CVE-2024-34443

WordPress Slider Revolution plugin < 6.7.11 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemePunch OHG Slider Revolution allows Stored XSS.This issue affects Slider Revolution: from n/a before 6.7.11.


We have discovered 1,349,826 live websites that are affected by CVE-2024-34443.

Test my site




Affected Software

Product  Revslider
Category UI Frameworks
Vulnerable Domains1,349,826 live websites (81.35% of Revslider install base)
Vulnerable Versions
  • from 0 before 6.7.11
Vulnerable Versions Count461 versions ( 92.38% of all versions)


Common Weakness Enumeration

CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')



Details

  • Published - Jun 19, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

CVE-2024-34443 usage by Country

United States434,200 websites



Germany167,430 websites
France91,007 websites
GB51,834 websites
Italy49,705 websites
Spain41,407 websites
Netherlands35,214 websites
Poland33,463 websites
Turkey30,738 websites
Russia27,024 websites

CVE-2024-34443 usage by TLD

.com570,098 websites
.de72,831 websites
.org47,788 websites
.it43,711 websites
.co.uk38,026 websites
.nl33,417 websites
.com.br32,274 websites
.fr30,862 websites
.pl26,637 websites
.com.au26,234 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2024-34443

Top websites that are affected by CVE-2024-34443. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***********.company Denmark*,***
*******.com Netherlands*,***
****.eu United States*,***
******.com United States*,***
***********.eu Germany*,***
************.com Singapore*,***
******************.org United States*,***
****.int Canada*,***
************.ie United States*,***
**********.org United States*,***
See full domain list

FAQ

CVE-2024-34443 is Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Revslider
A total of 1,349,826 websites have been identified as vulnerable to CVE-2024-34443, discovered through global website indexing conducted by WebTechSurvey.
Revslider is susceptible to CVE-2024-34443 vulnerability.
Revslider versions before 6.7.11 are vulnerable to CVE-2024-34443.
Version 6.7.11 of Revslider addresses the CVE-2024-34443 security vulnerability.