ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2023-30453
The Teamlead Reminder plugin through 2.6.5 for Jira allows persistent XSS via the message parameter.

The Teamlead Reminder plugin through 2.6.5 for Jira allows persistent XSS via the message parameter.

NVD description · AI analysis pending
5.4<1%
  • teamlead reminder
CVE-2021-30134
php-mod/curl (a wrapper of the PHP cURL extension) before 2.3.2 allows XSS via the post_file_path_upload.php key parameter and the POST data to post_multidimens

php-mod/curl (a wrapper of the PHP cURL extension) before 2.3.2 allows XSS via the post_file_path_upload.php key parameter and the POST data to post_multidimensional.php.

NVD description · AI analysis pending
6.11% PoC
  • php curl class project php curl class
  • php curl class project ht slider range for amazon affiliates
  • php curl class project woo-qiwi-payment-gateway
  • +1 more
CVE-2021-24684
The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command

The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command Injection when invoking Ghostscript.

NVD description · AI analysis pending
8.84% PoC
  • teamlead pdf-light-viewer