Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-08 CVE-2024-35714 Cross-site Scripting vulnerability in Themefreesia Idyllic
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Theme Freesia Idyllic allows Stored XSS.This issue affects Idyllic: from n/a through 1.1.8.
network
low complexity
themefreesia CWE-79
5.4
2024-06-08 CVE-2024-35715 Cross-site Scripting vulnerability in Peregrine-Themes Bloglo
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in peregrinethemes Bloglo, peregrinethemes Blogvi allows Stored XSS.This issue affects Bloglo: from n/a through 1.1.3; Blogvi: from n/a through 1.0.5.
network
low complexity
peregrine-themes CWE-79
5.4
2024-06-08 CVE-2024-35718 Cross-site Scripting vulnerability in Tribulant Newsletters
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tribulant Newsletters allows Reflected XSS.This issue affects Newsletters: from n/a through 4.9.5.
network
low complexity
tribulant CWE-79
6.1
2024-06-08 CVE-2024-35719 Cross-site Scripting vulnerability in Magnigenie Restropress
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MagniGenie RestroPress allows Stored XSS.This issue affects RestroPress: from n/a through 3.1.2.1.
network
low complexity
magnigenie CWE-79
5.4
2024-06-08 CVE-2024-35730 Cross-site Scripting vulnerability in Pluginus Woot
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in realmag777 Active Products Tables for WooCommerce allows Reflected XSS.This issue affects Active Products Tables for WooCommerce: from n/a through 1.0.6.3.
network
low complexity
pluginus CWE-79
6.1
2024-06-08 CVE-2024-35731 Cross-site Scripting vulnerability in Wpmoose Kenta Blocks
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Moose Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor allows Stored XSS.This issue affects Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor: from n/a through 1.3.9.
network
low complexity
wpmoose CWE-79
5.4
2024-06-08 CVE-2024-35732 Cross-site Scripting vulnerability in Yithemes Yith Custom Login
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in YITH YITH Custom Login allows Stored XSS.This issue affects YITH Custom Login: from n/a through 1.7.0.
network
low complexity
yithemes CWE-79
4.8
2024-06-08 CVE-2024-35733 Cross-site Scripting vulnerability in Richardlerma Auto Coupons for Woocommerce
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in RLDD Auto Coupons for WooCommerce allows Reflected XSS.This issue affects Auto Coupons for WooCommerce: from n/a through 3.0.14.
network
low complexity
richardlerma CWE-79
6.1
2024-06-08 CVE-2024-35734 Cross-site Scripting vulnerability in Codepeople WP Time Slots Booking Form
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CodePeople WP Time Slots Booking Form allows Stored XSS.This issue affects WP Time Slots Booking Form: from n/a through 1.2.10.
network
low complexity
codepeople CWE-79
6.1
2024-06-08 CVE-2024-35737 Cross-site Scripting vulnerability in Loopus WP Visitors Tracker
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Loopus WP Visitors Tracker allows Reflected XSS.This issue affects WP Visitors Tracker: from n/a through 2.3.
network
low complexity
loopus CWE-79
6.1