7.1

CVSS3.1

CVE-2024-56265 - WordPress WooCommerce - PDF Vouchers plugin < 4.9.9 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpweb WooCommerce PDF Vouchers woocommerce-pdf-vouchers allows Reflected XSS.This issue affects WooCommerce PDF Vouchers: from n/a through < 4.9.9.

๐Ÿ“… Published: Dec. 31, 2024, 10:14 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

4.3

CVSS3.1

CVE-2024-56218 - WordPress Contact Form 7 - Dynamic Text Extension plugin <= 5.0.1 - Cross Site Request Forgery (CSRโ€ฆ

Cross-Site Request Forgery (CSRF) vulnerability in sevenspark Contact Form 7 โ€“ Dynamic Text Extension contact-form-7-dynamic-text-extension allows Cross Site Request Forgery.This issue affects Contact Form 7 โ€“ Dynamic Text Extension: from n/a through <= 5.0.1.

๐Ÿ“… Published: Dec. 31, 2024, 10:12 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

5.4

CVSS3.1

CVE-2024-56222 - WordPress CodeBard Help Desk plugin <= 1.1.1 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in CodeBard CodeBard Help Desk codebard-help-desk allows Cross Site Request Forgery.This issue affects CodeBard Help Desk: from n/a through <= 1.1.1.

๐Ÿ“… Published: Dec. 31, 2024, 10:07 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

4.3

CVSS3.1

CVE-2024-56229 - WordPress SearchIQ plugin <= 4.6 - Cross-Site Requst Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in SearchIQ SearchIQ searchiq.This issue affects SearchIQ: from n/a through <= 4.6.

๐Ÿ“… Published: Dec. 31, 2024, 10:06 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

7.1

CVSS3.1

CVE-2024-56232 - WordPress WP Nice Loader plugin <= 0.1.0.4 - CSRF to Stored XSS vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Alex Volkov WP Nice Loader wp-nice-loader allows Stored XSS.This issue affects WP Nice Loader: from n/a through <= 0.1.0.4.

๐Ÿ“… Published: Dec. 31, 2024, 10:05 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

9.8

CVSS3.1

CVE-2024-56220 - WordPress SSL Wireless SMS Notification plugin <= 3.6.0 - Privilege Escalation vulnerability

Incorrect Privilege Assignment vulnerability in sslplugins SSL Wireless SMS Notification ssl-wireless-sms-notification allows Privilege Escalation.This issue affects SSL Wireless SMS Notification: from n/a through <= 3.6.0.

๐Ÿ“… Published: Dec. 31, 2024, 10:05 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

8.5

CVSS3.1

CVE-2024-56212 - WordPress UserPro plugin <= 5.1.9 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= 5.1.9.

๐Ÿ“… Published: Dec. 31, 2024, 10:04 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

8.8

CVSS3.1

CVE-2024-56211 - WordPress UserPro plugin <= 5.1.9 - Authenticated Arbitrary User Meta Update vulnerability

Missing Authorization vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= 5.1.9.

๐Ÿ“… Published: Dec. 31, 2024, 10:03 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

6.5

CVSS3.1

CVE-2024-56213 - WordPress Eventin plugin <= 4.0.7 - Contributor+ Limited Local File Inclusion vulnerability

Path Traversal: '.../...//' vulnerability in Arraytics Eventin wp-event-solution allows Path Traversal.This issue affects Eventin: from n/a through <= 4.0.7.

๐Ÿ“… Published: Dec. 31, 2024, 10:02 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.

8.3

CVSS3.1

CVE-2024-56214 - WordPress UserPro plugin <= 5.1.9 - Local File Inclusion vulnerability

Path Traversal: '.../...//' vulnerability in DeluxeThemes Userpro userpro allows Path Traversal.This issue affects Userpro: from n/a through <= 5.1.9.

๐Ÿ“… Published: Dec. 31, 2024, 10:01 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 1:58 p.m.
Total resulsts: 346142
Page 7022 of 34,615
ยซ previous page ยป next page
Filters