ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-26559
An issue in uverif v.2.0 allows a remote attacker to obtain sensitive information.

An issue in uverif v.2.0 allows a remote attacker to obtain sensitive information.

NVD description · AI analysis pending
5.3<1% PoC
  • dagg uverif
CVE-2023-30779
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Jonathan Daggerhart Query Wrangler plugin <= 1.5.51 versions.

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Jonathan Daggerhart Query Wrangler plugin <= 1.5.51 versions.

NVD description · AI analysis pending
6.1<1%
  • daggerheart query wrangler
CVE-2021-24214
The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in the login form, leading to a reflected C

The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in the login form, leading to a reflected Cross-Site Scripting issue. This issue does not require authentication and can be exploited with the default configuration.

NVD description · AI analysis pending
6.12% PoC
  • daggerhartlab openid connect generic client