A vulnerability classified as problematic has been found in MDx Plugin up to 2.0.3 on WordPress. This affects the function mdx_list_item of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-6639. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in B&R Industrial Automation Automation Runtime up to 6.0.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component SSL/TLS. The manipulation leads to inadequate encryption strength.
This vulnerability is handled as CVE-2024-5800. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in WP-FeedStats wp-cart-for-digital-products Plugin up to 8.5.5 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-6134. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in smub Easy Digital Downloads Plugin up to 3.3.2 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation of the argument Agreement Text leads to cross site scripting.
This vulnerability is traded as CVE-2024-6692. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in smub Easy Digital Downloads Plugin up to 3.3.2 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation of the argument currency leads to cross site scripting.
The identification of this vulnerability is CVE-2024-6691. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in B&R Industrial Automation Automation Runtime up to 6.0.1 and classified as critical. This vulnerability affects unknown code. The manipulation leads to insecure default initialization of resource.
This vulnerability was named CVE-2024-5801. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
Microsoft has disclosed an unpatched zero-day in Office that, if successfully exploited, could result in unauthorized disclosure of sensitive information to malicious actors.
The vulnerability, tracked as CVE-2024-38200 (CVSS score: 7.5), has been described as a spoofing flaw that affects the following versions of Office -
Microsoft Office 2016 for 32-bit edition and 64-bit editions
Microsoft