Wordfence Intelligence Weekly WordPress Vulnerability Report (December 9, 2024 to December 15, 2024)

💥 Time to wrap up this year and kick-off the new year with a bang! We’re wrapping up the year with our End of Year Holiday ExtravaganzaHigh-Risk Bonus Blitz Challenge, and Superhero Challenge for the Wordfence Bug Bounty Program. Through January 6th, 2025:

  • All in-scope vulnerability types for WordPress plugins/themes with >= 1,000 active installations are in-scope for ALL researchers
  • All plugins and themes with 50-999 active installs hosted in the WordPress.org repository and updated within the last 2 years are in-scope for all researchers!
  • All plugins and themes hosted in the WordPress.org repository with any install count are in scope for our preset list of high threat vulnerabilities.
  • $150 bonus awarded when a researcher submits at least 15 valid high threat vulnerabilities, and then a $50 bonus awarded for every 5 submitted thereafter.
  • Minimum bounty of $5 for all valid in-scope submissions.
  • All researchers earn automatic bonuses of between 5% to 180% for valid submissions
  • Pending report limits are increased for all
  • It’s possible to earn up to $31,200 for high impact vulnerabilities!

Last week, there were 369 vulnerabilities disclosed in 343 WordPress Plugins and 8 WordPress Themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 72 Vulnerability Researchers that contributed to WordPress Security last week. Review those vulnerabilities in this report now to ensure your site is not affected.

Our mission with Wordfence Intelligence is to make valuable vulnerability information easily accessible to everyone, like the WordPress community, so individuals and organizations alike can utilize that data to make the internet more secure. That is why the Wordfence Intelligence user interface, vulnerability API, webhook integration, and Wordfence CLI Vulnerability Scanner are all completely free to access and utilize both personally and commercially, and why we are running this weekly vulnerability report.

Enterprises, Hosting Providers, and even Individuals can use the Wordfence CLI Vulnerability Scanner to run regular vulnerability scans across the sites they protect. Or alternatively, utilize the vulnerability Database API to receive a complete dump of our database of over 21,000 vulnerabilities and then utilize the webhook integration to stay on top of the newest vulnerabilities added in real-time, as well as any updates made to the database, all for free.

Click here to sign-up for our mailing list to receive weekly vulnerability reports like this and important WordPress Security reports in your inbox the moment they are published.


New Firewall Rules Deployed Last Week

The Wordfence Threat Intelligence Team reviews each vulnerability to determine impact and severity, along with assessing the likelihood of exploitation, to verify that the Wordfence Firewall provides sufficient protection.

The team rolled out enhanced protection via firewall rules for the following vulnerabilities in real-time to our PremiumCare, and Response customers last week:

Wordfence PremiumCare, and Response customers received this protection immediately, while users still running the free version of Wordfence will receive this enhanced protection after a 30 day delay.


Total Unpatched & Patched Vulnerabilities Last Week

Patch Status Number of Vulnerabilities
Patched 181
Unpatched 188


Total Vulnerabilities by CVSS Severity Last Week

Severity Rating Number of Vulnerabilities
Low Severity 2
Medium Severity 292
High Severity 49
Critical Severity 26


Total Vulnerabilities by CWE Type Last Week

Vulnerability Type by CWE Number of Vulnerabilities
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') 155
Cross-Site Request Forgery (CSRF) 72
Missing Authorization 55
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 32
Exposure of Sensitive Information to an Unauthorized Actor 8
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') 8
Improper Control of Generation of Code ('Code Injection') 8
Authorization Bypass Through User-Controlled Key 6
Unrestricted Upload of File with Dangerous Type 5
Deserialization of Untrusted Data 4
Improper Privilege Management 4
Improper Access Control 3
Improper Authentication 2
Server-Side Request Forgery (SSRF) 2
Authentication Bypass Using an Alternate Path or Channel 1
Exposure of Private Personal Information to an Unauthorized Actor 1
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') 1
Path Traversal: '/../filedir' 1
Uncontrolled Resource Consumption 1


Researchers That Contributed to WordPress Security Last Week

Researcher Name Number of Vulnerabilities
66
28
25
18
18
15
13
11
10
9
8
7
7
7
7
Gab
6
6
6
6
5
4
4
3
3
3
3
3
3
3
3
3
2
2
2
2
2
2
2
2
2
2
2
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
cc
1
1
1
1
1
1
1
1
1
1
1
1

Are you a security researcher who would like to be featured in our weekly vulnerability report? You can responsibly disclose your WordPress vulnerability discoveries to us and earn a bounty on in-scope vulnerabilities through our Bug Bounty Program. Responsibly disclosing your vulnerability discoveries to us will also get your name added on the Wordfence Intelligence leaderboard along with being mentioned in our weekly vulnerability report.


