Month: April 2025

WordPress Ultimate Member SQL Injection – CVE-2024-1071

Vulnerable Version versions 2.1.3 to 2.8.2 Fixed Version version 2.8.3 Base Score 9.8 Critical                                                                         Vendor Description:- The Ultimate Member plugin for WordPress is aContinue readingWordPress Ultimate Member SQL Injection – CVE-2024-1071

RocketMQ Arbitrary File Write Vulnerability – CVE-2023-37582

Vulnerable Version versions RocketMQ 5.x and 4.x Fixed Version version to 5.1.2 and 4.9.7 Base Score 9.8 Critical                                                                         Vendor Description:- Apache RocketMQ is aContinue readingRocketMQ Arbitrary File Write Vulnerability – CVE-2023-37582