| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-12311 | Email Subscribers < 5.7.44 - Admin+ SQL Injection | Unknown | Email Subscribers by Icegram Express | 中危 | - | 2025-01-06 06:00:16 | Deep Dive |
| CVE-2024-12302 | Icegram Engage < 3.1.32 - Author+ Stored XSS | Unknown | Icegram Engage | 中危 | - | 2025-01-06 06:00:15 | Deep Dive |
| CVE-2024-11849 | Pods – Custom Content Types and Fields < 3.2.8.1 - Admin+ Stored XSS | Unknown | Pods | 中危 | - | 2025-01-06 06:00:08 | Deep Dive |
| CVE-2024-11356 | Tourmaster < 5.3.4 - Unauthenticated Stored XSS via Room Booking | Unknown | tourmaster | 中危 | - | 2025-01-06 06:00:05 | Deep Dive |
| CVE-2024-12595 | AHAthat Plugin <= 1.6 - Reflected XSS via REQUEST_URI | Unknown | AHAthat Plugin | 中危 | - | 2025-01-02 06:00:13 | Deep Dive |
| CVE-2024-11357 | Goodlayers Core < 2.0.10 - Contributor+ Stored XSS | Unknown | goodlayers-core | 中危 | - | 2025-01-02 06:00:11 | Deep Dive |
| CVE-2024-11184 | WP Enabled SVG <= 0.7 - Author+ Stored XSS via SVG | Unknown | wp-enable-svg | 中危 | - | 2025-01-02 06:00:05 | Deep Dive |
| CVE-2024-11846 | Travel Tour < 5.2.4 - Reflected XSS | Unknown | TravelTour | 中危 | - | 2025-01-01 06:00:09 | Deep Dive |
| CVE-2024-11972 | Hunk Companion < 1.9.0 - Unauthenticated Plugin Installation | Unknown | Hunk Companion | 超危 | - | 2024-12-31 06:00:02 | Deep Dive |
| CVE-2024-11921 | Give < 3.19.0 - Reflected XSS | Unknown | GiveWP | 中危 | - | 2024-12-27 06:00:16 | Deep Dive |
| CVE-2024-11842 | DN Shipping by Weight for WooCommerce < 1.2 - Settings Update via CSRF | Unknown | DN Shipping by Weight for WooCommerce | 中危 | - | 2024-12-27 06:00:15 | Deep Dive |
| CVE-2024-11645 | Float Block <= 1.7 - Admin+ Stored XSS via Widget | Unknown | float block | 中危 | - | 2024-12-27 06:00:13 | Deep Dive |
| CVE-2024-11644 | WP-SVG <= 0.9 - Contributor+ Stored XSS via Shortcode | Unknown | WP-SVG | 中危 | - | 2024-12-27 06:00:10 | Deep Dive |
| CVE-2024-11605 | WP Publications <= 1.2 - Admin+ Stored XSS | Unknown | wp-publications | 中危 | - | 2024-12-27 06:00:09 | Deep Dive |
| CVE-2024-11223 | WPForms < 1.9.2.3 - Admin+ Stored XSS | Unknown | WPForms | 中危 | - | 2024-12-26 06:00:09 | Deep Dive |
| CVE-2024-10903 | Broken Link Checker < 2.4.2 - Admin+ SSRF | Unknown | Broken Link Checker | 中危 | - | 2024-12-26 06:00:06 | Deep Dive |
| CVE-2024-10858 | Jetpack 13.0-14.0 - Unauthenticated DOM-XSS | Unknown | Jetpack | 中危 | - | 2024-12-25 06:00:03 | Deep Dive |
| CVE-2024-12096 | Exhibit to WP Gallery <= 0.0.2 - Reflected XSS | Unknown | Exhibit to WP Gallery | 中危 | - | 2024-12-24 06:00:09 | Deep Dive |
| CVE-2024-11607 | GTPayment Donations <= 1.0.0 - Stored XSS via CSRF | Unknown | GTPayment Donations | 中危 | - | 2024-12-21 06:00:07 | Deep Dive |
| CVE-2024-8968 | MaxButtons < 9.8.1 - Admin+ Stored XSS via Text Color | Unknown | WordPress Button Plugin MaxButtons | 中危 | - | 2024-12-20 06:00:05 | Deep Dive |