Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Enter Addons MEDIUM 5.4
CVE-2024-56252

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themelooks Enter Addons enteraddons allows Stor…

Fix: after 2.1.9
Fix from $1,600 2025-01-02
Mfolio HIGH 8.8
CVE-2024-9307

The mFolio Lite plugin for WordPress is vulnerable to file uploads due to a missing capability check in all versions up to, and including, 1.2.1. Thi…

Fix: after 1.2.1
Fix from $1,950 2024-11-06
Enter Addons MEDIUM 5.4
CVE-2024-47625

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themelooks Enter Addons enteraddons allows Stor…

Fix: 2.1.9+
Fix from $1,600 2024-10-05
Enter Addons MEDIUM 5.4
CVE-2024-7611

The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' attribute …

Fix: after 2.1.9
Fix from $1,600 2024-09-06
Enter Addons MEDIUM 5.4
CVE-2024-43225

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XS…

Fix: 2.1.8+
Fix from $1,600 2024-08-12
Enter Addons MEDIUM 5.4
CVE-2024-37263

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons enteraddons allo…

Fix: 2.1.7+
Fix from $1,600 2024-07-22
Enter Addons MEDIUM 5.4
CVE-2024-3831

The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading widget i…

Fix: 2.1.6+
Fix from $1,600 2024-05-14
Enter Addons MEDIUM 5.4
CVE-2024-3680

The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Animation Title …

Fix: 2.1.6+
Fix from $1,600 2024-05-14