WordPress Plugins with Reported Vulnerabilities Last Week

Software Name Software Slug
360 Javascript Viewer 360deg-javascript-viewer
3D Avatar User Profile 3d-avatar-user-profile
Accept Stripe Payments Using Contact Form 7 accept-stripe-payments-using-contact-form-7
Active Products Tables for WooCommerce. Use constructor to create tables  profit-products-tables-for-woocommerce
Add image to Post add-image-to-post
Add infos to The Events Calendar add-infos-to-the-events-calendar
addWeather myweather
Admin Customization wpp-customization
Advance Menu Manager advance-menu-manager
Advanced Blog Post Block advanced-blog-post-block
Advanced Data Table For Elementor advanced-data-table-for-elementor
Advanced Fancybox advanced-fancybox
Advanced What should we write next about advanced-what-should-we-write-about-next
AI Content Writer, RSS Feed to Post, Autoblogging SEO Help seo-help
AI Post Generator | AutoWriter ai-post-generator
AIcomments – комментарии и отзывы ChatGPT aicomments
AIKCT Engine Chatbot, ChatGPT, Gemini, GPT-4o Best AI Chatbot ai-seo-translator
Amazon Product Price amazon-product-price
Analytics Cat – Google Analytics Made Easy analytics-cat
Aphorismus aphorismus
AppMaps appmaps
Appsplate appsplate
AR for WordPress ar-for-wordpress
Arabic Webfonts arabic-webfonts
Arena.IM – Live Blogging for real-time events arena-liveblog-and-chat-tool
AutoWP – AI Content Writer & Rewriter autowp-ai-content-writer-rewriter
Awesome Support – WordPress HelpDesk & Support Plugin awesome-support
Axeptio – Cookie Banner – GDPR Consent & Compliance with a friendly touch axeptio-sdk-integration
Banner System banner-system
Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. barcode-scanner-lite-pos-to-manage-products-inventory-and-orders
Beaver Builder – WordPress Page Builder beaver-builder-lite-version
Bet sport Free bet-sport-free
Better WP Login Page better-wp-login-page
bodi0`s Easy cache bodi0s-easy-cache
Bold Page Builder bold-page-builder
Booking System Trafft booking-system-trafft
Bootstrap Buttons bootstrap-buttons
BP Email Assign Templates bp-email-assign-templates
Buk for WordPress buk-appointments
Bukza bukza
Caldera SMTP Mailer caldera-smtp-mailer
Car Dealer (Dealership) and Vehicle sales cardealer
CarDealerPress cardealerpress
Catch Popup catch-popup
Category of Posts list-one-category-of-posts
CE21 Suite ce21-suite
Check Pincode For Woocommerce check-pincode-for-woocommerce
Child Theme Creator by Orbisius orbisius-child-theme-creator
CK and SyntaxHighlighter ck-and-syntaxhighlighter
CleverNode Related Content clevernode-related-content
CM Answers – Powerful WordPress Forum Plugin cm-answers
Code Generator Pro code-generator-pro
Cognito Forms cognito-forms
Comments On Feed comments-on-feed
Companion Portfolio – Responsive Portfolio Plugin companion-portfolio
Connatix Video Embed connatix-video-embed
Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) : WP Cookie Consent gdpr-cookie-consent
CoSchool LMS – A complete Learning Management System to Create and Sell Your Courses Online coschool
Country Blocker country-blocker
Coupon Affiliates – Affiliate Plugin for WooCommerce woo-coupon-usage
Crafthemes Demo Import crafthemes-demo-import
Cricket Live Score cricket-score
CRUDLab Google Plus Button crudlab-google-plus
Cryptocurrency Price Widget cryptocurrency-price-widget
CSV to html csv-to-html
Currency Converter Widget ⚡ PRO currency-converter-widget-pro
Custom Skins Contact Form 7 custom-skins-contact-form-7
de:branding debranding
dejure.org Vernetzungsfunktion dejureorg-vernetzungsfunktion
Device Detector device-detector
Display Future Posts display-future-posts
Dr Affiliate dr-affiliate
DTC Documents dtc-documents
DX Dark Site devrix-dark-site
Easy Site Importer easy-site-importer
EazyDocs – Most Powerful Knowledge base, wiki, Documentation Builder Plugin eazydocs
ECT Product Carousel ect-product-carousel
ECT Social Share ect-social-share
EduAdmin Booking eduadmin-booking
EELV Newsletter eelv-newsletter
ElementInvader Addons for Elementor elementinvader-addons-for-elementor
Email Reminders email-reminders
Essential Real Estate essential-real-estate
eTemplates etemplates
Eveeno eveeno
Events Addon for Elementor events-addon-for-elementor
