| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-54419 | WordPress Ui Slider Filter By Price plugin <= 1.1 - Cross Site Request Forgery (CSRF) vulnerability | chenyenming | Ui Slider Filter By Price | Medium | 5.4 | 2024-12-16 14:14:10 | Deep Dive |
| CVE-2024-54391 | WordPress WordPress Filter plugin <= 1.4.1 - CSRF to Stored XSS vulnerability | mattwalters | WordPress Filter | High | 7.1 | 2024-12-16 14:14:06 | Deep Dive |
| CVE-2024-54254 | WordPress Message Filter for Contact Form 7 plugin <= 1.6.3 - Broken Access Control vulnerability | Kofi Mokome | Message Filter for Contact Form 7 | Medium | 6.3 | 2024-12-09 12:42:13 | Deep Dive |
| CVE-2023-50877 | WordPress Product Filter by WBW plugin <= 2.5.0 - Broken Access Control vulnerability | WBW Plugins | Product Filter by WBW | Medium | 4.3 | 2024-12-09 11:29:58 | Deep Dive |
| CVE-2024-12026 | Message Filter for Contact Form 7 <= 1.6.3 - Missing Authorization to Authenticated (Subscriber+) New Filter Creation | kofimokome | Message Filter for Contact Form 7 | Medium | 4.3 | 2024-12-07 01:45:50 | Deep Dive |
| CVE-2024-12027 | Message Filter for Contact Form 7 <= 1.6.3 - Missing Authorization to Authenticated (Subscriber+) Filter Updates/Deletions | kofimokome | Message Filter for Contact Form 7 | Medium | 4.3 | 2024-12-06 08:24:53 | Deep Dive |
| CVE-2024-11400 | HUSKY – Products Filter for WooCommerce <= 1.3.6.3 - Reflected Cross-Site Scripting via really_curr_tax Parameter | realmag777 | HUSKY – Products Filter Professional for WooCommerce | Medium | 6.1 | 2024-11-19 21:31:52 | Deep Dive |
| CVE-2024-51643 | WordPress Amazon Associate Filter plugin <= 0.4 - CSRF to Stored XSS vulnerability | ragaskar | Amazon Associate Filter | High | 7.1 | 2024-11-19 16:32:25 | Deep Dive |
| CVE-2024-51886 | WordPress Posts Filter plugin <= 1.3.1 - Stored Cross Site Scripting (XSS) vulnerability | Takashi Matsuyama | Posts Filter | Medium | 6.5 | 2024-11-19 16:31:16 | Deep Dive |
| CVE-2024-51717 | WordPress Ajax Content Filter plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Perception System System Pvt. Ltd. | Ajax Content Filter | High | 7.1 | 2024-11-09 11:55:56 | Deep Dive |
| CVE-2024-10871 | Category Ajax Filter <= 2.8.2 - Unauthenticated Local File Inclusion | trustyplugins | Category AJAX Filter – Advanced Filter for Posts & Custom Post Types | Critical | 9.8 | 2024-11-09 07:35:03 | Deep Dive |
| CVE-2024-39664 | WordPress Filter & Grids plugin <= 2.8.32 - Broken Authentication vulnerability | YMC | Filter & Grids | High | 7.3 | 2024-11-01 14:17:51 | Deep Dive |
| CVE-2024-49691 | WordPress Product Filter by WBW plugin <= 2.7.0 - SQL Injection vulnerability | WBW Plugins | Product Filter by WBW | High | 7.6 | 2024-10-24 12:06:25 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2021-4444 | Product Filter by WooBeWoo <= 1.4.9 - Missing Authorization | woobewoo | Product Filter for WooCommerce by WBW | High | 7.3 | 2024-10-16 06:43:27 | Deep Dive |
| CVE-2024-44046 | WordPress Themify plugin <= 1.5.1 - Cross Site Scripting (XSS) vulnerability | themifyme | Themify – WooCommerce Product Filter | Medium | 5.9 | 2024-10-06 11:48:35 | Deep Dive |
| CVE-2024-7491 | HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.1 - Insecure Direct Object Reference to Unsubscribe | realmag777 | HUSKY – Products Filter Professional for WooCommerce | Medium | 5.3 | 2024-09-25 02:05:26 | Deep Dive |
| CVE-2024-8623 | MDTF – Meta Data and Taxonomies Filter <= 1.3.3.3 - Unauthenticated Arbitrary Shortcode Execution | realmag777 | MDTF – Meta Data and Taxonomies Filter | High | 7.3 | 2024-09-24 02:31:02 | Deep Dive |
| CVE-2024-8624 | MDTF – Meta Data and Taxonomies Filter <= 1.3.3.3 - Authenticated (Contributor+) SQL Injection | realmag777 | MDTF – Meta Data and Taxonomies Filter | Critical | 9.9 | 2024-09-24 02:31:02 | Deep Dive |
| CVE-2024-25561 | Intel HID Event Filter 安全漏洞 | - | Intel(R) HID Event Filter software installers | Medium | 6.7 | 2024-08-14 13:45:30 | Deep Dive |