Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-22 CVE-2024-37100 Cross-site Scripting vulnerability in Threeroutesmedia Elegant Themes Icons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Mayur Somani, threeroutes media Elegant Themes Icons allows Stored XSS.This issue affects Elegant Themes Icons: from n/a through 1.3.
network
low complexity
threeroutesmedia CWE-79
5.4
2024-07-22 CVE-2024-37101 Cross-site Scripting vulnerability in Afthemes WP Post Author
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AF themes WP Post Author allows Stored XSS.This issue affects WP Post Author: from n/a through 3.6.7.
network
low complexity
afthemes CWE-79
5.4
2024-07-22 CVE-2024-37114 Cross-site Scripting vulnerability in Takashimatsuyama MY Favorites
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Takashi Matsuyama My Favorites allows Stored XSS.This issue affects My Favorites: from n/a through 1.4.1.
network
low complexity
takashimatsuyama CWE-79
5.4
2024-07-22 CVE-2024-37116 Cross-site Scripting vulnerability in Sinatrateam Sinatra
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sinatrateam Sinatra allows Stored XSS.This issue affects Sinatra: from n/a through 1.3.
network
low complexity
sinatrateam CWE-79
5.4
2024-07-22 CVE-2024-37117 Cross-site Scripting vulnerability in Uncannyowl Uncanny Automator
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uncanny Owl Uncanny Automator Pro allows Reflected XSS.This issue affects Uncanny Automator Pro: from n/a through 5.3.
network
low complexity
uncannyowl CWE-79
6.1
2024-07-22 CVE-2024-37120 Cross-site Scripting vulnerability in Oxilab Responsive Tabs
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Tabs allows Stored XSS.This issue affects Tabs: from n/a through 4.0.6.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37121 Cross-site Scripting vulnerability in Oxilab Shortcode Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in biplob018 Shortcode Addons allows Stored XSS.This issue affects Shortcode Addons: from n/a through 3.2.5.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37122 Cross-site Scripting vulnerability in Oxilab Accordions
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Accordions allows Stored XSS.This issue affects Accordions: from n/a through 2.3.5.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37199 Cross-site Scripting vulnerability in Kriesi Enfold
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kriesi.At Enfold allows Reflected XSS.This issue affects Enfold: from n/a through 5.6.9.
network
low complexity
kriesi CWE-79
6.1
2024-07-22 CVE-2024-37206 Cross-site Scripting vulnerability in Theme4Press Demo Awesome 1.0.0/1.0.1
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Theme4Press Demo Awesome allows Reflected XSS.This issue affects Demo Awesome: from n/a through 1.0.1.
network
low complexity
theme4press CWE-79
6.1