Evernote Sync evernote-sync
Falcon – WordPress Optimizations & Tweaks falcon
Fancy Roller Scroller fancy-roller-scroller
FAQ And Answers – Create Frequently Asked Questions Area on WP Sites faq-and-answers
Feedpress Generator – External RSS Frontend Customizer feedpress-generator
Filestack Official filestack-upload
Firebase OTP Authentication authentication-via-otp-using-firebase
Flaming Forms flaming-forms
Flash News / Post (Responsive) flashnews-fading-effect-pearlbells
Floating Video Player floating-player
FloristPress – Customize your Woo store for your Florist bakkbone-florist-companion
Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder fluentform
FooGallery Premium foogallery-premium
FormFacade – WordPress plugin for Google Forms formfacade
ForumWP – Forum & Discussion Board forumwp
Frontend Admin by DynamiApps acf-frontend-form-element
FULL – Cliente full-customer
Ganohrs Toggle Shortcode ganohrs-toggle-shortcode
Gaxx Keywords gaxx-keywords
GEO my WP geo-my-wp
GeoDataSource Country Region DropDown geodatasource-country-region-dropdown
GeoFlickr geoflickr
Geoportail Shortcode geoportail-shortcode
Get Post Content Shortcode get-post-content-shortcode
GitSync git-sync
glomex oEmbed glomex-oembed
Go Animate goanimate
Gou Manage My Account Menu – User Roles gou-wc-account-tabs
Greenshift – animation and page builder blocks greenshift-animation-and-page-builder-blocks
Grid Plus – Unlimited grid layout grid-plus
Gutenberg Blocks and Page Layouts – Attire Blocks attire-blocks
Gutensee gutensee
Hack-Info hack-info
Hash Form – Drag & Drop Form Builder hash-form
Hello Event Widgets For Elementor hello-event-widgets-for-elementor
Hello In All Languages hello-in-all-languages
Hive Support | AI-Powered Help Desk, Live Chat & AI Chat Bot Plugin for WordPress hive-support
Horizontal scroll image slideshow horizontal-scroll-image-slideshow
HostFact bestelformulier integratie hostfact-bestelformulier-integratie
HQ Rental Software hq-rental-software
Hurrakify hurrakify
I Plant A Tree i-plant-a-tree
ICDSoft Reseller Store icdsoft-reseller-store
iChart – Easy Charts and Graphs ichart
IDer Login for WordPress ider-login
ImageRecycle pdf & image compression imagerecycle-pdf-image-compression
ImmoToolBox Connect immotoolbox-connect
Import Eventbrite Events import-eventbrite-events
IMS Countdown ims-countdown
Increase Sociability increase-sociability
Insertify – Ad,HTML,CSS,JS,PHP,PDF,Header & Footer insertify
Instant Appointment instant-appointment
Integrate Firebase integrate-firebase
Invoice Payment for WooCommerce invoice-payment-for-woocommerce
J&T Express Malaysia jt-express
jCarousel for WordPress jcarousel-for-wordpress
Jet Footer Code jet-footer-code
Job Board Manager job-board-manager
KH Easy User Settings kh-easy-user-settings
Koalendar – Events & Appointments Booking Calendar koalendar-free-booking-widget
Kredeum NFTs, the easiest way to sell your NFTs directly on your WordPress site kredeum-nfts
Ksher ksher-payment
Kundgenerator kundgenerator
kvCORE IDX kvcore-idx
LabelGrid Tools label-grid-tools
Last Viewed Posts by WPBeginner last-viewed-posts
LaunchPage.app Importer launchpage-app-importer
LDD Directory Lite ldd-directory-lite
Leader leader
LeaderBoard Plugin leaderboard-lite
LearnPress – WordPress LMS Plugin learnpress
Library Bookshelves library-bookshelves
Library Management System – Manage e-Digital Books Library library-management-system
Lifetime free Drag & Drop Contact Form Builder for WordPress VForm v-form
Like in Vk.com like-on-vkontakte
LionScripts: Site Maintenance & Noindex Nofollow Plugin maintenance-and-noindex-nofollow
ListApp Mobile Manager listapp-mobile-manager
MainWP Child – Securely Connects to the MainWP Dashboard to Manage Multiple Sites mainwp-child
Mandrill WP – Email Form Under Post email-form-under-post
Mark New Posts mark-new-posts
MDC Comment Toolbar mdc-comment-toolbar
Media Downloader media-downloader
Members – Membership & User Role Editor Plugin members
Metrika metrika
Mimoos devoluciones-packback
Minify HTML minify-html-markup
Minterpress minterpress
Mollie for Contact Form 7 cf7-mollie
MStore API – Create Native Android & iOS Apps On The Cloud mstore-api
Multiple Admin Emails multiple-admin-emails
