4.7
CVE-2024-47646 - WordPress Payflex Payment Gateway plugin <= 2.6.1 - Open Redirection vulnerability
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in tomlister Payflex Payment Gateway payflex-payment-gateway.This issue affects Payflex Payment Gateway: from n/a through <= 2.6.1.
5.9
CVE-2024-47647 - WordPress FAQ / Accordion / Docs β Helpie WordPress FAQ Accordion plugin plugin <= 1.27 - Cross Sitβ¦
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Essekia Helpie FAQ helpie-faq allows Stored XSS.This issue affects Helpie FAQ: from n/a through <= 1.27.
7.5
CVE-2024-47324 - WordPress WP Timeline plugin <= 3.6.7 - Local File Inclusion vulnerability
Path Traversal: '.../...//' vulnerability in Ex-Themes WP Timeline β Vertical and Horizontal timeline plugin wp-timelines.This issue affects WP Timeline β Vertical and Horizontal timeline plugin: from n/a through <= 3.6.7.
8.1
CVE-2024-47323 - WordPress WP Timeline plugin <= 3.6.7 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Ex-Themes WP Timeline β Vertical and Horizontal timeline plugin wp-timelines.This issue affects WP Timeline β Vertical and Horizontal timeline plugin: from n/a through <= 3.6.7.
8
CVE-2024-47319 - WordPress Bit Form plugin <= 2.13.10 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in Bit Apps Bit Form bit-form.This issue affects Bit Form: from n/a through <= 2.13.10.
4.3
CVE-2024-47316 - WordPress Salon Booking Wordpress Plugin plugin <= 10.9 - Insecure Direct Object References (IDOR) β¦
Authorization Bypass Through User-Controlled Key vulnerability in Dimitri Grassi Salon booking system salon-booking-system.This issue affects Salon booking system: from n/a through <= 10.9.
6.6
CVE-2024-47309 - WordPress Cities Shipping Zones for WooCommerce plugin <= 1.2.7 - Local File Inclusion vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Condless Cities Shipping Zones for WooCommerce cities-shipping-zones-for-woocommerce allows PHP Local File Inclusion.This issue affects Cities Shipping Zones for WooCommerce: from n/a through <= 1.2.7.
7.5
CVE-2024-44034 - WordPress WPSPX plugin <= 1.0.2 - Local File Inclusion vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Martin Greenwood WPSPX wpspx allows PHP Local File Inclusion.This issue affects WPSPX: from n/a through <= 1.0.2.
8.1
CVE-2024-44023 - WordPress ABCApp Creator plugin <= 1.1.2 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in abcapp ABCApp Creator abcapp-creator.This issue affects ABCApp Creator: from n/a through <= 1.1.2.
7.5
CVE-2024-44018 - WordPress Instant Chat WP plugin <= 1.0.5 - Local File Inclusion vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in istmoplugins Instant Chat Floating Button for WordPress Websites instant-chat-wp allows PHP Local File Inclusion.This issue affects Instant Chat Floating Button for WordPress Websites: from n/a through <β¦