High severity7.1NVD Advisory· Published Jun 4, 2024· Updated Apr 23, 2026
CVE-2024-35664
CVE-2024-35664
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpvividplugins WPvivid Backup for MainWP wpvivid-backup-mainwp allows Reflected XSS.This issue affects WPvivid Backup for MainWP: from n/a through <= 0.9.32.
Affected products
1- cpe:2.3:a:wpvivid:wpvivid_backup_for_mainwp:*:*:*:*:*:wordpress:*:*Range: <0.9.33
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- patchstack.com/database/vulnerability/wpvivid-backup-mainw/wordpress-wpvivid-backup-for-mainwp-plugin-0-9-32-reflected-cross-site-scripting-xss-vulnerabilitynvdThird Party Advisory
- patchstack.com/database/Wordpress/Plugin/wpvivid-backup-mainwp/vulnerability/wordpress-wpvivid-backup-for-mainwp-plugin-0-9-32-reflected-cross-site-scripting-xss-vulnerabilitynvd
News mentions
0No linked articles in our index yet.