Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2024-13642
The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Hotspot widget in all versio…
Stratum
1.5.0+
MEDIUM 5.4
CVE-2024-10872
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `template-post-custom-field` block in all ver…
Getwid
after 2.0.12
CRITICAL 9.8
CVE-2020-36840
The Timetable and Event Schedule by MotoPress plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wp_…
Timetable And Event Schedule
2.3.9+
MEDIUM 5.3
CVE-2024-6489
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the get_go…
Getwid
after 2.0.10
MEDIUM 5.4
CVE-2024-3588
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown block in all versions up t…
Getwid
after 2.0.7
MEDIUM 5.4
CVE-2024-1948
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in all versions up to, and incl…
Getwid
2.0.6+
MEDIUM 5.3
CVE-2023-6963
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 2.0.4. This makes it possible fo…
Getwid
2.0.5+
HIGH 7.5
CVE-2023-6042
Any unauthenticated user may send e-mail from the site with any title or content to the admin
Getwid
2.0.3+
CRITICAL 9.8
CVE-2023-5991
The Hotel Booking Lite WordPress plugin before 4.8.5 does not validate file paths provided via user input, as well as does not have proper CSRF and a…
Hotel Booking Lite
4.8.5+
MEDIUM 6.1
CVE-2023-48756
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetBlocks For Elementor allows Refle…
Jetblocks For Elementor
after 1.3.8
HIGH 8.8
CVE-2023-28498
Cross-Site Request Forgery (CSRF) vulnerability in MotoPress Hotel Booking Lite plugin <= 4.6.0 versions.
Hotel Booking Lite
after 4.6.0
CRITICAL 9.6
CVE-2023-1895
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Server Side Request Forgery via the get_remote_content REST API endpoint in versi…
Getwid
after 1.8.3
MEDIUM 6.1
CVE-2022-2843
A vulnerability was found in MotoPress Timetable and Event Schedule. It has been rated as problematic. Affected by this issue is some unknown functio…
Timetable And Event Schedule
Mitigation only
MEDIUM 6.1
CVE-2022-2844
A vulnerability classified as problematic has been found in MotoPress Timetable and Event Schedule up to 1.4.06. This affects an unknown part of the …
Timetable And Event Schedule
after 1.4.06
MEDIUM 5.4
CVE-2021-24544
The Responsive WordPress Slider WordPress plugin through 2.2.0 does not sanitise and escape some of the Slider options, allowing Cross-Site Scripting…
Motopress Slider Lite
after 2.2.0
MEDIUM 6.5
CVE-2021-24585
The Timetable and Event Schedule WordPress plugin before 2.4.0 outputs the Hashed Password, Username and Email Address (along other less sensitive da…
Timetable And Event Schedule
2.4.0+
MEDIUM 5.4
CVE-2021-24584
The Timetable and Event Schedule WordPress plugin before 2.4.2 does not have proper access control when updating a timeslot, allowing any user with t…
Timetable And Event Schedule
2.4.2+
MEDIUM 5.4
CVE-2021-24724
The Timetable and Event Schedule by MotoPress WordPress plugin before 2.3.19 does not sanitise some of its parameters, which could allow low privileg…
Timetable And Event Schedule
2.3.19+