7.1

CVSS3.1

CVE-2024-34752 - WordPress Landing Page Builder <= 1.5.1.8 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PluginOps Landing Page Builder allows Reflected XSS.This issue affects Landing Page Builder: from n/a through 1.5.1.8.

๐Ÿ“… Published: May 17, 2024, 6:01 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-3580 - Popup4Phone <= 1.3.2 - Editor+ Stored XSS

The Popup4Phone WordPress plugin through 1.3.2 does not sanitise and escape some of its settings, which could allow high privilege users such as Editor to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

๐Ÿ“… Published: May 17, 2024, 6 a.m. ๐Ÿ”„ Last Modified: May 30, 2025, 4:10 p.m.

6.1

CVSS3.1

CVE-2024-3231 - Popup4Phone <= 1.3.2 - Unauthenticated Stored XSS

The Popup4Phone WordPress plugin through 1.3.2 does not sanitise and escape some parameters, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.

๐Ÿ“… Published: May 17, 2024, 6 a.m. ๐Ÿ”„ Last Modified: May 30, 2025, 4:09 p.m.

4.3

CVSS3.1

CVE-2024-2744 - Nextgen Gallery < 3.59.1 - Admin+ Stored XSS

The NextGEN Gallery WordPress plugin before 3.59.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

๐Ÿ“… Published: May 17, 2024, 6 a.m. ๐Ÿ”„ Last Modified: May 21, 2025, 6:58 p.m.

6.5

CVSS3.1

CVE-2024-2697 - Swift Framework < 2024.0.0 - Contributor+ Stored XSS via Shortcode

The socialdriver-framework WordPress plugin before 2024.0.0 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against higโ€ฆ

๐Ÿ“… Published: May 17, 2024, 6 a.m. ๐Ÿ”„ Last Modified: June 30, 2025, 5:58 p.m.

6.5

CVSS3.1

CVE-2024-34757 - WordPress Borderless plugin <= 1.7.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Visualmodo Borderless borderless allows DOM-Based XSS.This issue affects Borderless: from n/a through <= 1.7.3.

๐Ÿ“… Published: May 17, 2024, 5:59 a.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:18 p.m.

9.8

CVSS3.1

CVE-2024-3551 - Penci Soledad Data Migrator <= 1.3.0 - Unauthenticated Local File Inclusion

The Penci Soledad Data Migrator plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.3.0 via the 'data' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any Pโ€ฆ

๐Ÿ“… Published: May 17, 2024, 2:03 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2023-52675 - powerpc/imc-pmu: Add a null pointer check in update_events_in_group()

In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Add a null pointer check in update_events_in_group() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.

๐Ÿ“… Published: May 17, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 7:41 a.m.

5.5

CVSS3.1

CVE-2024-35794 - dm-raid: really frozen sync_thread during suspend

In the Linux kernel, the following vulnerability has been resolved: dm-raid: really frozen sync_thread during suspend 1) commit f52f5c71f3d4 ("md: fix stopping sync thread") remove MD_RECOVERY_FROZEN from __md_stop_writes() and doesn't realize that dm-raid relies on __md_stop_writes() to frโ€ฆ

๐Ÿ“… Published: May 17, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 26, 2025, 4:20 p.m.

5.5

CVSS3.1

CVE-2023-52658 - Revert "net/mlx5: Block entering switchdev mode with ns inconsistency"

In the Linux kernel, the following vulnerability has been resolved: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency" This reverts commit 662404b24a4c4d839839ed25e3097571f5938b9b. The revert is required due to the suspicion it is not good for anything and cause crash.

๐Ÿ“… Published: May 17, 2024, midnight ๐Ÿ”„ Last Modified: March 17, 2026, 5:25 p.m.
Total resulsts: 349182
Page 9805 of 34,919
ยซ previous page ยป next page
Filters