5.3

CVSS3.1

CVE-2024-13318 - Essential WP Real Estate <= 1.1.3 - Missing Authorization to Arbitrary Post/Page Deletion

The Essential WP Real Estate plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cl_delete_listing_func() function in all versions up to, and including, 1.1.3. This makes it possible for unauthenticated attackers to delete arbitrary pages and posts.

πŸ“… Published: Jan. 10, 2025, 11:10 a.m. πŸ”„ Last Modified: April 8, 2026, 4:58 p.m.

6.4

CVSS3.1

CVE-2024-13183 - Orbit Fox by ThemeIsle <= 2.10.43 - Authenticated (Contributor+) Stored Cross-Site Scripting via ti…

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜title_tag’ parameter in all versions up to, and including, 2.10.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-l…

πŸ“… Published: Jan. 10, 2025, 7:21 a.m. πŸ”„ Last Modified: April 8, 2026, 5:24 p.m.

6.4

CVSS3.1

CVE-2025-0311 - Orbit Fox by ThemeIsle <= 2.10.43 - Authenticated (Contributor+) Stored Cross-Site Scripting via Pr…

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Pricing Table widget in all versions up to, and including, 2.10.43 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authent…

πŸ“… Published: Jan. 10, 2025, 6:43 a.m. πŸ”„ Last Modified: April 8, 2026, 5:11 p.m.

6.5

CVSS3.1

CVE-2024-12473 - AI Scribe – SEO AI Writer, Content Generator, Humanizer, Blog Writer, SEO Optimizer, DALLE-3, AI Wo…

The AI Scribe – SEO AI Writer, Content Generator, Humanizer, Blog Writer, SEO Optimizer, DALLE-3, AI WordPress Plugin ChatGPT (GPT-4o 128K) plugin for WordPress is vulnerable to SQL Injection via the 'template_id' parameter of the 'article_builder_generate_data' shortcode in all versions up to, and…

πŸ“… Published: Jan. 10, 2025, 3:21 a.m. πŸ”„ Last Modified: April 8, 2026, 6:19 p.m.

4.3

CVSS3.1

CVE-2024-12606 - AI Scribe – SEO AI Writer, Content Generator, Humanizer, Blog Writer, SEO Optimizer, DALLE-3, AI Wo…

The AI Scribe – SEO AI Writer, Content Generator, Humanizer, Blog Writer, SEO Optimizer, DALLE-3, AI WordPress Plugin ChatGPT (GPT-4o 128K) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the engine_request_data() function in all versions…

πŸ“… Published: Jan. 10, 2025, 3:21 a.m. πŸ”„ Last Modified: April 8, 2026, 6:19 p.m.

7.4

CVSS3.1

CVE-2024-54848 -

Improper handling and storage of certificates in CP Plus CP-VNR-3104 B3223P22C02424 allow attackers to decrypt communications or execute a man-in-the-middle attacks.

πŸ“… Published: Jan. 10, 2025, midnight πŸ”„ Last Modified: Oct. 2, 2025, 4:59 p.m.

4.7

CVSS3.1

CVE-2024-33297 -

Cross Site Scripting vulnerability in Microweber v.2.0.9 allows a remote attacker to execute arbitrary code via the campaign Name (Internal Name) field in the Add new campaign function

πŸ“… Published: Jan. 10, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 12:40 a.m.

6.1

CVSS3.1

CVE-2025-23112 -

An issue was discovered in REDCap 14.9.6. A stored cross-site scripting (XSS) vulnerability allows authenticated users to inject malicious scripts into the Survey field name of Survey. When a user receive the survey, if he clicks on the field name, it triggers the XSS payload.

πŸ“… Published: Jan. 10, 2025, midnight πŸ”„ Last Modified: Feb. 25, 2025, 4:14 p.m.

9.8

CVSS3.1

CVE-2025-22946 -

Tenda ac9 v1.0 firmware v15.03.05.19 contains a stack overflow vulnerability in /goform/SetOnlineDevName, which may lead to remote arbitrary code execution.

πŸ“… Published: Jan. 10, 2025, midnight πŸ”„ Last Modified: April 9, 2025, 6:35 p.m.

6.1

CVSS3.1

CVE-2024-50807 -

Trippo Responsive Filemanager 9.14.0 is vulnerable to Cross Site Scripting (XSS) via file upload using the svg and pdf extensions.

πŸ“… Published: Jan. 10, 2025, midnight πŸ”„ Last Modified: April 16, 2025, 8:45 p.m.
Total resulsts: 343757
Page 6648 of 34,376
Β« previous page Β» next page
Filters