CVE-2024-54211

WordPress Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin <= 1.5.8 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Visualmodo Borderless borderless allows Cross-Site Scripting (XSS).This issue affects Borderless: from n/a through <= 1.5.8.


We have discovered 174 live websites that are affected by CVE-2024-54211.

Run a Free Instant Scan




Affected Software

Product  Borderless
Category Wordpress Plugins
Vulnerable Domains174 live websites (18% of Borderless install base)
Vulnerable Versions
  • from 0 through 1.5.8
Vulnerable Versions Count22 versions ( 73% of all versions)



Details

  • Published - Dec 6, 2024
  • Updated - Apr 28, 2026

Credits

  • 4rCanJ0x! | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2024-54211
United States45 websites



Switzerland19 websites
GB12 websites
France11 websites
Netherlands7 websites
South Africa6 websites
Germany6 websites
Indonesia5 websites
Austria4 websites
Brazil4 websites

Website Distribution by TLD

Number of websites using CVE-2024-54211
.com57 websites
.ch18 websites
.org14 websites
.co.uk9 websites
.fr6 websites
.com.au5 websites
.com.br5 websites
.nl5 websites
.it4 websites
.net3 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2024-54211

Top websites that are affected by CVE-2024-54211. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***************.fr France*,***,***
**********.com United States*,***,***
********.******.org United States*,***,***
****.***.au United States*,***,***
**************.org United States*,***,***
*****************.com United States*,***,***
*******************************.com United States*,***,***
***************************.nl Netherlands*,***,***
*****************.com Netherlands*,***,***
**********.com United States*,***,***
See full domain list

FAQ

A total of 174 websites have been identified as vulnerable to CVE-2024-54211, based on global website indexing conducted by WebTechSurvey.
The Borderless is affected by the CVE-2024-54211 vulnerability.
Borderless versions up to and including 1.5.8 are vulnerable to CVE-2024-54211.