My IDX Home Search my-idx-home-search
MyParcel woocommerce-myparcel
Nabz Image Gallery nabz-image-gallery
Navayan CSV Export navayan-csv-export
New User Approve new-user-approve
News Ticker for Elementor news-ticker-for-elementor
Newsletter Subscriptions newsletter-subscriptions
Newsletter, Email Marketing, Email Subscriber – Mail Picker mail-picker
NewsmanApp newsmanapp
Nias course | دوره ساز نیاس nias-course
NiceJob nicejob
Ninja Forms – The Contact Form Builder That Grows With You ninja-forms
Notibar – Notification Bar for WordPress notibar
NotificationX – Live Sales Notification, WooCommerce Sales Popup, FOMO, Social Proof, Announcement Banner & Floating Notification Top Bar notificationx
OAuth Single Sign On – SSO (OAuth Client) miniorange-login-with-eve-online-google-facebook
Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita
ONLYOFFICE DocSpace onlyoffice-docspace
Onlywire Multi Autosubmitter onlywire-multi-autosubmitter
Opt-In Downloads halfdata-optin-downloads
Order Delivery & Pickup Location Date Time ( Free Version ) order-delivery-pickup-location-date-time-free-version
Out of the Block: OpenStreetMap ootb-openstreetmap
Password for WP password-for-wp
Payment Gateway Per Product for WooCommerce woocommerce-product-payments
Perfect Font Awesome Integration perfect-font-awesome-integration
phZoom Plugin for WordPress phzoom
PixProof – Easy Photo Proofing for Photographers pixproof
Planaday API planaday-api
Plezi plezi
Poll, Poll Forms – WordPress Poll plugin by Poll Builder poll-builder
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder popup-maker
Post Carousel & Slider post-types-carousel-slider
Post to Pdf post-to-pdf
Posti Shipping posti-shipping
Posts and Products Views for WooCommerce posts-and-products-views
Posts Date Ranges posts-date-ranges
PowerBI Embed Reports embed-power-bi-reports
PowerFormBuilder – Contact Form Database Manager for WordPress power-forms-builder
Primary Addon for Elementor primary-addon-for-elementor
Primer MyData for Woocommerce primer-mydata
Print Science Designer print-science-designer
Product Carousel Slider & Grid Ultimate for WooCommerce woo-product-carousel-slider-and-grid-ultimate
Projectopia – WordPress Project Management projectopia-core
Property Hive Mortgage Calculator property-hive-mortgage-calculator
Property Hive Stamp Duty Calculator property-hive-stamp-duty-calculator
Push Monkey Pro – Web Push Notifications and WooCommerce Abandoned Cart push-monkey-desktop-push-notifications
Quietly Insights quietly-insights
Quran multilanguage Text & Audio quran-text-multilanguage
Quran Phrases About Most People Shortcodes quran-phrases-about-most-people-shortcodes
Radio Player – Live Shoutcast, Icecast and Any Audio Stream Player for WordPress radio-player
Radius Blocks – WordPress Gutenberg Blocks radius-blocks
RapidLoad – Optimize Web Vitals Automatically unusedcss
Rate My Post – Star Rating Plugin by FeedbackWP rate-my-post
Responsive Filterable Portfolio responsive-filterable-portfolio
Responsive Google Maps | by imbaa responsive-google-maps
Restaurant & Cafe Addon for Elementor restaurant-cafe-addon-for-elementor
Restrict – membership, site, content and user access restrictions for WordPress restricted-content
Revi.io – Customer & Products Reviews revi-io-customer-and-product-reviews
Role Includer role-includer
Saksh Escrow System saksh-escrow-system
Schema App Structured Data schema-app-structured-data-for-schemaorg
SeedProd Pro seedprod-coming-soon-pro-5
Seraphinite Bulk Discounts for WooCommerce seraphinite-discount-for-woocommerce
Service service
Share Buttons – Social Media rich-web-share-button
Shortcodes for Elementor shortcode-elementor
Sign In With Google sign-in-with-google
Simple Booking – Widget simple-booking-widget
Simple Link Directory simple-link-directory
Simple Locator simple-locator
Simple Payment simple-payment
Simple Presenter simple-presenter
Simple Restrict simple-restrict
SIP Calculator sip-calculator
SiteOrigin Widgets Bundle so-widgets-bundle
Smaily for WP smaily-for-wp
Smart Agenda – Prise de rendez-vous en ligne smart-agenda-prise-de-rendez-vous-en-ligne
Smart PopUp Blaster smart-popup-blaster
SMSify smsify
Snippet Shortcodes shortcode-variables
Social Media Sharing social-media-sharing
