Metrics
Affected Vendors & Products
No advisories yet.
Solution
Update the WordPress Tumult Hype Animations plugin to the latest available version (at least 1.9.12).
Workaround
No workaround given by the vendor.
Tue, 06 Jan 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tumult
Tumult tumult Hype Animations Wordpress Wordpress wordpress |
|
| Vendors & Products |
Tumult
Tumult tumult Hype Animations Wordpress Wordpress wordpress |
Tue, 06 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tumult Inc Tumult Hype Animations allows DOM-Based XSS.This issue affects Tumult Hype Animations: from n/a through 1.9.11. | |
| Title | WordPress Tumult Hype Animations plugin <= 1.9.11 - CSRF to XSS vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-01-05T20:04:20.042Z
Reserved: 2024-03-27T07:10:19.557Z
Link: CVE-2024-30461
Updated: 2026-01-05T20:03:48.637Z
Status : Received
Published: 2026-01-05T17:15:43.417
Modified: 2026-01-05T17:15:43.417
Link: CVE-2024-30461
No data.
OpenCVE Enrichment
Updated: 2026-01-06T14:17:07Z