<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T16:36:30.608797+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cve-2024-13362</id>
    <title>CVE-2024-13362 — Freemius &lt;= 2.10.1 - Reflected DOM-Based Cross-Site Scripting via url Parameter</title>
    <updated>2026-10-07T16:36:30.624507+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> sebet Go Fetch Jobs (for WP Job Manager), 5starplugins Dynamic Copyright Year, peterschulznl Code Manager, bplugins Advanced Scrollbar – Custom Scrollbar Styling and Behavior, yuvalo Goal Tracker – Custom Event Tracking for GA4, essekia Tablesome Table – Contact Form DB – WPForms, CF7, Gravity, Forminator, Fluent, josevega WP Page Templates, hkdigitalagency Payment Gateway for ACBA BANK, princeahmed Dracula Dark Mode –  Accessibility, Reading Mode &amp; Dark Mode for WordPress, spiderdevs Forumax – AI Powered Advanced Community Forum Plugin and 121 more</p>
<p>Multiple plugins and/or themes for WordPress are vulnerable to Reflected Cross-Site Scripting via the url parameter in various versions due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cve-2024-13362"/>
  </entry>
</feed>
