Medium - CVE-2024-11904 - The ???? ??? plugin for WordPress is vulnerable...
The ???? ??? plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'msntt_add_plus_talk' shortcode in all versions up to, and including, 1.2.0 due to...
Medium - CVE-2024-11943 - The ????? ?? ???? – ???? ?? ???? plugin for...
The ????? ?? ???? – ???? ?? ???? plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to,...
Medium - CVE-2024-12026 - The Message Filter for Contact Form 7 plugin...
The Message Filter for Contact Form 7 plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the saveFilter() function in all versions up to,...
Medium - CVE-2024-12115 - The Poll Maker – Versus Polls, Anonymous Polls,...
The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.5.4. This is due to missing or...
Medium - CVE-2024-12165 - The Mollie for Contact Form 7 plugin for...
The Mollie for Contact Form 7 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 5.0.0 due to insufficient...
Medium - CVE-2024-12166 - The Shortcodes Blocks Creator Ultimate plugin...
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 2.2.0 due to...
Medium - CVE-2024-12167 - The Shortcodes Blocks Creator Ultimate plugin...
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '_wpnonce' parameter in all versions up to, and including, 2.2.0 due to...
Medium - CVE-2024-12257 - The CardGate Payments for WooCommerce plugin...
The CardGate Payments for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 3.2.1 due to...
Medium - CVE-2024-7894 - The If Menu plugin for WordPress is vulnerable...
The If Menu plugin for WordPress is vulnerable to unauthorized modification of the plugin's license key due to a missing capability check on the 'actions' function in versions up to,...
Medium - CVE-2024-8679 - The Library Management System – Manage...
The Library Management System – Manage e-Digital Books Library plugin for WordPress is vulnerable to SQL Injection via the ‘value' parameter of the owt_lib_handler AJAX action in all versions...