A vulnerability classified as problematic was found in TangibleWP Listivo Plugin up to 2.3.67 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation of the argument s leads to cross site scripting.
This vulnerability is known as CVE-2024-13867. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic has been found in rabilal JS Help Desk Plugin up to 2.8.8 on WordPress. Affected is an unknown function of the file /wp-content/uploads/jssupportticketdata of the component File Attachment Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-13606. It is possible to launch the attack remotely. There is no exploit available.
Palo Alto Networks has addressed a high-severity security flaw in its PAN-OS software that could result in an authentication bypass.
The vulnerability, tracked as CVE-2025-0108, carries a CVSS score of 7.8 out of 10.0. The score, however, drops to 5.1 if access to the management interface is restricted to a jump box.
"An authentication bypass in the Palo Alto Networks PAN-OS software enables an