The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to unauthorized form submissions due to a missing capability check on the submit_form() function in all versions up to, and including, 7.8.5. This makes it possible for unauthenticated attackers to submit unpublished forms.
We have discovered 6,891 live websites that are affected by CVE-2024-10580.
Product | |
Category | Wordpress Plugins |
Vulnerable Domains | 6,891 live websites (53.68% of Hustle install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 57 versions ( 98.28% of all versions) |
![]() | 2,983 websites |
![]() | 647 websites |
![]() | 501 websites |
![]() | 285 websites |
![]() | 187 websites |
![]() | 166 websites |
![]() | 162 websites |
![]() | 148 websites |
![]() | 130 websites |
![]() | 100 websites |
.com | 3,465 websites |
.org | 309 websites |
.co.uk | 220 websites |
.de | 203 websites |
.fr | 159 websites |
.nl | 155 websites |
.it | 147 websites |
.pl | 137 websites |
.com.au | 134 websites |
.net | 132 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
***************.org | ![]() | **,*** | |
*******.com | ![]() | **,*** | |
***************.org | ![]() | **,*** | |
***************.********.***.es | ![]() | **,*** | |
********.com | ![]() | **,*** | |
*****************.com | ![]() | **,*** | |
***************.de | ![]() | **,*** | |
*******.com | ![]() | ***,*** | |
********.com | ![]() | ***,*** | |
*******************.com | ![]() | ***,*** |
FAQ