Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.8

    CRITICAL
    CVE-2017-18543

    The invite-anyone plugin before 1.3.16 for WordPress has incorrect access control for email-based invitations.... Read more

    Affected Products : invite_anyone invite_anyone_plugin
    • Published: Aug. 16, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18542

    The zendesk-help-center plugin before 1.0.5 for WordPress has multiple XSS issues.... Read more

    Affected Products : zendesk_help_center
    • Published: Aug. 16, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18541

    The xo-security plugin before 1.5.3 for WordPress has XSS.... Read more

    Affected Products : xo_security
    • Published: Aug. 16, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18540

    The weblibrarian plugin before 3.4.8.7 for WordPress has XSS via front-end short codes.... Read more

    Affected Products : weblibrarian
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18539

    The weblibrarian plugin before 3.4.8.6 for WordPress has XSS via front-end short codes.... Read more

    Affected Products : weblibrarian
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18538

    The weblibrarian plugin before 3.4.8.5 for WordPress has XSS via front-end short codes.... Read more

    Affected Products : weblibrarian
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18537

    The visitors-online plugin before 1.0.0 for WordPress has multiple XSS issues.... Read more

    Affected Products : visitors_online
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18536

    The stop-user-enumeration plugin before 1.3.8 for WordPress has XSS.... Read more

    Affected Products : stop_user_enumeration
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18535

    The smokesignal plugin before 1.2.7 for WordPress has XSS.... Read more

    Affected Products : smokesignal
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18534

    The share-on-diaspora plugin before 0.7.2 for WordPress has reflected XSS in share URL parameters.... Read more

    Affected Products : share_on_diaspora
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18533

    The rimons-twitter-widget plugin before 1.3 for WordPress has XSS.... Read more

    Affected Products : rimons_twitter_widget
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18532

    The realty plugin before 1.1.0 for WordPress has multiple XSS issues.... Read more

    Affected Products : realty
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18531

    The raygun4wp plugin before 1.8.3 for WordPress has XSS in the settings, a different issue than CVE-2017-9288.... Read more

    Affected Products : raygun4wp
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18530

    The rating-bws plugin before 0.2 for WordPress has multiple XSS issues.... Read more

    Affected Products : rating
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18529

    The promobar plugin before 1.1.1 for WordPress has multiple XSS issues.... Read more

    Affected Products : promobar
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18528

    The pdf-print plugin before 1.9.4 for WordPress has multiple XSS issues.... Read more

    Affected Products : pdf_\&_print
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18527

    The pagination plugin before 1.0.7 for WordPress has multiple XSS issues.... Read more

    Affected Products : pagination
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18526

    The moreads-se plugin before 1.4.7 for WordPress has XSS.... Read more

    Affected Products : moreads_se
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2017-18525

    The megamenu plugin before 2.4 for WordPress has XSS.... Read more

    Affected Products : max_mega_menu
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2017-18523

    The eelv-newsletter plugin before 4.6.1 for WordPress has CSRF in the address book.... Read more

    Affected Products : eelv_newsletter
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 292815 Results