Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-43988 Cross-site Scripting vulnerability in Digitalnature Mystique
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in digitalnature Mystique allows Stored XSS.This issue affects Mystique: from n/a through 2.5.7.
network
low complexity
digitalnature CWE-79
5.4
2024-09-18 CVE-2024-43991 Cross-site Scripting vulnerability in Webdzier Hotel Galaxy
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in webdzier Hotel Galaxy allows Stored XSS.This issue affects Hotel Galaxy: from n/a through 4.4.24.
network
low complexity
webdzier CWE-79
5.4
2024-09-18 CVE-2024-43992 Cross-site Scripting vulnerability in Latepoint
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Latepoint LatePoint allows Stored XSS.This issue affects LatePoint: from n/a through 4.9.91.
network
low complexity
latepoint CWE-79
5.4
2024-09-18 CVE-2024-43993 Cross-site Scripting vulnerability in Cryoutcreations Liquido
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Liquido allows Stored XSS.This issue affects Liquido: from n/a through 1.0.1.2.
network
low complexity
cryoutcreations CWE-79
5.4
2024-09-18 CVE-2024-43994 Cross-site Scripting vulnerability in Cryoutcreations Kahuna
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Kahuna allows Stored XSS.This issue affects Kahuna: from n/a through 1.7.0.
network
low complexity
cryoutcreations CWE-79
5.4
2024-09-18 CVE-2024-43995 Cross-site Scripting vulnerability in Sktthemes Posterity
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sonalsinha21 Posterity allows Stored XSS.This issue affects Posterity: from n/a through 3.6.
network
low complexity
sktthemes CWE-79
5.4
2024-09-18 CVE-2024-43999 Cross-site Scripting vulnerability in Ninjaforms Ninja Forms
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saturday Drive Ninja Forms allows Stored XSS.This issue affects Ninja Forms: from n/a through 3.8.11.
network
low complexity
ninjaforms CWE-79
4.8
2024-09-18 CVE-2024-44001 Cross-site Scripting vulnerability in Royal-Elementor-Addons Royal Elementor Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Royal Royal Elementor Addons allows Stored XSS.This issue affects Royal Elementor Addons: from n/a through 1.3.982.
network
low complexity
royal-elementor-addons CWE-79
5.4
2024-09-18 CVE-2024-44002 Cross-site Scripting vulnerability in Pickplugins Team Showcase
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins Team Showcase allows Reflected XSS.This issue affects Team Showcase: from n/a through 1.22.25.
network
low complexity
pickplugins CWE-79
6.1
2024-09-18 CVE-2024-44003 Cross-site Scripting vulnerability in Spicethemes Spice Starter Sites
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in spicethemes Spice Starter Sites allows Reflected XSS.This issue affects Spice Starter Sites: from n/a through 1.2.5.
network
low complexity
spicethemes CWE-79
6.1