Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
Threat Entry
Updated 2024-11-21
CVE-2021-34661 - Wp Fusion Lite Plugin
The WP Fusion Lite WordPress plugin is vulnerable to Cross-Site Request Forgery via the `show_logs_section` function found in the ~/includes/admin/logging/class-log-handler.php file which allows attackers to drop all logs for the plugin, in versions up to and including 3.37.18.
PLUGIN
Wp Fusion Lite
CVE-2021-34661
Risk Score
Threat Entry
Updated 2024-11-21
CVE-2021-34660 - Wp Fusion Lite Plugin
The WP Fusion Lite WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the startdate parameter found in the ~/includes/admin/logging/class-log-table-list.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 3.37.18.
PLUGIN
Wp Fusion Lite
CVE-2021-34660
Risk Score
