Security
Headlines
HeadlinesLatestCVEs

Tag

#xss

CVE-2023-23816: WordPress Sitemap Index plugin <= 1.2.3 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Twardes Sitemap Index plugin <= 1.2.3 versions.

CVE
#xss#vulnerability#web#wordpress#auth
CVE-2023-23806: WordPress WordPress Custom Settings plugin <= 1.0 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Davinder Singh Custom Settings plugin <= 1.0 versions.

CVE-2023-23717: WordPress Portfolio Slideshow plugin <= 1.13.0 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in George Gecewicz Portfolio Slideshow plugin <= 1.13.0 versions.

CVE-2023-23827: WordPress Google Maps v3 Shortcode plugin <= 1.2.1 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Google Maps v3 Shortcode plugin <= 1.2.1 versions.

CVE-2023-23817: WordPress Simple PDF Viewer plugin <= 1.9 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (contrinbutor+) Cross-Site Scripting (XSS) vulnerability in WebArea | Vera Nedvyzhenko Simple PDF Viewer plugin <= 1.9 versions.

CVE-2023-27425: WordPress Electric Studio Client Login plugin <= 0.8.1 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in James Irving-Swift Electric Studio Client Login plugin <= 0.8.1 versions.

CVE-2023-27614: WordPress Motor Racing League plugin <= 1.9.9 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Ian Haycox Motor Racing League plugin <= 1.9.9 versions.

CVE-2023-22698: WordPress Theme Blvd Responsive Google Maps plugin <= 1.0.2 - Cross Site Scripting (XSS) vulnerability - Patchstack

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Jason Bobich Theme Blvd Responsive Google Maps plugin <= 1.0.2 versions.

CVE-2022-47435: WordPress WP-OliveCart plugin <= 1.1.3 - Cross Site Scripting (XSS) - Patchstack

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Olive Design WP-OliveCart plugin <= 1.1.3 versions.

CVE-2023-22718: WordPress User Meta Manager plugin <= 3.4.9 - Reflected Cross Site Scripting (XSS) vulnerability - Patchstack

Reflected Cross-Site Scripting (XSS) vulnerability in Jason Lau User Meta Manager plugin <= 3.4.9 versions.