Social Media Shortcodes social-media-shortcodes
SOPA Blackout sopa-blackout
Spreadr Woocommerce Plugin – Amazon Importer for Dropshipping and Affiliate spreadr-for-woocomerce
SQL Chart Builder sql-chart-builder
Staggs – Product Configurator Toolkit staggs
States Map US ymc-states-map
Stripe Donation bin-stripe-donation
Super Backup & Clone - Migrate for WordPress indeed-wp-superbackup
Surbma | SalesAutopilot Shortcode surbma-salesautopilot-shortcode
SVG Shortcode svg-shortcode
Tabs Maker tabs-maker
TagGator taggator
TCBD Popover tcbd-popover
Termin-Kalender termin-kalender
The Permalinker the-permalinker
Themify Store Locator themify-store-locator
This is a Subversion repository; use the 'svnadmin' tool to examine critical-site-intel-stats
Tickera – WordPress Event Ticketing tickera-event-ticketing-system
Tithe.ly Giving Button wp-tithely
Top and footer bars for announcements, notifications, advertisements, promotions – YooBar yoo-bar
TSB Occasion Editor tsb-occasion-editor
turboSMTP turbosmtp
Ui Slider Filter By Price ui-slider-filter-by-price
Ultimate Endpoints With Rest Api custom-wp-rest-api
UNIVERSAM universam-demo
Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor
Utech World Time utech-world-time-for-wp
Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce vayu-blocks
vBSSO-lite vbsso-lite
Video & Photo Gallery for Ultimate Member gallery-for-ultimate-member
Vimeography: Vimeo Video Gallery WordPress Plugin vimeography
Visual Recent Posts visual-recent-posts
Visualmodo Elements visualmodo-elements
Waymark waymark
Web Stories web-stories
Web3 Crypto Payments by DePay for WooCommerce depay-payments-for-woocommerce
Website Toolbox Community website-toolbox-forums
WooCommerce - PDF Vouchers woocommerce-pdf-vouchers
WooCommerce Basic Ordernumbers woocommerce-basic-ordernumbers
Woocommerce Blocks – Woolook woolook
WooCommerce Cart Count Shortcode woo-cart-count-shortcode
WordPress Book Plugin for Displaying Books in Grid, Flip, Slider, Popup Layout and more gs-books-showcase
WordPress Filter wordpress-filter
WordPress HelpDesk & Support Ticket System Plugin – Octrace Support octrace-support
WordPress Portfolio Plugin – A Plugin for Making Filterable Portfolio Grid, Portfolio Slider and more gs-portfolio
WordPress Post Grid Layouts with Pagination – Sogrid sogrid
Wovax IDX wovax-idx
WP Ad Guru – Banner ad, Responsive popup, Popup maker, Ad rotator & More wp-ad-guru
WP Controller wp-management-controller
WP Cookies Enabler wp-cookies-enabler
WP Courses LMS – Online Courses Builder, eLearning Courses, Courses Solution, Education Courses wp-courses
WP Crowdfunding wp-crowdfunding
WP Currency Exchange Rates wp-currency-exchange-rates
WP Email Log – PostBox postbox-email-logs
WP Fiddle wp-fiddle
WP Flipkart Importer wp-flipkart-importer
WP GeoNames wp-geonames
WP Job Portal – A Complete Recruitment System for Company or Job Board website wp-job-portal
WP Log Action wp-log-action
Wp Login with Ajax wp-login-with-ajax
WP Mailster wp-mailster
WP Mega Menu wp-megamenu
Wp NssUser Register wp-nssuser-register
Wp photo text slider 50 wp-photo-text-slider-50
WP Pipes wp-pipes
WP Quick Shop wp-quick-shop
WP Service Payment Form With Authorize.net wp-service-payment-form-with-authorizenet
WP Simple Pay Lite Manager stripe-manager
WP Timetics- AI-powered Appointment Booking Calendar and Online Scheduling Plugin timetics
WP-Ban-User wp-ban-user
WP-HideThat wp-hide-that
WP-NERD Toolkit wp-nerd-toolkit
WP-Revive Adserver wp-revive-adserver
WPBookit wpbookit
WPC Order Notes for WooCommerce woo-order-notes
WPCargo Track & Trace wpcargo
WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More wpforms-lite
WPMobile.App — Android and iOS Mobile Application wpappninja
WP微信机器人 wp-weixin-robot
Wr Age Verification wr-age-verification
XML Multilanguage Sitemap Generator xml-multilanguage-sitemap-generator
XPD Reduce Image Filesize xpd-reduce-image-filesize
YDS Support Ticket System yds-support-ticket-system
Youtube Video Grid | Youmax youmax-channel-embeds-for-youtube-businesses
Zita Site Builder – Elementor, WordPress & Gutenberg Website Builder ai-site-builder
افزونه پیامک ووکامرس Persian WooCommerce SMS persian-woocommerce-sms
畅言评论系统 changyan


