Page(s) : 1 ... 241 242 243 244 245 246 247 248 249 250 [251] 252 253 254 255 256 257 258 259 260 261 ... | Result(s) : 324546 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
N/A | 2025-05-15 | CVE-2024-11372 | cve | The Connexion Logs WordPress plugin through 3.0.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks |
N/A | 2025-05-15 | CVE-2024-11373 | cve | The Connexion Logs WordPress plugin through 3.0.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them... |
N/A | 2025-05-15 | CVE-2024-11502 | cve | The Planning Center Online Giving WordPress plugin through 1.0.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where t... |
N/A | 2025-05-15 | CVE-2024-11718 | cve | The tarteaucitron-wp WordPress plugin before 0.3.0 allows author level and above users to add HTML into a post/page, which could allow users with the contributor role and above ... |
N/A | 2025-05-15 | CVE-2024-11719 | cve | The tarteaucitron-wp WordPress plugin before 0.3.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make ... |
N/A | 2025-05-15 | CVE-2024-11843 | cve | The Panorama WordPress plugin through 1.5.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site... |
N/A | 2025-05-15 | CVE-2024-12282 | cve | The WordPress???? WordPress plugin through 2.5.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make lo... |
N/A | 2025-05-15 | CVE-2024-12301 | cve | The JSP Store Locator WordPress plugin through 1.0 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSR... |
N/A | 2025-05-15 | CVE-2024-12679 | cve | The Prisna GWT WordPress plugin before 1.4.14 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Si... |
N/A | 2025-05-15 | CVE-2024-12680 | cve | The Prisna GWT WordPress plugin before 1.4.14 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Si... |
N/A | 2025-05-15 | CVE-2024-12716 | cve | The Simple Basic Contact Form WordPress plugin before 20250114 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform... |
N/A | 2025-05-15 | CVE-2024-12722 | cve | The Twitter Bootstrap Collapse aka Accordian Shortcode WordPress plugin through 1.0 does not validate and escape some of its shortcode attributes before outputting them back in ... |
N/A | 2025-05-15 | CVE-2024-12724 | cve | The WP DeskLite WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which... |
N/A | 2025-05-15 | CVE-2024-12725 | cve | The Clasify Classified Listing WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site S... |
N/A | 2025-05-15 | CVE-2024-12726 | cve | The ClipArt WordPress plugin through 0.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could ... |
N/A | 2025-05-15 | CVE-2024-12732 | cve | The AffiliateImporterEb WordPress plugin through 1.0.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scriptin... |
N/A | 2025-05-15 | CVE-2024-12733 | cve | The AffiliateImporterEb WordPress plugin through 1.0.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scriptin... |
N/A | 2025-05-15 | CVE-2024-12734 | cve | The Advance Post Prefix WordPress plugin through 1.1.1, Advance Post Prefix WordPress plugin through 1.1.1 does not sanitise and escape a parameter before outputting it back in ... |
N/A | 2025-05-15 | CVE-2024-12735 | cve | The Advance Post Prefix WordPress plugin through 1.1.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins and above to perform SQL inje... |
N/A | 2025-05-15 | CVE-2024-12739 | cve | The Mobile Contact Bar WordPress plugin before 3.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cr... |
Page(s) : 1 ... 241 242 243 244 245 246 247 248 249 250 [251] 252 253 254 255 256 257 258 259 260 261 ... | Result(s) : 324546 |