6.5

CVSS3.1

CVE-2024-43335 - WordPress Responsive Blocks – WordPress Gutenberg Blocks plugin <= 1.8.8 - Cross Site Scripting (XS…

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CyberChimps Responsive Blocks – WordPress Gutenberg Blocks allows Stored XSS.This issue affects Responsive Blocks – WordPress Gutenberg Blocks: from n/a through 1.8.8.

πŸ“… Published: Aug. 18, 2024, 1:39 p.m. πŸ”„ Last Modified: Sept. 13, 2024, 2:25 p.m.

7.1

CVSS3.1

CVE-2024-43238 - WordPress weMail plugin <= 1.14.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs weMail wemail allows DOM-Based XSS.This issue affects weMail: from n/a through <= 1.14.5.

πŸ“… Published: Aug. 18, 2024, 1:38 p.m. πŸ”„ Last Modified: April 23, 2026, 3:18 p.m.

5.9

CVSS3.1

CVE-2024-39666 - WordPress WooCommerce plugin <= 9.1.2 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Automattic WooCommerce.This issue affects WooCommerce: from n/a through 9.1.2.

πŸ“… Published: Aug. 18, 2024, 1:37 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2024-7906 - DedeBIZ Attachment Settings select_images_post.php get_mime_type unrestricted upload

A vulnerability classified as critical was found in DedeBIZ 6.3.0. This vulnerability affects the function get_mime_type of the file /admin/dialog/select_images_post.php of the component Attachment Settings. The manipulation of the argument upload leads to unrestricted upload. The attack can be ini…

πŸ“… Published: Aug. 18, 2024, 1:31 p.m. πŸ”„ Last Modified: Sept. 27, 2024, 5:54 p.m.

7.1

CVSS3.1

CVE-2024-43276 - WordPress Child Theme Creator by Orbisius plugin <= 1.5.4 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Svetoslav Marinov (Slavi) Child Theme Creator allows Reflected XSS.This issue affects Child Theme Creator: from n/a through 1.5.4.

πŸ“… Published: Aug. 18, 2024, 1:23 p.m. πŸ”„ Last Modified: Sept. 17, 2024, 8 p.m.

6.5

CVSS3.1

CVE-2024-43342 - WordPress Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Bu…

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Ultimate Store Kit Elementor Addons allows Stored XSS.This issue affects Ultimate Store Kit Elementor Addons: from n/a through 1.6.4.

πŸ“… Published: Aug. 18, 2024, 1:22 p.m. πŸ”„ Last Modified: Sept. 13, 2024, 2:11 p.m.

6.5

CVSS3.1

CVE-2024-43344 - WordPress Icegram Engage – Ultimate WP Popup Builder, Lead Generation, Optins, and CTA plugin <= 3.…

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Icegram allows Stored XSS.This issue affects Icegram: from n/a through 3.1.25.

πŸ“… Published: Aug. 18, 2024, 1:20 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-43346 - WordPress Modal Window – create popup modal window plugin <= 6.0.3 - Cross Site Scripting (XSS) vul…

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wow-Company Modal Window allows Stored XSS.This issue affects Modal Window: from n/a through 6.0.3.

πŸ“… Published: Aug. 18, 2024, 1:18 p.m. πŸ”„ Last Modified: July 10, 2025, 3:40 p.m.

5.9

CVSS3.1

CVE-2024-43347 - WordPress Button contact VR plugin <= 4.7.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in VirusTran Button contact VR allows Stored XSS.This issue affects Button contact VR: from n/a through 4.7.3.

πŸ“… Published: Aug. 18, 2024, 1:17 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS3.1

CVE-2024-43348 - WordPress Purity Of Soul theme <= 1.9 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Iznyn Purity Of Soul allows Reflected XSS.This issue affects Purity Of Soul: from n/a through 1.9.

πŸ“… Published: Aug. 18, 2024, 1:15 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 8812 of 34,919
Β« previous page Β» next page
Filters