Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

unknown — Vulnerabilities & Security Advisories 4143

Browse all 4143 CVE security advisories affecting unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2024-10939 Image Widget < 4.4.11 - Admin+ Stored XSS — Image Widget 4.8 -2024-12-13
CVE-2024-10678 Ultimate Blocks < 3.2.4 - Contributor+ Stored XSS — Ultimate Blocks 5.4 -2024-12-13
CVE-2024-9641 LuckyWP Table of Contents < 2.1.7 - Admin+ Stored XSS — LuckyWP Table of Contents 4.8 -2024-12-12
CVE-2024-9428 Popup Builder < 4.3.5 - Admin+ Stored XSS — Popup Builder 4.8 -2024-12-12
CVE-2024-9881 LearnPress < 4.2.7.2 - Admin+ Stored XSS — LearnPress 4.8 -2024-12-12
CVE-2024-10637 Kadence Blocks < 3.2.54 - Admin+ Stored XSS — Gutenberg Blocks with AI by Kadence WP 5.4 -2024-12-12
CVE-2024-10568 Ajax Search Lite < 4.12.4 - Admin+ Stored XSS — Ajax Search Lite 4.8 -2024-12-12
CVE-2024-10518 ProfilePress < 4.15.15 - Admin+ Stored XSS — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 4.8 -2024-12-12
CVE-2024-10517 ProfilePress < 4.15.15 - Admin+ Stored XSS — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 4.8 -2024-12-12
CVE-2024-10499 AI-Engine < 2.6.5 - Admin+ SQLi — AI Engine 7.2 -2024-12-12
CVE-2024-10010 LearnPress < 4.2.7.2 - Admin+ Stored XSS — LearnPress 4.8 -2024-12-12
CVE-2024-10708 System Dashboard < 2.8.15 - Admin+ Path Traversal — System Dashboard 4.9 -2024-12-10
CVE-2024-11107 System Dashboard < 2.8.15 - Unauthenticated Stored XSS — System Dashboard 6.1 -2024-12-10
CVE-2024-9651 Contact Form Plugin by Fluent Forms < 5.2.1 - Admin+ Stored XSS — Fluent Forms 4.8 -2024-12-09
CVE-2024-11183 Simple Side Tab < 2.2.0 - Admin+ Stored XSS — Simple Side Tab 4.8 -2024-12-07
CVE-2024-10551 Sticky Social Icons <= 1.2.1 - Admin+ Stored XSS — Sticky Social Icons 4.8 -2024-12-06
CVE-2024-10480 3DPrint Lite < 2.1 - Settings Update via CSRF — 3DPrint Lite 4.3 -2024-12-06
CVE-2024-10893 WP Booking Calendar < 10.6.5 - Admin+ Stored XSS — WP Booking Calendar 4.8 -2024-12-03
CVE-2024-10980 Element Pack Elementor Addons < 5.10.3 - Contributor+ Stored XSS — Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and Remote Arrows) 5.4 -2024-11-29
CVE-2024-10704 Photo Gallery by 10Web < 1.8.31 - Admin+ Stored XSS — Photo Gallery by 10Web 4.8 -2024-11-29
CVE-2024-10896 Logo Slider < 4.5.0 - Contributor+ Stored XSS — Logo Slider 4.8AIMediumAI2024-11-28
CVE-2024-10510 adBuddy+ (AdBlocker Detection) by NetfunkDesign <= 1.1.3 - Admin+ Stored XSS — adBuddy+ (AdBlocker Detection) by NetfunkDesign 4.8AIMediumAI2024-11-28
CVE-2024-10493 Element Pack Elementor Addons < 5.10.3 - Contributor+ Stored XSS — Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) 5.4AIMediumAI2024-11-28
CVE-2024-10473 Logo Slider < 4.5.0 - Author+ Stored XSS — Logo Slider 5.4AIMediumAI2024-11-28
CVE-2024-10471 Everest Forms < 3.0.4.2 - Admin+ Stored XSS — Everest Forms 4.8AIMediumAI2024-11-26
CVE-2024-7056 WPForms < 1.9.1.6 - Admin+ Stored XSS — WPForms 4.8AIMediumAI2024-11-25
CVE-2024-10710 YaDisk Files <= 1.2.5 - Admin+ Stored XSS — YaDisk Files 4.8AIMediumAI2024-11-25
CVE-2024-6393 NextGEN Gallery < 3.59.5 - Admin+ Stored XSS — Photo Gallery, Sliders, Proofing and Themes 4.8AIMediumAI2024-11-25
CVE-2024-10709 YaDisk Files <= 1.2.5 - Contributor+ Stored XSS via Shortcode — YaDisk Files 5.4AIMediumAI2024-11-25
CVE-2024-9422 GEO My WordPress < 4.5 - Admin+ Arbitrary File Upload — GEO my WP 8.8 -2024-11-22

This page lists every published CVE security advisory associated with unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.