Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-10-28 CVE-2024-50448 Cross-site Scripting vulnerability in Yithemes Yith Woocommerce Product Add-Ons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Reflected XSS.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.14.1.
network
low complexity
yithemes CWE-79
6.1
2024-10-28 CVE-2024-50449 Cross-site Scripting vulnerability in Redefiningtheweb PDF Generator Addon for Elementor Page Builder
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in RedefiningTheWeb PDF Generator Addon for Elementor Page Builder allows Stored XSS.This issue affects PDF Generator Addon for Elementor Page Builder: from n/a through 1.7.4.
network
low complexity
redefiningtheweb CWE-79
5.4
2024-10-28 CVE-2024-50451 Cross-site Scripting vulnerability in Pluginus Meta Data and Taxonomies Filter
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Stored XSS.This issue affects WordPress Meta Data and Taxonomies Filter (MDTF): from n/a through 1.3.3.4.
network
low complexity
pluginus CWE-79
5.4
2024-10-28 CVE-2024-50458 Cross-site Scripting vulnerability in Wpcodeus Advanced Sermons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Codeus Advanced Sermons allows Stored XSS.This issue affects Advanced Sermons: from n/a through 3.4.
network
low complexity
wpcodeus CWE-79
5.4
2024-10-28 CVE-2024-50460 Cross-site Scripting vulnerability in Firelightwp Firelight Lightbox
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in FirelightWP Firelight Lightbox allows Stored XSS.This issue affects Firelight Lightbox: from n/a through 2.3.3.
network
low complexity
firelightwp CWE-79
4.8
2024-10-28 CVE-2024-50461 Cross-site Scripting vulnerability in Wpdeveloper Embedpress
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper EmbedPress allows Stored XSS.This issue affects EmbedPress: from n/a through 4.0.14.
network
low complexity
wpdeveloper CWE-79
5.4
2024-10-28 CVE-2024-50470 Cross-site Scripting vulnerability in Themes4Wp Youtube External Subtitles
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themes4WP Themes4WP YouTube External Subtitles allows Stored XSS.This issue affects Themes4WP YouTube External Subtitles: from n/a through 1.0.
network
low complexity
themes4wp CWE-79
5.4
2024-10-28 CVE-2024-50471 Cross-site Scripting vulnerability in Checklist Trip Plan
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Checklist Trip Plan allows Stored XSS.This issue affects Trip Plan: from n/a through 1.0.10.
network
low complexity
checklist CWE-79
5.4
2024-10-28 CVE-2024-50472 Cross-site Scripting vulnerability in Amilia Store
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Martin Drapeau Amilia Store allows Stored XSS.This issue affects Amilia Store: from n/a through 2.9.8.
network
low complexity
amilia CWE-79
5.4
2024-10-28 CVE-2024-50501 Cross-site Scripting vulnerability in Climaxthemes Kata Plus
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Climax Themes Kata Plus allows Stored XSS.This issue affects Kata Plus: from n/a through 1.4.7.
network
low complexity
climaxthemes CWE-79
5.4