NA - CVE-2024-9368 - The Aggregator Advanced Settings plugin for...
The Aggregator Advanced Settings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.1 due to insufficient input...
Medium - CVE-2024-9372 - The WP Blocks Hub plugin for WordPress is...
The WP Blocks Hub plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.2 due to insufficient input sanitization and...
Medium - CVE-2024-9375 - The WordPress Captcha Plugin by Captcha Bank...
The WordPress Captcha Plugin by Captcha Bank plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all...
Medium - CVE-2024-9384 - The Quantity Dynamic Pricing & Bulk Discounts...
The Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on...
Medium - CVE-2024-9421 - The Login Logout Shortcode plugin for WordPress...
The Login Logout Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'class' parameter in all versions up to, and including, 1.1.0 due to insufficient...
Medium - CVE-2024-9445 - The Display Medium Posts plugin for WordPress...
The Display Medium Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's display_medium_posts shortcode in all versions up to, and including, 5.0.1 due to...
NA - CVE-2024-47854 - A vulnerability was discovered in Veritas Data...
A vulnerability was discovered in Veritas Data Insight before 7.1. It allows a remote attacker to inject an arbitrary web script into an HTTP request that could reflect back to an authenticated...