WordPress Themes with Reported Vulnerabilities Last Week

Software Name Software Slug
Avada | Website Builder For WordPress & WooCommerce Avada
Bicycleshop bicycleshop
Brandy brandy
hmd hmd
Plain Post plain-post
TravelTour traveltour
Woffice CRM woffice
Woodmart woodmart


Vulnerability Details

Please note that if you run the Wordfence plugin on your WordPress site, with the scanner enabled, you should’ve already been notified if your site was affected by any of these vulnerabilities. If you’d like to receive real-time notifications whenever a vulnerability is added to the Wordfence Intelligence Vulnerability Database, check out our Slack and HTTP Webhook Integration, which is completely free to utilize.

CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54270
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54293
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
CE21 Suite
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55978
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Code Generator Pro
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54296
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55976
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55972
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
eTemplates
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54294
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Firebase OTP Authentication
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54367
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55977
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54295
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
ListApp Mobile Manager
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54273
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55981
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Nabz Image Gallery
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55988
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54336
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-55982
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Share Buttons – Social Media
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-11015
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Sign In With Google
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54374
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-9290
Patch Status
Patched
Published
Dec 12, 2024
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54297
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
vBSSO-lite
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-43234
Patch Status
Patched
Published
Dec 10, 2024
Affected Software
Woffice CRM
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54383
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WooCommerce - PDF Vouchers
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54375
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Woocommerce Blocks – Woolook
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54380
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WP Cookies Enabler
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54363
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Wp NssUser Register
Researcher
CVSS Rating
Critical (9.8)
CVE-ID
CVE-2024-54369
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55987
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-11443
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
de:branding
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55975
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Dr Affiliate
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54376
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54373
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
EduAdmin Booking
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-56012
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Flash News / Post (Responsive)
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54313
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
FULL – Cliente
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54368
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
GitSync
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-11689
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
HQ Rental Software
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54372
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54365
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
KH Easy User Settings
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55974
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Mimoos
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54379
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Minterpress
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-10590
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Opt-In Downloads
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55983
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54378
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Quietly Insights
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55984
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Saksh Escrow System
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-55986
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Service
Researcher
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54352
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-54370
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
High (8.8)
CVE-ID
CVE-2024-56013
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Wovax IDX
Researcher
CVSS Rating
High (8.1)
CVE-ID
CVE-2024-11721
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Frontend Admin by DynamiApps
Researcher
CVSS Rating
High (8.1)
CVE-ID
CVE-2024-10111
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
High (8.1)
CVE-ID
CVE-2024-12312
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Print Science Designer
CVSS Rating
High (7.7)
CVE-ID
CVE-2023-6947
Patch Status
Patched
Published
Dec 9, 2024
Affected Software
FooGallery Premium
Researcher
CVSS Rating
High (7.5)
CVE-ID
CVE-2024-54292
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Appsplate
Researcher
CVSS Rating
High (7.5)
CVE-ID
CVE-2024-54361
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Instant Appointment
Researcher
CVSS Rating
High (7.5)
CVE-ID
CVE-2024-11711
Patch Status
Patched
Published
Dec 13, 2024
CVSS Rating
High (7.5)
CVE-ID
CVE-2024-54280
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WPBookit
Researcher
CVSS Rating
High (7.5)
CVE-ID
CVE-2024-55980
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Wr Age Verification
Researcher
CVSS Rating
High (7.3)
CVE-ID
CVE-2024-10910
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-9698
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Crafthemes Demo Import
Researcher
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-11720
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Frontend Admin by DynamiApps
Researcher
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-54330
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Hurrakify
Researcher
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-55990
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-54385
Patch Status
Unpatched
Published
Dec 12, 2024
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-54285
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
SeedProd Pro
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-56008
Patch Status
Patched
Published
Dec 14, 2024
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-54282
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WP Mega Menu
Researcher
CVSS Rating
High (7.2)
CVE-ID
CVE-2024-55989
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
High (7.1)
CVE-ID
CVE-2024-54438
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Gaxx Keywords
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-12406
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2019-25221
Patch Status
Patched
Published
Dec 12, 2024
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-12417
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Simple Link Directory
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-56009
Patch Status
Patched
Published
Dec 14, 2024
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-11430
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
SQL Chart Builder
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-55973
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-12333
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Woodmart
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-12420
Patch Status
Patched
Published
Dec 12, 2024
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-55979
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Wr Age Verification
Researcher
CVSS Rating
Medium (6.5)
CVE-ID
CVE-2024-55985
Patch Status
Unpatched
Published
Dec 14, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11875
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54287
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Advanced Blog Post Block
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54443
Patch Status
Unpatched
Published
Dec 14, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11384
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11832
Patch Status
Patched
Published
Dec 12, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54345
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Bicycleshop
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11754
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Booking System Trafft
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54348
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Brandy
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11869
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Buk for WordPress
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11759
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Bukza
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11427
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Catch Popup
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-10182
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Cognito Forms
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11883
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Connatix Video Embed
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11877
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Cricket Live Score
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11760
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11945
Patch Status
Patched
Published
Dec 9, 2024
Affected Software
Email Reminders
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11752
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Eveeno
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54315
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12459
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Ganohrs Toggle Shortcode
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12474
Patch Status
Patched
Published
Dec 13, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11873
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
glomex oEmbed
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11914
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54360
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Gutensee
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54338
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11442
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11413
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11928
Patch Status
Patched
Published
Dec 9, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11888
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
IDer Login for WordPress
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11755
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
IMS Countdown
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11785
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Integrate Firebase
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11889
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
My IDX Home Search
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12502
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
My IDX Home Search
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11767
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
NewsmanApp
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54277
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54318
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
NiceJob
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11750
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
ONLYOFFICE DocSpace
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11827
Patch Status
Patched
Published
Dec 12, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11891
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54349
