Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

unknown — Vulnerabilities & Security Advisories 4143

Browse all 4143 CVE security advisories affecting unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24266 The Plus Addons for Elementor Page Builder Lite < 2.0.6 - Contributor+ Stored XSS — The Plus Addons for Elementor Page Builder LiteCWE-79 5.4 -2021-05-05
CVE-2021-24267 All-in-One Addons for Elementor - WidgetKit < 2.3.10 - Contributor+ Stored XSS — All-in-One Addons for Elementor – WidgetKitCWE-79 5.4 -2021-05-05
CVE-2021-24268 JetWidgets For Elementor < 1.0.9 - Contributor+ Stored XSS — JetWidgets For ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24269 Sina Extension for Elementor < 3.3.12 - Contributor+ Stored XSS — Sina Extension for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24270 DethemeKit For Elementor < 1.5.5.5 - Contributor+ Stored XSS — DethemeKit For ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24271 Ultimate Addons for Elementor < 1.30.0 - Contributor+ Stored XSS — Ultimate Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24272 Fitness Calculators < 1.9.6 - Cross-Site Request Forgery to Cross-Site Scripting (XSS) — fitness calculatorsCWE-352 4.3 -2021-05-05
CVE-2021-24257 Premium Addons for Elementor < 4.2.8 - Contributor+ Stored Cross-Site Scripting (XSS) — Premium Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24259 Elementor Addon Elements < 1.11.2 - Contributor+ Stored XSS — Elementor Addon ElementsCWE-79 5.4 -2021-05-05
CVE-2021-24260 Livemesh Addons for Elementor < 6.8 - Contributor+ Stored XSS — Livemesh Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24261 HT Mega - Absolute Addons for Elementor Page Builder < 1.5.7 - Contributor+ Stored XSS — HT Mega – Absolute Addons for Elementor Page BuilderCWE-79 5.4 -2021-05-05
CVE-2021-24262 WooLentor - WooCommerce Elementor Addons + Builder < 1.8.6 - Contributor+ Stored XSS — WooLentor – WooCommerce Elementor Addons + BuilderCWE-79 5.4 -2021-05-05
CVE-2021-24263 PowerPack Addons for Elementor < 2.3.2 - Contributor+ Stored XSS — PowerPack Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24264 Image Hover Effects - Elementor Addon < 1.3.4 - Contributor+ Stored XSS — Image Hover Effects – Elementor AddonCWE-79 5.4 -2021-05-05
CVE-2021-24255 Essential Addons for Elementor < 4.5.4 - Contributor+ Stored Cross-Site Scripting (XSS) — Essential Addons for ElementorCWE-79 5.4 -2021-05-05
CVE-2021-24256 Elementor - Header, Footer & Blocks Template < 1.5.8 - Contributor+ Stored XSS — Elementor – Header, Footer & Blocks TemplateCWE-79 5.4 -2021-05-05
CVE-2021-24239 Pie Register < 3.7.0.1 - Reflected Cross-Site Scripting (XSS) — Pie Register – User Registration Forms. Invitation based registrations, Custom Login, PaymentsCWE-79 6.1 -2021-04-22
CVE-2021-24240 Business Hours Pro <= 5.5.0 - Unauthenticated Arbitrary File Upload to RCE — Business Hours ProCWE-434 9.8 -2021-04-22
CVE-2021-24241 Advanced Custom Field Pro < 5.9.1 - Reflected Cross-Site Scripting (XSS) — Advanced Custom Fields ProCWE-79 6.1 -2021-04-22
CVE-2021-24232 Advanced Booking Calendar < 1.6.8 - Authenticated Reflected Cross-Site Scripting (XSS) — Advanced Booking CalendarCWE-79 5.4 -2021-04-22
CVE-2021-24233 Cooked Pro < 1.7.5.6 - Unauthenticated Reflected Cross Site Scripting (XSS) — Cooked PproCWE-79 6.1 -2021-04-22
CVE-2021-24234 Ivory Search < 4.6.1 - Reflected Cross Site Scripting (XSS) — Ivory Search – WordPress Search PluginCWE-79 6.1 -2021-04-22
CVE-2021-24235 Goto - Tour & Travel < 2.0 - Unauthenticated Reflected XSS — GotoCWE-79 6.1 -2021-04-22
CVE-2021-24231 Patreon WordPress < 1.7.0 - CSRF to Disconnect Sites From Patreon — Patreon WordPressCWE-352 6.5 -2021-04-12
CVE-2021-24230 Patreon WordPress < 1.7.0 - CSRF to Overwrite/Create User Meta — Patreon WordPressCWE-352 6.5 -2021-04-12
CVE-2021-24229 Patreon WordPress < 1.7.2 - Reflected XSS on patreon_save_attachment_patreon_level AJAX action — Patreon WordPressCWE-79 9.6 -2021-04-12
CVE-2021-24228 Patreon WordPress < 1.7.2 - Reflected XSS on Login Form — Patreon WordPressCWE-79 9.6 -2021-04-12
CVE-2021-24227 Patreon WordPress < 1.7.0 - Unauthenticated Local File Disclosure — Patreon WordPressCWE-200 7.5 -2021-04-12
CVE-2021-24226 AccessAlly < 3.5.7 - $_SERVER Superglobal Leakage — AccessAllyCWE-200 7.5 -2021-04-12
CVE-2021-24225 Advanced Booking Calendar < 1.6.7 - Authenticated Reflected Cross-Site Scripting (XSS) — Advanced Booking CalendarCWE-79 5.4 -2021-04-12

This page lists every published CVE security advisory associated with unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.