Page last updated:

Type

Affected Software

Latest Version

Description

Severity

Date

  • Plugin

    WP Recipe Maker

    <=

    10.2.4

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    6.5

    0 days ago

    Type

    Plugin

    6.5

    Affected Software

    Latest Version

    <=

    10.2.4

    Description

    pulse_description

    0 days ago

  • Plugin

    Converter for Media

    <=

    6.4.0

    Broken Access Control – A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action.

    4.3

    0 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    6.4.0

    Description

    pulse_description

    0 days ago

  • Plugin

    Essential Addons for Elementor

    <=

    6.5.4

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    6.5

    0 days ago

    Type

    Plugin

    6.5

    Affected Software

    Latest Version

    <=

    6.5.4

    Description

    pulse_description

    0 days ago

  • Plugin

    Download Plugins and Themes from Dashboard

    <=

    1.9.7

    Cross Site Request Forgery (CSRF) – This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication.

    4.3

    0 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    1.9.7

    Description

    pulse_description

    0 days ago

  • Plugin

    Elementor Website Builder

    <=

    3.33.4

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    6.5

    2 days ago

    Type

    Plugin

    6.5

    Affected Software

    Latest Version

    <=

    3.33.4

    Description

    pulse_description

    2 days ago

  • Plugin

    Post Expirator

    <=

    4.9.3

    Broken Access Control – A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action.

    4.3

    2 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    4.9.3

    Description

    pulse_description

    2 days ago

  • Plugin

    Modula Image Gallery

    <=

    2.13.4

    Broken Access Control – A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action.

    4.3

    2 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    2.13.4

    Description

    pulse_description

    2 days ago

  • Plugin

    All In One SEO Pack

    <=

    4.9.1.1

    SQL Injection – This could allow a malicious actor to directly interact with your database, including but not limited to stealing information.

    8.5

    2 days ago

    Type

    Plugin

    8.5

    Affected Software

    Latest Version

    <=

    4.9.1.1

    Description

    pulse_description

    2 days ago

  • Plugin

    Elementor Addon Elements

    <=

    1.14.4

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    6.5

    2 days ago

    Type

    Plugin

    6.5

    Affected Software

    Latest Version

    <=

    1.14.4

    Description

    pulse_description

    2 days ago

  • Plugin

    MailerLite – Signup forms

    <=

    1.7.17

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    5.9

    3 days ago

    Type

    Plugin

    5.9

    Affected Software

    Latest Version

    <=

    1.7.17

    Description

    pulse_description

    3 days ago

  • Plugin

    WP Recipe Maker

    <=

    10.2.3

    Sensitive Data Exposure – This could allow a malicious actor to view sensitive information that is normally not available to regular users. This can be used to exploit other weaknesses in the system.

    4.3

    3 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    10.2.3

    Description

    pulse_description

    3 days ago

  • Plugin

    GenerateBlocks

    <=

    2.2.0

    Sensitive Data Exposure – This could allow a malicious actor to view sensitive information that is normally not available to regular users. This can be used to exploit other weaknesses in the system.

    4.3

    3 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    2.2.0

    Description

    pulse_description

    3 days ago

  • Plugin

    myCred

    <=

    2.9.7.1

    Broken Access Control – A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action.

    5.3

    3 days ago

    Type

    Plugin

    5.3

    Affected Software

    Latest Version

    <=

    2.9.7.1

    Description

    pulse_description

    3 days ago

  • Plugin

    Cookie Notice & Compliance for GDPR / CCPA

    <=

    2.5.9

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    5.5

    7 days ago

    Type

    Plugin

    5.5

    Affected Software

    Latest Version

    <=

    2.5.9

    Description

    pulse_description

    7 days ago

  • Plugin

    Ninja Tables

    <=

    5.0.19

    Server Side Request Forgery (SSRF) – This could allow a malicious actor to cause a website to execute website requests to an arbitrary domain of the attacker. This could allow a malicious actor to find sensitive information of other services running on the system.

    7.2

    7 days ago

    Type

    Plugin

    7.2

    Affected Software

    Latest Version

    <=

    5.0.19

    Description

    pulse_description

    7 days ago

  • Plugin

    WP Maps

    <=

    4.8.7

    PHP Object Injection – This could allow a malicious actor to execute code injection, SQL injection, path traversal, denial of service, and more if a proper POP chain is present.

    6.6

    8 days ago

    Type

    Plugin

    6.6

    Affected Software

    Latest Version

    <=

    4.8.7

    Description

    pulse_description

    8 days ago

  • Plugin

    All-in-One WP Migration

    <=

    7.0

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    5.9

    8 days ago

    Type

    Plugin

    5.9

    Affected Software

    Latest Version

    <=

    7.0

    Description

    pulse_description

    8 days ago

  • Plugin

    Pixel Manager for WooCommerce

    <=

    1.53.0

    Sensitive Data Exposure – This could allow a malicious actor to view sensitive information that is normally not available to regular users. This can be used to exploit other weaknesses in the system.

    5.3

    9 days ago

    Type

    Plugin

    5.3

    Affected Software

    Latest Version

    <=

    1.53.0

    Description

    pulse_description

    9 days ago

  • Plugin

    Cookie Notice & Compliance for GDPR / CCPA

    <=

    2.5.9

    Cross Site Scripting (XSS) – This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site.

    5.9

    9 days ago

    Type

    Plugin

    5.9

    Affected Software

    Latest Version

    <=

    2.5.9

    Description

    pulse_description

    9 days ago

  • Plugin

    WooCommerce PDF Invoices & Packing Slips

    <=

    5.0.0

    Broken Access Control – A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action.

    4.3

    9 days ago

    Type

    Plugin

    4.3

    Affected Software

    Latest Version

    <=

    5.0.0

    Description

    pulse_description

    9 days ago