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Plain Post
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11763
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Plezi
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54276
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11770
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Post Carousel & Slider
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12446
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Post to Pdf
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12448
Patch Status
Unpatched
Published
Dec 13, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11901
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
PowerBI Embed Reports
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54314
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11940
Patch Status
Patched
Published
Dec 9, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12465
Patch Status
Patched
Published
Dec 12, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54334
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54272
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-56011
Patch Status
Patched
Published
Dec 14, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54316
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12501
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Simple Locator
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54286
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Smaily for WP
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11781
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12458
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Smart PopUp Blaster
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11871
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Social Media Shortcodes
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12523
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
States Map US
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11879
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Stripe Donation
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11433
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11865
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Tabs Maker
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11751
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
TCBD Popover
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11894
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
The Permalinker
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11841
Patch Status
Unpatched
Published
Dec 9, 2024
Affected Software
Tithe.ly Giving Button
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54441
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Utech World Time
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11095
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Visualmodo Elements
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-54317
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Web Stories
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12517
Patch Status
Unpatched
Published
Dec 13, 2024
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11910
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
WP Crowdfunding
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11757
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WP GeoNames
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-11884
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Wp photo text slider 50
Researcher
CVSS Rating
Medium (6.4)
CVE-ID
CVE-2024-12461
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WP-Revive Adserver
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54358
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
3D Avatar User Profile
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54389
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
addWeather
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54431
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Admin Customization
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54401
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Advanced Fancybox
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12156
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54439
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Amazon Product Price
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12072
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54429
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Aphorismus
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54400
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
AppMaps
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-49677
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Bootstrap Buttons
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12441
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
BP Email Assign Templates
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54325
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
CarDealerPress
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54427
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Category of Posts
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54333
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Check Pincode For Woocommerce
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54407
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
CK and SyntaxHighlighter
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54329
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
CleverNode Related Content
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54406
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Comments On Feed
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11459
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Country Blocker
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54399
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
CRUDLab Google Plus Button
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54275
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
CSV to html
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11417
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
dejure.org Vernetzungsfunktion
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-56010
Patch Status
Patched
Published
Dec 14, 2024
Affected Software
Device Detector
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54413
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Display Future Posts
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54418
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
DTC Documents
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54337
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
DX Dark Site
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54412
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
ECT Product Carousel
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54405
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
ECT Social Share
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54430
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
EELV Newsletter
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54422
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Evernote Sync
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54351
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Fancy Roller Scroller
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54364
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11462
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
Filestack Official
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54398
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Flaming Forms
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54421
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Floating Video Player
Researcher(s): Unknown
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54347
Patch Status
Patched
Published
Dec 11, 2024
Researcher(s): Unknown
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54301
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54339
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
GeoFlickr
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54414
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Geoportail Shortcode
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54397
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Go Animate
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54353
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Hack-Info
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12572
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Hello In All Languages
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54350
Patch Status
Patched
Published
Dec 14, 2024
Affected Software
hmd
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54331
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
I Plant A Tree
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54320
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
ICDSoft Reseller Store
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54266
Patch Status
Patched
Published
Dec 10, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54335
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
ImmoToolBox Connect
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12422
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Import Eventbrite Events
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54395
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Increase Sociability
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54328
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54305
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54437
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
jCarousel for WordPress
Researcher(s): Unknown
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54436
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Jet Footer Code
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54319
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Kundgenerator
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11723
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
kvCORE IDX
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54341
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
LabelGrid Tools
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54288
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
LDD Directory Lite
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54426
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
LeaderBoard Plugin
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11359
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Library Bookshelves
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54424
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Like in Vk.com
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54394
Patch Status
Unpatched
Published
Dec 12, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54404
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
MDC Comment Toolbar
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54322
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Media Downloader
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54388
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Multiple Admin Emails
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-9608
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
MyParcel
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11683
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Newsletter Subscriptions
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54435
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Onlywire Multi Autosubmitter
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11419
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Password for WP
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54312
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54434
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
phZoom Plugin for WordPress
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11804
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Planaday API
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54387
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Posts Date Ranges
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11809
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Primer MyData for Woocommerce
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11973
Patch Status
Patched
Published
Dec 9, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54299
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54290
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Role Includer
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11279
