| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-5029 | CM Table Of Contents – WordPress TOC Plugin < 1.2.4 - Stored XSS via CSRF | Unknown | CM Table Of Contents | 中危 | - | 2024-11-21 06:00:07 | Deep Dive |
| CVE-2024-10482 | Media Library Tools < 1.5.0 - Author+ Stored XSS via SVG | Unknown | Media File Rename, Find Unused File, Add Alt text, Caption, Desc For Image SEO | 中危 | - | 2024-11-21 06:00:02 | Deep Dive |
| CVE-2024-10515 | SEO Plugin by Squirrly SEO < 12.3.21 - Editor+ Stored XSS | Unknown | SEO Plugin by Squirrly SEO | - | - | 2024-11-20 06:00:05 | Deep Dive |
| CVE-2024-10103 | MailPoet < 5.3.2 - Admin+ Stored XSS | Unknown | MailPoet | - | - | 2024-11-19 06:00:02 | Deep Dive |
| CVE-2024-5030 | CM Table Of Contents – WordPress TOC Plugin < 1.2.3 - Settings Reset via CSRF | Unknown | CM Table Of Contents | - | - | 2024-11-18 06:00:01 | Deep Dive |
| CVE-2024-9529 | Secure Custom Fields < 6.3.6.3 - Admin+ Remote Code Execution | Unknown | Secure Custom Fields | - | - | 2024-11-15 06:00:08 | Deep Dive |
| CVE-2024-10104 | Jobs for WordPress < 2.7.8 - Contributor+ Stored XSS | Unknown | Jobs for WordPress | - | - | 2024-11-15 06:00:03 | Deep Dive |
| CVE-2024-9186 | Automation By Autonami < 3.3.0 - Unauthenticated SQLi | Unknown | Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit | - | - | 2024-11-14 06:00:11 | Deep Dive |
| CVE-2024-10146 | Simple File List < 6.1.13 - Reflected Cross-Site Scripting | Unknown | Simple File List | 中危 | - | 2024-11-14 06:00:07 | Deep Dive |
| CVE-2024-10820 | WooCommerce Upload Files <= 84.3 - Unauthenticated Arbitrary File Upload | Unknown | WooCommerce Upload Files | Critical | 9.8 | 2024-11-13 03:20:08 | Deep Dive |
| CVE-2024-9836 | RSS Feed Widget < 3.0.0 - Contributor+ Stored XSS | Unknown | RSS Feed Widget | - | - | 2024-11-12 06:00:05 | Deep Dive |
| CVE-2024-9835 | RSS Feed Widget < 3.0.1 - Reflected XSS | Unknown | RSS Feed Widget | - | - | 2024-11-12 06:00:04 | Deep Dive |
| CVE-2024-7982 | Registrations for The Events Calendar < 2.12.4 - Unauthenticated Stored XSS | Unknown | Registrations for the Events Calendar | 超危 | - | 2024-11-08 06:00:03 | Deep Dive |
| CVE-2024-8378 | Safe SVG < 2.2.6 - Author+ SVG Sanitisation Bypass | Unknown | Safe SVG | - | - | 2024-11-07 15:07:37 | Deep Dive |
| CVE-2024-9926 | Jetpack < 13.9.1 - Subscriber+ Arbitrary Feedback Access | Unknown | Jetpack | - | - | 2024-11-07 15:02:38 | Deep Dive |
| CVE-2024-10027 | WP Booking Calendar < 10.6.3 - Admin+ Stored XSS | Unknown | WP Booking Calendar | - | - | 2024-11-07 06:00:06 | Deep Dive |
| CVE-2024-9934 | Wp-ImageZoom <= 1.1.0 - Reflected XSS | Unknown | Wp-ImageZoom | - | - | 2024-11-06 06:00:07 | Deep Dive |
| CVE-2024-7879 | WP ULike < 4.7.5 - Admin+ Stored XSS via Widgets | Unknown | WP ULike | - | - | 2024-11-06 06:00:06 | Deep Dive |
| CVE-2024-9883 | Pods < 3.2.7.1 - Admin+ Stored XSS | Unknown | Pods | - | - | 2024-11-05 06:00:09 | Deep Dive |
| CVE-2024-9689 | Post From Frontend <= 1.0.0 - Post Deletion via CSRF | Unknown | Post From Frontend | - | - | 2024-11-05 06:00:08 | Deep Dive |