The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the table cell content in all versions up to, and including, 2.4.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
We have discovered 109,234 live websites that are affected by CVE-2024-9595.
Product | |
Category | Wordpress Plugins |
Vulnerable Domains | 109,234 live websites (58.13% of TablePress install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 49 versions ( 81.67% of all versions) |
![]() | 28,322 websites |
![]() | 14,666 websites |
![]() | 13,277 websites |
![]() | 6,220 websites |
![]() | 6,007 websites |
![]() | 3,660 websites |
![]() | 2,728 websites |
![]() | 2,677 websites |
![]() | 2,006 websites |
![]() | 1,558 websites |
.com | 38,075 websites |
.de | 8,907 websites |
.org | 6,115 websites |
.ru | 5,381 websites |
.net | 3,520 websites |
.jp | 2,864 websites |
.fr | 2,637 websites |
.nl | 2,597 websites |
.co.uk | 2,546 websites |
.pl | 2,156 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
***************.org | ![]() | *** | |
*****.net | ![]() | *** | |
****.******.com | ![]() | *** | |
*********.com | ![]() | *,*** | |
***.org | ![]() | *,*** | |
*********.me | ![]() | *,*** | |
*****.com | ![]() | *,*** | |
***.***.edu | ![]() | *,*** | |
*********.org | ![]() | **,*** | |
****.***.tr | ![]() | **,*** |
FAQ