| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-10683 | Contact Form 7 - PayPal & Stripe Add-on <= 2.3.1 - Reflected Cross-Site Scripting | scottpaterson | Contact Form 7 – PayPal & Stripe Add-on | Medium | 6.1 | 2024-11-09 06:41:25 | Deep Dive |
| CVE-2024-10687 | Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote, Sell via PayPal, Social Share Buttons <= 24.0.3 - Unauthenticated SQL Injection | contest-gallery | Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe | Critical | 9.8 | 2024-11-05 09:30:59 | Deep Dive |
| CVE-2024-48021 | WordPress Contact Form 7 – PayPal & Stripe Add-on plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability | Scott Paterson | Contact Form 7 – PayPal & Stripe Add-on | High | 7.1 | 2024-10-17 12:29:15 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-9592 | Easy PayPal Gift Certificate <= 1.2.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting via wpppgc_plugin_options | scottpaterson | Easy PayPal Gift Certificate | Medium | 6.1 | 2024-10-12 02:05:40 | Deep Dive |
| CVE-2024-8476 | Easy PayPal Events <= 1.2.1 - Cross-Site Request Forgery to Arbitrary Post Deletion | scottpaterson | Easy PayPal Events & Tickets | Medium | 4.3 | 2024-09-25 02:05:13 | Deep Dive |
| CVE-2024-7861 | Misiek Paypal <= 1.1.20090324 - Stored XSS via CSRF | Unknown | Misiek Paypal | - | - | 2024-09-12 06:00:06 | Deep Dive |
| CVE-2024-43236 | WordPress Easy PayPal & Stripe Buy Now Button plugin <= 1.9 - Open Redirection vulnerability | Scott Paterson | Easy PayPal Buy Now Button | Medium | 4.7 | 2024-08-19 17:05:18 | Deep Dive |
| CVE-2024-33966 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:21:22 | Deep Dive |
| CVE-2024-33965 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:20:53 | Deep Dive |
| CVE-2024-33964 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:20:18 | Deep Dive |
| CVE-2024-33963 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:19:44 | Deep Dive |
| CVE-2024-33962 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:19:05 | Deep Dive |
| CVE-2024-33961 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:18:02 | Deep Dive |
| CVE-2024-33960 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:17:26 | Deep Dive |
| CVE-2024-33959 | SQL injection in Janobe products | Janobe | Janobe PayPal | Critical | 9.8 | 2024-08-06 11:12:58 | Deep Dive |
| CVE-2024-33981 | Cross-site Scripting in Janobe products | Janobe | Janobe PayPal | High | 7.1 | 2024-08-06 11:06:41 | Deep Dive |
| CVE-2024-33980 | Cross-site Scripting in Janobe products | Janobe | Janobe PayPal | High | 7.1 | 2024-08-06 11:05:42 | Deep Dive |
| CVE-2024-33979 | Cross-site Scripting in Janobe products | Janobe | Janobe PayPal | High | 7.1 | 2024-08-06 11:04:43 | Deep Dive |
| CVE-2024-6021 | Donation Block for PayPal <= 2.1.0 - Unauthenticated Stored XSS | Unknown | Donation Block For PayPal | - | - | 2024-07-30 06:00:10 | Deep Dive |