High-risk CVEs that may require verification and impact analysis.
If you'd like to receive notifications about CVE information stored in this repository, please join the following channel. It's free.
Notifications about "high-risk CVEs requiring analysis" will be sent out in the following format:
2024-05-17 16:01:14.057010 (UTC +09:00)
1. CVE-2024-34752
[PluginOps] Landing Page Builder
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
vulnerability in PluginOps Landing Page Bui...
>>> https://www.cve.org/CVERecord?id=CVE-2024-34752 <<<
Assigner: Patchstack
Published: 2024-05-17T06:01:38.329Z
Updated: 2024-05-17T06:01:38.329Z
Score: 7.1 (HIGH)
CWE: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Affected.
(1) Landing Page Builder: n/a <= 1.5.1.8
References.
(1) https://patchstack.com/database/vulnerability/page-builder-add/wordpress-landing-page-builder-1-5-1-8-cross-site-scripting-xss-vulnerability?_s_id=cve
Interesting.
Plugin, Improper Neutralization