| CVE-2024-1379 | Website Article Monetization By MageNet <= 1.0.11 - Unauthenticated Stored Cross-Site Scripting | magenet | Website Article Monetization By MageNet | Medium | 6.1 | 2024-03-20 06:48:28 | Deep Dive |
| CVE-2024-27997 | WordPress Visual Composer plugin <= 45.6.0 - Cross Site Scripting (XSS) vulnerability | Visual Composer | Visual Composer Website Builder | Medium | 5.9 | 2024-03-19 16:49:03 | Deep Dive |
| CVE-2024-0779 | Enjoy Social Feed <= 6.2.2 - Unauthenticated Arbitrary Instagram Account Unlinking | Unknown | Enjoy Social Feed plugin for WordPress website | 中危 | - | 2024-03-18 19:05:42 | Deep Dive |
| CVE-2024-0780 | Enjoy Social Feed <= 6.2.2 - Subscriber+ Plugin Database Reset | Unknown | Enjoy Social Feed plugin for WordPress website | 中危 | - | 2024-03-18 19:05:41 | Deep Dive |
| CVE-2024-1668 | Avada <= 7.11.5 - Authenticated(Contributor+) Sensitive Information Exposure via Form Entries | ThemeFusion | Avada | Website Builder For WordPress & WooCommerce | Medium | 6.5 | 2024-03-13 15:32:40 | Deep Dive |
| CVE-2024-2172 | Malware Scanner <= 4.7.2 and Web Application Firewall <= 2.1.1 - Unauthenticated Privilege Escalation | cyberlord92 | Web Application Firewall – website security | Critical | 9.8 | 2024-03-13 15:26:53 | Deep Dive |
| CVE-2023-6880 | Visual Composer Premium <= 45.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | visualcomposer | Visual Composer Website Builder | Medium | 6.4 | 2024-03-13 15:26:52 | Deep Dive |
| CVE-2024-1935 | Giveaways and Contests by RafflePress <= 1.12.5 - Unauthenticated Stored Cross-Site Scripting | smub | Giveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers | High | 7.2 | 2024-03-13 15:26:40 | Deep Dive |
| CVE-2024-2272 | keerti1924 Online-Book-Store-Website HTTP POST Request home.php sql injection | keerti1924 | Online-Book-Store-Website | Medium | 6.3 | 2024-03-07 23:31:06 | Deep Dive |
| CVE-2024-2271 | keerti1924 Online-Book-Store-Website HTTP POST Request shop.php sql injection | keerti1924 | Online-Book-Store-Website | Medium | 6.3 | 2024-03-07 23:31:05 | Deep Dive |
| CVE-2024-2270 | keerti1924 Online-Book-Store-Website signup.php cross site scripting | keerti1924 | Online-Book-Store-Website | Medium | 4.3 | 2024-03-07 23:00:09 | Deep Dive |
| CVE-2024-2269 | keerti1924 Online-Book-Store-Website search.php sql injection | keerti1924 | Online-Book-Store-Website | Medium | 6.3 | 2024-03-07 23:00:07 | Deep Dive |
| CVE-2024-2268 | keerti1924 Online-Book-Store-Website unrestricted upload | keerti1924 | Online-Book-Store-Website | Medium | 4.7 | 2024-03-07 22:31:05 | Deep Dive |
| CVE-2024-2267 | keerti1924 Online-Book-Store-Website shop.php logic error | keerti1924 | Online-Book-Store-Website | Medium | 4.3 | 2024-03-07 22:00:07 | Deep Dive |
| CVE-2024-2127 | Page Builder: Pagelayer – Drag and Drop website builder <= 1.8.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 6.4 | 2024-03-07 19:33:05 | Deep Dive |
| CVE-2024-1468 | Avada | Website Builder For WordPress & WooCommerce <= 7.11.4 - Authenticated (Contributor+) Arbitrary File Upload | ThemeFusion | Avada | Website Builder For WordPress & WooCommerce | High | 8.8 | 2024-02-29 03:30:30 | Deep Dive |
| CVE-2024-1817 | Demososo DM Enterprise Website Building System Cookie indexDM_load.php dmlogin improper authentication | Demososo | DM Enterprise Website Building System | High | 7.3 | 2024-02-23 14:00:11 | Deep Dive |
| CVE-2024-1590 | Page Builder: Pagelayer – Drag and Drop website builder <= 1.8.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 4.6 | 2024-02-23 09:32:38 | Deep Dive |
| CVE-2024-0506 | Elementor Website Builder – More than Just a Page Builder <= 3.18.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via get_image_alt | elemntor | Elementor Website Builder – more than just a page builder | Medium | 6.4 | 2024-02-20 18:56:29 | Deep Dive |
| CVE-2024-1072 | Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode <= 6.15.21 - Missing Authorization via seedprod_lite_new_lpage | seedprod | Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode | High | 8.2 | 2024-02-05 21:21:51 | Deep Dive |