Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

unknown — Vulnerabilities & Security Advisories 4143

Browse all 4143 CVE security advisories affecting unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2024-4977 Index WP MySQL For Speed < 1.4.18 - Admin+ Reflected XSS — Index WP MySQL For Speed 6.1AIMediumAI2024-07-13
CVE-2024-4752 EventON < 2.2.15 - Admin+ Stored Cross-Site Scripting via event subtitle — EventON 4.8AIMediumAI2024-07-13
CVE-2024-4269 SVG Block < 1.1.20 - Author+ Stored XSS via SVG File Upload — SVG Block 5.4AIMediumAI2024-07-13
CVE-2024-4272 Support SVG < 1.1.0 - Stored XSS via SVG Upload — Support SVG 5.4AIMediumAI2024-07-13
CVE-2024-4602 Embed Peertube Playlist < 1.10 - Editor+ Stored XSS — Embed Peertube Playlist 4.8AIMediumAI2024-07-13
CVE-2024-4217 Shortcodes Ultimate Pro < 7.1.5 - Contributor+ Stored Cross-Site Scripting XSS — shortcodes-ultimate-pro 5.4AIMediumAI2024-07-13
CVE-2024-3964 Product Enquiry for WooCommerce < 3.1.8 - Admin+ Stored XSS — Product Enquiry for WooCommerce 4.8AIMediumAI2024-07-13
CVE-2024-3751 Seriously Simple Podcasting < 3.3.0 - Admin+ Stored XSS — Seriously Simple Podcasting 4.8AIMediumAI2024-07-13
CVE-2024-3919 OpenPGP Form Encryption for WordPress < 1.5.1 - Contributor+ Stored XSS — OpenPGP Form Encryption for WordPress 5.4AIMediumAI2024-07-13
CVE-2024-3963 RafflePress Lite < 1.12.14 - Editor+ Stored XSS — Giveaways and Contests by RafflePress 5.4AIMediumAI2024-07-13
CVE-2024-3753 Hostel < 1.1.5.3 - Reflected XSS — Hostel 6.1AIMediumAI2024-07-13
CVE-2024-3026 WordPress Button Plugin MaxButtons < 9.7.8 - Editor+ Stored XSS — WordPress Button Plugin MaxButtons 5.4AIMediumAI2024-07-13
CVE-2024-3710 Image Photo Gallery Final Tiles Grid < 3.6.0 - Contributor+ Stored XSS — Image Photo Gallery Final Tiles Grid 5.4AIMediumAI2024-07-13
CVE-2024-3632 Smart Image Gallery < 1.0.19 - Update/Delete Google API Key via CSRF — Smart Image Gallery 4.3AIMediumAI2024-07-13
CVE-2024-2870 Swift Framework < 2024.04.30 - Reflected XSS — socialdriver-framework 6.1AIMediumAI2024-07-13
CVE-2024-6024 ContentLock <= 1.0.3 - Groups/Emails Deletion via CSRF — ContentLock 4.3 -2024-07-12
CVE-2024-6022 ContentLock <= 1.0.3 - Settings Update via CSRF — ContentLock 4.3 -2024-07-12
CVE-2024-6023 ContentLock <= 1.0.3 - Email Adding via CSRF — ContentLock 8.1 -2024-07-12
CVE-2024-5626 Inline Related Posts < 3.7.0 - Reflected XSS — Inline Related Posts 6.1 -2024-07-12
CVE-2024-5811 Simple Video Directory < 1.4.4 - Contributor+ Stored XSS — Simple Video Directory 5.4 -2024-07-12
CVE-2024-3112 Quotes and Tips < 1.45 - Admin+ Arbitrary File Upload — Quotes and Tips by BestWebSoft 7.2 -2024-07-12
CVE-2024-4753 WP Secure Maintenance < 1.7 - Admin+ Stored XSS — WP Secure Maintenance 4.8 -2024-07-12
CVE-2024-2696 Swift Framework < 2024.04.30 - Admin+ Stored XSS via Settings — socialdriver-framework 4.8 -2024-07-12
CVE-2024-2430 Website Content in Page or Post < 2024.04.09 - Contributor+ Stored Cross-Site Scripting — Website Content in Page or Post 5.4 -2024-07-12
CVE-2024-2640 Watu Quiz < 3.4.1.2 - Author+ Stored XSS — Watu Quiz 4.8 -2024-07-12
CVE-2024-0974 Social Media Widget < 4.0.9 - Admin+ Stored XSS — Social Media Widget 4.8 -2024-07-12
CVE-2024-6138 Secure Copy Content Protection < 4.0.9 - Admin+ Stored XSS — Secure Copy Content Protection and Content Locking 4.8AIMediumAI2024-07-11
CVE-2024-5444 Bible Text <= 0.2 - Contributor+ Stored XSS — Bible Text 5.4AIMediumAI2024-07-11
CVE-2024-6026 Slider by 10Web < 1.2.56 - Editor+ Stored XSS — Slider by 10Web 5.4AIMediumAI2024-07-11
CVE-2024-6025 Quiz and Survey Master < 9.0.5 - Contributor+ Stored XSS — Quiz and Survey Master (QSM) 5.4AIMediumAI2024-07-11

This page lists every published CVE security advisory associated with unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.