Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-47311 Missing Authorization vulnerability in Kraft Plugins Wheel of Life wheel-of-life allows Exploiting Incorrectly Configured Access Control Security Lev… Wheel Of Life 1.1.9+ Fix from $2,3002024-11-01 MEDIUM 5.4 CVE-2024-49693 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kraft Plugins Mega Elements mega-elements-addon… Mega Elements 1.2.7+ Fix from $1,6002024-10-24 MEDIUM 5.4 CVE-2024-9172 The Demo Importer Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2… Demo Importer Plus 2.0.2+ Fix from $1,6002024-10-02 MEDIUM 5.4 CVE-2024-37466 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kraftplugins Mega Elements.This issue af… Mega Elements 1.2.3+ Fix from $1,6002024-07-21 MEDIUM 5.4 CVE-2024-3627 The Wheel of Life: Coaching and Assessment Tool for Life Coach plugin for WordPress is vulnerable to unauthorized modification and loss of data due t… Wheel Of Life after 1.1.7 Fix from $1,6002024-06-20 MEDIUM 5.4 CVE-2024-4702 The Mega Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Button widget in all versions up to, and includi… Mega Elements 1.2.2+ Fix from $1,6002024-05-15 MEDIUM 5.4 CVE-2024-32575 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kraftplugins Mega Elements allows Stored XSS.Th… Mega Elements 1.2.0+ Fix from $1,6002024-04-18