Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total3
Critical0
High2
Medium1
Reset
Showing 1-3 of 3 records
Threat Entry Updated 2026-01-28

CVE-2024-29142 - Better Search Plugin

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebberZone Better Search – Relevant search results for WordPress allows Stored XSS.This issue affects Better Search – Relevant search results for WordPress: from n/a through 3.3.0.

PLUGIN Better Search

CVE-2024-29142

HIGH CVSS 7.1 2024-03-19
Threat Entry Updated 2026-04-08

CVE-2021-4400 - Better Search Plugin

The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.2. This is due to missing or incorrect nonce validation on the bsearch_process_settings_import() and bsearch_process_settings_export() functions. This makes it possible for unauthenticated attackers to import and export settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

PLUGIN Better Search

CVE-2021-4400

MEDIUM CVSS 4.3 2023-07-01
Threat Entry Updated 2026-04-08

CVE-2021-4373 - Better Search Plugin

The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.2. This makes it possible for unauthenticated attackers to import settings via forged request granted they can trick a site administrator into performing an action such as clicking on a link.

PLUGIN Better Search

CVE-2021-4373

HIGH CVSS 8.8 2023-06-07
Scroll to top