The Jupiter X Core plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_popup_action() function in all versions up to, and including, 4.8.5. This makes it possible for unauthenticated attackers to export popup templates.
We have discovered 8,311 live websites that are affected by CVE-2024-12316.
Product | |
Category | Wordpress Plugins |
Vulnerable Domains | 8,311 live websites (85.33% of Jupiterx Core install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 49 versions ( 90.74% of all versions) |
![]() | 3,320 websites |
![]() | 1,015 websites |
![]() | 688 websites |
![]() | 310 websites |
![]() | 308 websites |
![]() | 281 websites |
![]() | 268 websites |
![]() | 152 websites |
![]() | 149 websites |
![]() | 144 websites |
.com | 3,656 websites |
.de | 458 websites |
.org | 378 websites |
.nl | 349 websites |
.fr | 281 websites |
.it | 275 websites |
.co.uk | 236 websites |
.com.br | 214 websites |
.ca | 178 websites |
.com.au | 163 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*************************.com | ![]() | *,*** | |
************.nl | ![]() | *,*** | |
*******************.com | ![]() | **,*** | |
*******.net | ![]() | **,*** | |
*******************************.com | ![]() | **,*** | |
****************.org | ![]() | **,*** | |
*********************.com | ![]() | **,*** | |
***.org | ![]() | **,*** | |
*************.com | ![]() | **,*** | |
**********.com | ![]() | **,*** |
FAQ