NA - CVE-2024-6634 - The Master Currency WP plugin for WordPress is...
The Master Currency WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's currencyconverterform shortcode in all versions up to, and including, 1.1.61 due to...
Medium - CVE-2024-6661 - The ParityPress – Parity Pricing with Discount...
The ParityPress – Parity Pricing with Discount Rules plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'Discount Text' in all versions up to, and including, 1.0.0 due...
NA - CVE-2024-42029 - xdg-desktop-portal-hyprland (aka an XDG Desktop...
xdg-desktop-portal-hyprland (aka an XDG Desktop Portal backend for Hyprland) before 1.3.3 allows OS command execution, e.g., because single quotes are not used when sending a list of app IDs and...
Medium - CVE-2024-5969 - The AIomatic - Automatic AI Content Writer for...
The AIomatic - Automatic AI Content Writer for WordPress is vulnerable to arbitrary email sending vulnerability in versions up to, and including, 2.0.5. This is due to insufficient limitations on...
Medium - CVE-2024-6458 - The WooCommerce Product Table Lite plugin for...
The WooCommerce Product Table Lite plugin for WordPress is vulnerable to unauthorized post title modification due to a missing capability check on the wcpt_presets__duplicate_preset_to_table...
Medium - CVE-2024-6569 - The Campaign Monitor for WordPress plugin for...
The Campaign Monitor for WordPress plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.8.15. This is due the plugin not properly restricting direct...
Medium - CVE-2024-5614 - The Piotnet Addons For Elementor plugin for...
The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.29 via the 'pafe_posts_list' function. This...
Medium - CVE-2024-6518 - The Contact Form Plugin by Fluent Forms for...
The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including,...
Medium - CVE-2024-6520 - The Contact Form Plugin by Fluent Forms for...
The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including,...
Medium - CVE-2024-6521 - The Contact Form Plugin by Fluent Forms for...
The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including,...