Scribble Maps Plugin up to 1.2 on WordPress Parameter ~/includes/admin.php map cross site scripting

A vulnerability was found in Scribble Maps Plugin up to 1.2 on WordPress (WordPress Plugin). It has been classified as problematic. Affected is some unknown processing of the file ~/includes/admin.php of the component Parameter Handler. Applying a patch is able to eliminate this problem. The bugfix is ready for download at plugins.trac.wordpress.org.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-4129 : SNOW SOFTWARE SNOW LICENSE MANAGER UP TO 9.34.0 ON WINDOWS ACTIVE DIRECTORY AUTHENTICATION IMPROPER AUTHENTICATION

CVE-2024-4129 : SNOW SOFTWARE SNOW LICENSE MANAGER UP TO 9.34.0 ON WINDOWS ACTIVE DIRECTORY AUTHENTICATION IMPROPER AUTHENTICATION

Description Improper Authentication vulnerability in Snow Software AB Snow License Manager on Windows allows a networked attacker to perform an

CVE-2024-34515 : SPATIE IMAGE-OPTIMIZER UP TO 1.7.2 PHAR DESERIALIZATION FILE_EXISTS DESERIALIZATION

CVE-2024-34515 : SPATIE IMAGE-OPTIMIZER UP TO 1.7.2 PHAR DESERIALIZATION FILE_EXISTS DESERIALIZATION

Description image-optimizer before 1.7.3 allows PHAR deserialization, e.g., the phar:// protocol in arguments to file_exists(). References https://github.com/spatie/image-optimizer/issues/210 https://github.com/spatie/image-optimizer/compare/1.7.2…1.7.3 https://github.com/spatie/image-optimizer/pull/211 For

CVE-2024-32638 : APACHE APISIX 3.8.0/3.9.0 FORWARD-AUTH PLUGIN REQUEST SMUGGLING

CVE-2024-32638 : APACHE APISIX 3.8.0/3.9.0 FORWARD-AUTH PLUGIN REQUEST SMUGGLING

Description Inconsistent Interpretation of HTTP Requests (‘HTTP Request Smuggling’) vulnerability in Apache APISIX when using `forward-auth` plugin. This issue affects