0.0

CVE-2024-49681 - WordPress WP Sessions Time Monitoring Full Automatic plugin <= 1.0.9 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in activity-log.com WP Sessions Time Monitoring Full Automatic activitytime allows SQL Injection.This issue affects WP Sessions Time Monitoring Full Automatic: from n/a through <= 1.0.9.

๐Ÿ“… Published: Oct. 24, 2024, 12:09 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:18 p.m.

0.0

CVE-2024-49691 - WordPress Product Filter by WBW plugin <= 2.7.0 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW Plugins Product Filter by WBW woo-product-filter allows SQL Injection.This issue affects Product Filter by WBW: from n/a through <= 2.7.0.

๐Ÿ“… Published: Oct. 24, 2024, 12:06 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:18 p.m.

8.3

CVSS3.1

CVE-2024-5608 - SQL Injection

Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature.

๐Ÿ“… Published: Oct. 24, 2024, 11:42 a.m. ๐Ÿ”„ Last Modified: Nov. 26, 2024, 1:42 a.m.

0.0

CVE-2024-49683 - WordPress Schema & Structured Data for WP & AMP plugin <= 1.3.5 - Sensitive Data Exposure vulnerabiโ€ฆ

Missing Authorization vulnerability in Magazine3 Schema & Structured Data for WP & AMP schema-and-structured-data-for-wp allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Schema & Structured Data for WP & AMP: from n/a through <= 1.3.5.

๐Ÿ“… Published: Oct. 24, 2024, 11:37 a.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:18 p.m.

6.1

CVSS3.1

CVE-2024-49682 - WordPress Simple Membership plugin <= 4.5.3 - Open Redirection vulnerability

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in wp.insider Simple Membership simple-membership allows Phishing.This issue affects Simple Membership: from n/a through <= 4.5.3.

๐Ÿ“… Published: Oct. 24, 2024, 11:36 a.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:18 p.m.

6.4

CVSS3.1

CVE-2024-8959 - WP Adminify โ€“ Best WordPress Custom Dashboard Plugin <= 4.0.1.6 - Authenticated (Author+) Stored Crโ€ฆ

The WP Adminify โ€“ Custom WordPress Dashboard, Login and Admin Customizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 4.0.1.6 due to insufficient input sanitization and output escaping. This makes it possible for authenโ€ฆ

๐Ÿ“… Published: Oct. 24, 2024, 11:34 a.m. ๐Ÿ”„ Last Modified: April 8, 2026, 4:58 p.m.

6.4

CVSS3.1

CVE-2024-10176 - Compact WP Audio Player <= 1.9.13 - Authenticated (Contributor+) Stored Cross-Site Scripting via scโ€ฆ

The Compact WP Audio Player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's sc_embed_player shortcode in all versions up to, and including, 1.9.13 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for โ€ฆ

๐Ÿ“… Published: Oct. 24, 2024, 11:03 a.m. ๐Ÿ”„ Last Modified: April 8, 2026, 5:18 p.m.

6.1

CVSS3.1

CVE-2024-9214 - Extra Product Options Builder for WooCommerce <= 1.2.133 - Unauthenticated Stored Cross-Site Scriptโ€ฆ

The Extra Product Options Builder for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'RednaoSerializedFields' parameter during the creation of a signature file in all versions up to, and including, 1.2.133 due to insufficient input sanitization and output escaโ€ฆ

๐Ÿ“… Published: Oct. 24, 2024, 11:03 a.m. ๐Ÿ”„ Last Modified: April 8, 2026, 4:34 p.m.

6.5

CVSS3.1

CVE-2024-9650 - WP Recipe Maker <= 9.6.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'โ€ฆ

The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the โ€˜tooltipโ€™ parameter in all versions up to, and including, 9.6.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level accessโ€ฆ

๐Ÿ“… Published: Oct. 24, 2024, 11:03 a.m. ๐Ÿ”„ Last Modified: April 8, 2026, 4:34 p.m.

0.0

CVE-2024-10339 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

๐Ÿ“… Published: Oct. 24, 2024, 11:01 a.m. ๐Ÿ”„ Last Modified: Feb. 19, 2025, 11:15 p.m.
Total resulsts: 343749
Page 7613 of 34,375
ยซ previous page ยป next page
Filters