The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'amppb_remove_saved_layout_data' function in all versions up to, and including, 1.0.93.1. This makes it possible for authenticated attackers, with contributor access and above, to delete arbitrary posts on the site.
We have discovered 12,808 live websites that are affected by CVE-2024-1043.
Product | |
Category | Wordpress Plugins |
Vulnerable Domains | 12,808 live websites (28.23% of AMP for WP install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 233 versions ( 94.72% of all versions) |
![]() | 6,266 websites |
![]() | 1,732 websites |
![]() | 808 websites |
![]() | 722 websites |
![]() | 416 websites |
![]() | 217 websites |
![]() | 196 websites |
![]() | 192 websites |
![]() | 164 websites |
![]() | 163 websites |
.com | 6,379 websites |
.ru | 994 websites |
.net | 615 websites |
.org | 528 websites |
.com.br | 253 websites |
.info | 223 websites |
.fr | 201 websites |
.it | 194 websites |
.de | 159 websites |
.es | 117 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*****.de | ![]() | **,*** | |
**********.ir | ![]() | **,*** | |
***.********.com | ![]() | **,*** | |
*******.de | ![]() | **,*** | |
******.***.br | ![]() | **,*** | |
**********.***.pk | ![]() | **,*** | |
*****************.com | ![]() | **,*** | |
**********.com | ![]() | **,*** | |
**********.fr | ![]() | **,*** | |
********.com | ![]() | **,*** |
FAQ