The Enfold Enfold WordPress theme before 4.8.4 was vulnerable to Reflected Cross-Site Scripting (XSS). The vulnerability is present on Enfold versions previous than 4.8.4 which use Avia Page Builder.
We have discovered 52,928 live websites that are affected by CVE-2021-24719.
| Product | |
| Category | Wordpress Themes |
| Vulnerable Domains | 52,928 live websites (46% of Enfold install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 97 versions ( 48% of all versions) |
| 12,368 websites | |
| 9,870 websites | |
| 3,367 websites | |
| 3,254 websites | |
| 2,928 websites | |
| 2,163 websites | |
| 1,770 websites | |
| 1,012 websites | |
| 987 websites | |
| 961 websites |
| .com | 19,338 websites |
| .de | 6,564 websites |
| .nl | 3,067 websites |
| .it | 2,234 websites |
| .org | 1,922 websites |
| .co.uk | 1,477 websites |
| .fr | 1,247 websites |
| .at | 1,051 websites |
| .net | 968 websites |
| .com.au | 845 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****************.com | *,*** | ||
| *****************************.de | **,*** | ||
| **********.net | **,*** | ||
| ***********.com | **,*** | ||
| ***********.net | **,*** | ||
| *****.io | **,*** | ||
| *****************.com | **,*** | ||
| *******************.com | **,*** | ||
| *********.com | **,*** | ||
| *********.com | **,*** |
FAQ