Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43515 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Abdullah Irfan DocumentPress allows Reflected XSS.This issue affects DocumentPress: from n/a through 2.1. |
Thu, 23 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Abdullah Irfan DocumentPress allows Reflected XSS.This issue affects DocumentPress: from n/a through 2.1. | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fifthsegment DocumentPress documentpress-display-any-document-on-your-site allows Reflected XSS.This issue affects DocumentPress: from n/a through <= 2.1. |
| References | ||
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 01 Nov 2024 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Abdullahirfan
Abdullahirfan documentpress |
|
| CPEs | cpe:2.3:a:abdullahirfan:documentpress:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Abdullahirfan
Abdullahirfan documentpress |
Tue, 29 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Abdullah Irfan
Abdullah Irfan document Press |
|
| CPEs | cpe:2.3:a:abdullah_irfan:document_press:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Abdullah Irfan
Abdullah Irfan document Press |
|
| Metrics |
ssvc
|
Tue, 29 Oct 2024 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Abdullah Irfan DocumentPress allows Reflected XSS.This issue affects DocumentPress: from n/a through 2.1. | |
| Title | WordPress DocumentPress plugin <= 2.1 - Reflected Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-05-12T23:07:36.383Z
Reserved: 2024-10-17T09:51:54.462Z
Link: CVE-2024-49656
Updated: 2024-10-29T14:14:42.983Z
Status : Modified
Published: 2024-10-29T12:15:05.073
Modified: 2026-04-23T15:19:46.447
Link: CVE-2024-49656
No data.
OpenCVE Enrichment
No data.
EUVD