Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total3
Critical0
High0
Medium3
Reset
Showing 1-3 of 3 records
Threat Entry Updated 2024-09-25

CVE-2024-6641 - Wp Hardening Plugin

The WP Hardening – Fix Your WordPress Security plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to, and including, 1.2.6. This is due to use of an incorrect regular expression within the "Stop User Enumeration" feature. This makes it possible for unauthenticated attackers to bypass intended security restrictions and expose site usernames.

PLUGIN Wp Hardening

CVE-2024-6641

MEDIUM CVSS 5.3 2024-09-18
Threat Entry Updated 2024-11-21

CVE-2021-24373 - Wp Hardening Plugin

The WP Hardening – Fix Your WordPress Security WordPress plugin before 1.2.2 did not sanitise or escape the historyvalue GET parameter before outputting it in a Javascript block, leading to a reflected Cross-Site Scripting issue.

PLUGIN Wp Hardening

CVE-2021-24373

MEDIUM CVSS 6.1 2021-06-21
Threat Entry Updated 2024-11-21

CVE-2021-24372 - Wp Hardening Plugin

The WP Hardening – Fix Your WordPress Security WordPress plugin before 1.2.2 did not sanitise or escape the $_SERVER['REQUEST_URI'] before outputting it in an attribute, leading to a reflected Cross-Site Scripting issue.

PLUGIN Wp Hardening

CVE-2021-24372

MEDIUM CVSS 6.1 2021-06-21
Scroll to top