Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total3
Critical0
High0
Medium3
Reset
Showing 1-3 of 3 records
Threat Entry Updated 2024-11-21

CVE-2024-4477 - Wp Logs Book Plugin

The WP Logs Book WordPress plugin through 1.0.1 does not sanitise and escape some of its log data before outputting them back in an admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting

PLUGIN Wp Logs Book

CVE-2024-4477

MEDIUM CVSS 5.4 2024-06-21
Threat Entry Updated 2024-11-21

CVE-2024-4475 - Wp Logs Book Plugin

The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check when clearing logs, which could allow attackers to make a logged in admin clear the logs them via a CSRF attack

PLUGIN Wp Logs Book

CVE-2024-4475

MEDIUM CVSS 4.3 2024-06-21
Threat Entry Updated 2024-11-21

CVE-2024-4474 - Wp Logs Book Plugin

The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

PLUGIN Wp Logs Book

CVE-2024-4474

MEDIUM CVSS 4.3 2024-06-21
Scroll to top