Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2024-11-21

CVE-2024-3966 - Pray For Me Plugin

The Pray For Me WordPress plugin through 1.0.4 does not sanitise and escape some parameters, which could unauthenticated visitors to perform Cross-Site Scripting attacks that trigger when an admin visits the Prayer Requests in the WP Admin

PLUGIN Pray For Me

CVE-2024-3966

MEDIUM CVSS 6.1 2024-06-14
Threat Entry Updated 2025-05-13

CVE-2024-3965 - Pray For Me Plugin

The Pray For Me WordPress plugin through 1.0.4 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

PLUGIN Pray For Me

CVE-2024-3965

MEDIUM CVSS 5.4 2024-06-14
Scroll to top