Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2024-11-21

CVE-2021-24683 - Weather Effect Plugin

The Weather Effect WordPress plugin before 1.3.4 does not have any CSRF checks in place when saving its settings, and do not validate or escape them, which could lead to Stored Cross-Site Scripting issue.

PLUGIN Weather Effect

CVE-2021-24683

MEDIUM CVSS 5.4 2021-10-11
Threat Entry Updated 2024-11-21

CVE-2021-24709 - Weather Effect Plugin

The Weather Effect WordPress plugin before 1.3.6 does not properly validate and escape some of its settings (like *_size_leaf, *_flakes_leaf, *_speed) which could lead to Stored Cross-Site Scripting issues

PLUGIN Weather Effect

CVE-2021-24709

MEDIUM CVSS 4.8 2021-10-11
Scroll to top