CVE-2024-53907",
"description": "An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2.17. The strip_tags() method and striptags template filter are subject to a potential denial-of-service attack via certain inputs containing large sequences of nested incomplete HTML entities.",
"external_references": [
{
"source_name": "cve",
"external_id": "CVE-2024-53907"
}
]
}
]
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
{
"type": "bundle",
"id": "bundle--70a9d2d7-532e-4a57-8473-07461dc2d491",
"objects": [
{
"type": "vulnerability",
"spec_version": "2.1",
"id": "vulnerability--0550de7e-c0aa-4ffd-b5cd-378c96461690",
"created_by_ref": "identity--8ce3f695-d5a4-4dc8-9e93-a65af453a31a",
"created": "2024-12-07T00:22:23.488585Z",
"modified": "2024-12-07T00:22:23.488585Z",
"name": "CVE-2024-54211",
"description": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Visualmodo Borderless allows Cross-Site Scripting (XSS).This issue affects Borderless: from n/a through 1.5.8.",
"external_references": [
{
"source_name": "cve",
"external_id": "CVE-2024-54211"
}
]
}
]
}
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
{
"type": "bundle",
"id": "bundle--db6c151e-c1a3-49fc-a055-726a9f695378",
"objects": [
{
"type": "vulnerability",
"spec_version": "2.1",
"id": "vulnerability--05e8e788-2c35-46fe-8185-b8954f7b7376",
"created_by_ref": "identity--8ce3f695-d5a4-4dc8-9e93-a65af453a31a",
"created": "2024-12-07T00:22:22.437263Z",
"modified": "2024-12-07T00:22:22.437263Z",
"name": "CVE-2024-11178",
"description": "The Login With OTP plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.4.2. This is due to the plugin generating too weak OTP, and there’s no attempt or time limit. This makes it possible for unauthenticated attackers to generate and brute force the 6-digit numeric OTP that makes it possible to log in as any existing user on the site, such as an administrator, if they have access to the email.",
"external_references": [
{
"source_name": "cve",
"external_id": "CVE-2024-11178"
}
]
}
]
}
Loading

0 comments on commit 4b59cde

Please sign in to comment.