Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Amine Sajid

#20454of 53,779
12.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2025-1768
6.5
2025-01-30
Unknown · Goodlayers-Core · CVE-2024-12163
**Name of the Vulnerable Software and Affected Versions** goodlayers-core versions prior to 2.1.3 **Description** The issue allows users with a subscriber role or above to upload SVG files that contain malicious payloads. This can be exploited by uploading SVGs with harmful content. **Recommendations** goodlayers-core versions prior to 2.1.3: Update to version 2.1.3 or later to resolve the issue.
PT-2025-1699
6.1
2025-01-01
Goodlayers · Travel Tour · CVE-2024-11846
**Name of the Vulnerable Software and Affected Versions** No specific software or versions are mentioned in the provided descriptions. **Description** The issue is related to a Reflected Cross-Site Scripting problem, where a parameter is not properly sanitized and escaped before being outputted back in the page. This could be used against high-privilege users, such as admins. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.