Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-40120 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XSS.This issue affects Enter Addons: from n/a through 2.1.7. |
Wed, 22 Jan 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Themelooks
Themelooks enter Addons |
|
| CPEs | cpe:2.3:a:themelooks:enter_addons:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Themelooks
Themelooks enter Addons |
Wed, 14 Aug 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 Aug 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks Enter Addons allows Stored XSS.This issue affects Enter Addons: from n/a through 2.1.7. | |
| Title | WordPress Enter Addons plugin <= 2.1.7 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:10:09.865Z
Reserved: 2024-08-09T09:20:01.691Z
Link: CVE-2024-43225
Updated: 2024-08-14T13:49:51.417Z
Status : Analyzed
Published: 2024-08-12T22:15:12.293
Modified: 2025-01-22T22:11:05.443
Link: CVE-2024-43225
No data.
OpenCVE Enrichment
No data.
EUVD