LiveActive security incident?Get immediate response
CVE archive

November 2024

Browse CVE records published in November 2024, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 3810 matching CVEs · Page 4 of 77.

Medium · CVSS 6.5

CVE-2024-52347: WordPress Website remote Install vor Gravity, WPForms, Formidable, Ninja, Caldera plugin <= 4.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpwebsitecreator Website remote Install vor Gravity, WPForms, Formidable, Ninja, Caldera wp-website-creator allows Stored XSS.This issue affects Website remote Install vor Gravity, WPForms, Formidable, Ninja, Caldera: from n/a through <= 4.0.

Published Nov 18, 2024 · Updated May 11, 2026