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Schema App Structured Data
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12160
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54433
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Simple Booking – Widget
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54303
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Simple Payment
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54340
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Simple Presenter
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12555
Patch Status
Unpatched
Published
Dec 13, 2024
Affected Software
SIP Calculator
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54324
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
SMSify
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54423
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Social Media Sharing
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54410
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
SOPA Blackout
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54342
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54390
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
TagGator
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-11846
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
TravelTour
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12323
Patch Status
Patched
Published
Dec 9, 2024
Affected Software
turboSMTP
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54419
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Ui Slider Filter By Price
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12260
Patch Status
Unpatched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54327
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
UNIVERSAM
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54302
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12162
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54403
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Visual Recent Posts
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12325
Patch Status
Patched
Published
Dec 10, 2024
Affected Software
Waymark
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12338
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Website Toolbox Community
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54391
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WordPress Filter
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54411
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP Controller
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54332
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WP Currency Exchange Rates
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54393
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP Fiddle
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54432
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP Flipkart Importer
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
Unknown
Patch Status
Patched
Published
Dec 10, 2024
Affected Software
WP Log Action
Researcher(s): Unknown
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54416
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Wp Login with Ajax
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12283
Patch Status
Patched
Published
Dec 10, 2024
Affected Software
WP Pipes
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54344
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WP Quick Shop
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12258
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54440
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP-Ban-User
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54415
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP-HideThat
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-12004
Patch Status
Patched
Published
Dec 10, 2024
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54392
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
WP微信机器人
Researcher
CVSS Rating
Medium (6.1)
CVE-ID
CVE-2024-54409
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
XPD Reduce Image Filesize
Researcher
CVSS Rating
Medium (5.4)
CVE-ID
CVE-2024-54298
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (5.4)
CVE-ID
CVE-2024-54326
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
GEO my WP
CVSS Rating
Medium (5.4)
CVE-ID
CVE-2024-54420
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Metrika
Researcher
CVSS Rating
Medium (5.4)
CVE-ID
CVE-2024-12574
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
SVG Shortcode
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12255
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-54359
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Banner System
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-55996
Patch Status
Unpatched
Published
Dec 14, 2024
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-54310
Patch Status
Patched
Published
Dec 11, 2024
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-55993
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Job Board Manager
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-56001
Patch Status
Patched
Published
Dec 14, 2024
Affected Software
Ksher
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12294
Patch Status
Patched
Published
Dec 10, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-11868
Patch Status
Patched
Published
Dec 9, 2024
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-11008
Patch Status
Patched
Published
Dec 10, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12579
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Minify HTML
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-54417
Patch Status
Unpatched
Published
Dec 12, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12309
Patch Status
Patched
Published
Dec 12, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-11106
Patch Status
Patched
Published
Dec 9, 2024
Affected Software
Simple Restrict
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12578
Patch Status
Patched
Published
Dec 13, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-54366
Patch Status
Patched
Published
Dec 11, 2024
Researcher(s): Unknown
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-12265
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-54279
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WP-NERD Toolkit
Researcher
CVSS Rating
Medium (5.3)
CVE-ID
CVE-2024-55999
Patch Status
Unpatched
Published
Dec 14, 2024
Researcher
CVSS Rating
Medium (4.9)
CVE-ID
CVE-2024-54284
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
SeedProd Pro
Researcher
CVSS Rating
Medium (4.9)
CVE-ID
CVE-2024-54283
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
SeedProd Pro
CVSS Rating
Medium (4.9)
CVE-ID
CVE-2024-11710
Patch Status
Patched
Published
Dec 13, 2024
CVSS Rating
Medium (4.8)
CVE-ID
CVE-2024-11715
Patch Status
Patched
Published
Dec 13, 2024
CVSS Rating
Medium (4.4)
CVE-ID
CVE-2024-12271
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
360 Javascript Viewer
Researcher
CVSS Rating
Medium (4.4)
CVE-ID
CVE-2024-54442
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Better WP Login Page
Researcher
CVSS Rating
Medium (4.4)
CVE-ID
CVE-2024-12628
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
bodi0`s Easy cache
Researcher
CVSS Rating
Medium (4.4)
CVE-ID
CVE-2024-54308
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Cryptocurrency Price Widget
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54428
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Add image to Post
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54381
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Advance Menu Manager
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-11709
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54307
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54402
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Arabic Webfonts
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12526
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54300
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54357
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54289
Patch Status
Unpatched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54396
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Bet sport Free
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-56003
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Caldera SMTP Mailer
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12263
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54267
Patch Status
Patched
Published
Dec 10, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12341
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
Custom Skins Contact Form 7
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-56004
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Easy Site Importer
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12059
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12329
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Essential Real Estate
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54384
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12201
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54321
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-56007
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
Leader
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54311
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Mark New Posts
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54323
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
New User Approve
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54278
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
News Ticker for Elementor
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54269
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54356
Patch Status
Patched
Published
Dec 11, 2024
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54309
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WP Email Log – PostBox
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-56005
Patch Status
Patched
Published
Dec 14, 2024
Affected Software
Posti Shipping
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-10690
Patch Status
Patched
Published
Dec 13, 2024
Affected Software
Shortcodes for Elementor
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54268
Patch Status
Patched
Published
Dec 10, 2024
Affected Software
SiteOrigin Widgets Bundle
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12018
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
Snippet Shortcodes
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54354
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Termin-Kalender
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-12414
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
Themify Store Locator
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-55992
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
WooCommerce Basic Ordernumbers
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-11911
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
WP Crowdfunding
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54355
Patch Status
Patched
Published
Dec 11, 2024
Affected Software
WP Mailster
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54271
Patch Status
Unpatched
Published
Dec 11, 2024
Affected Software
WPCargo Track & Trace
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-54408
Patch Status
Unpatched
Published
Dec 12, 2024
Affected Software
Youtube Video Grid | Youmax
Researcher
CVSS Rating
Medium (4.3)
CVE-ID
CVE-2024-55994
Patch Status
Unpatched
Published
Dec 14, 2024
Affected Software
畅言评论系统
Researcher
CVSS Rating
Low (3.7)
CVE-ID
CVE-2024-12300
Patch Status
Patched
Published
Dec 12, 2024
Affected Software
AR for WordPress
Researcher
CVSS Rating
Low (2.7)
CVE-ID
CVE-2024-54382
Patch Status
Patched
Published
Dec 11, 2024


As a reminder, Wordfence has curated an industry leading vulnerability database with all known WordPress core, theme, and plugin vulnerabilities known as Wordfence Intelligence.

This database is continuously updated, maintained, and populated by Wordfence’s highly credentialed and experienced vulnerability researchers through in-house vulnerability research, vulnerability researchers submitting directly to us through our Bug Bounty Program, and by monitoring varying sources to capture all publicly available WordPress vulnerability information and adding additional context where we can.

Click here to sign-up for our mailing list to receive weekly vulnerability reports like this and important WordPress Security reports in your inbox the moment they are published.

Did you enjoy this post? Share it!

Comments

No Comments

All comments are moderated before being published. Inappropriate or off-topic comments may not be approved.