CVE-2024-30424
- EPSS 0.06%
- Published 19.11.2024 22:15:20
- Last modified 25.11.2024 15:07:22
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPZOOM Beaver Builder Addons by WPZOOM allows Stored XSS.This issue affects Beaver Builder Addons by WPZOOM: from n/a through 1.3.4.
CVE-2024-37464
- EPSS 0.38%
- Published 09.07.2024 12:15:13
- Last modified 08.01.2025 15:58:49
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPZOOM Beaver Builder Addons by WPZOOM allows Path Traversal.This issue affects Beaver Builder Addons by WPZOOM: from n/a through 1.3.5.
CVE-2024-2183
- EPSS 0.23%
- Published 09.04.2024 19:15:29
- Last modified 09.01.2025 17:18:25
The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading widget in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping. This makes it possibl...
CVE-2024-2185
- EPSS 0.23%
- Published 09.04.2024 19:15:29
- Last modified 07.01.2025 20:42:49
The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Box widget in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping. This makes it possi...
CVE-2024-2186
- EPSS 0.23%
- Published 09.04.2024 19:15:29
- Last modified 07.01.2025 20:42:22
The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Members widget in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping. This makes it po...
CVE-2024-2187
- EPSS 0.33%
- Published 09.04.2024 19:15:29
- Last modified 09.01.2025 17:06:43
The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Testimonials widget in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping. This makes it po...
CVE-2024-2181
- EPSS 0.23%
- Published 09.04.2024 19:15:28
- Last modified 09.01.2025 17:23:38
The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Button widget in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping. This makes it possible...