Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 4525 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2024-5029 CM Table Of Contents – WordPress TOC Plugin < 1.2.4 - Stored XSS via CSRF UnknownCM Table Of Contents 中危 -2024-11-21 06:00:07 Deep Dive
CVE-2024-10482 Media Library Tools < 1.5.0 - Author+ Stored XSS via SVG UnknownMedia File Rename, Find Unused File, Add Alt text, Caption, Desc For Image SEO 中危 -2024-11-21 06:00:02 Deep Dive
CVE-2024-10515 SEO Plugin by Squirrly SEO < 12.3.21 - Editor+ Stored XSS UnknownSEO Plugin by Squirrly SEO--2024-11-20 06:00:05 Deep Dive
CVE-2024-10103 MailPoet < 5.3.2 - Admin+ Stored XSS UnknownMailPoet--2024-11-19 06:00:02 Deep Dive
CVE-2024-5030 CM Table Of Contents – WordPress TOC Plugin < 1.2.3 - Settings Reset via CSRF UnknownCM Table Of Contents--2024-11-18 06:00:01 Deep Dive
CVE-2024-9529 Secure Custom Fields < 6.3.6.3 - Admin+ Remote Code Execution UnknownSecure Custom Fields--2024-11-15 06:00:08 Deep Dive
CVE-2024-10104 Jobs for WordPress < 2.7.8 - Contributor+ Stored XSS UnknownJobs for WordPress--2024-11-15 06:00:03 Deep Dive
CVE-2024-9186 Automation By Autonami < 3.3.0 - Unauthenticated SQLi UnknownRecover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit--2024-11-14 06:00:11 Deep Dive
CVE-2024-10146 Simple File List < 6.1.13 - Reflected Cross-Site Scripting UnknownSimple File List 中危 -2024-11-14 06:00:07 Deep Dive
CVE-2024-10820 WooCommerce Upload Files <= 84.3 - Unauthenticated Arbitrary File Upload UnknownWooCommerce Upload Files Critical 9.8 2024-11-13 03:20:08 Deep Dive
CVE-2024-9836 RSS Feed Widget < 3.0.0 - Contributor+ Stored XSS UnknownRSS Feed Widget--2024-11-12 06:00:05 Deep Dive
CVE-2024-9835 RSS Feed Widget < 3.0.1 - Reflected XSS UnknownRSS Feed Widget--2024-11-12 06:00:04 Deep Dive
CVE-2024-7982 Registrations for The Events Calendar < 2.12.4 - Unauthenticated Stored XSS UnknownRegistrations for the Events Calendar 超危 -2024-11-08 06:00:03 Deep Dive
CVE-2024-8378 Safe SVG < 2.2.6 - Author+ SVG Sanitisation Bypass UnknownSafe SVG--2024-11-07 15:07:37 Deep Dive
CVE-2024-9926 Jetpack < 13.9.1 - Subscriber+ Arbitrary Feedback Access UnknownJetpack--2024-11-07 15:02:38 Deep Dive
CVE-2024-10027 WP Booking Calendar < 10.6.3 - Admin+ Stored XSS UnknownWP Booking Calendar--2024-11-07 06:00:06 Deep Dive
CVE-2024-9934 Wp-ImageZoom <= 1.1.0 - Reflected XSS UnknownWp-ImageZoom--2024-11-06 06:00:07 Deep Dive
CVE-2024-7879 WP ULike < 4.7.5 - Admin+ Stored XSS via Widgets UnknownWP ULike--2024-11-06 06:00:06 Deep Dive
CVE-2024-9883 Pods < 3.2.7.1 - Admin+ Stored XSS UnknownPods--2024-11-05 06:00:09 Deep Dive
CVE-2024-9689 Post From Frontend <= 1.0.0 - Post Deletion via CSRF UnknownPost From Frontend--2024-11-05 06:00:08 Deep Dive