Archives: Reports

WordPress Plugin

meks-flexible-shortcodes

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

easy-testimonials

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

easy-bootstrap-shortcodes

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

seriously-simple-podcasting

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

baw-login-logout-menu

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

structured-content

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

wp-popups-lite

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

lightbox-gallery

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

wp-structuring-markup

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

twenty20

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

video-conferencing-with-zoom-api

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-16

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

compact-wp-audio-player

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-15

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

mashsharer

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-15

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

sitemap

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-15

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

rich-table-of-content

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-15

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

wp-table-reloaded

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

content-control

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

super-socializer

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

page-list

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

meteor-slides

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

testimonial-free

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

easy-accordion-free

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

widgets-on-pages

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-14

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

easy-facebook-likebox

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-13

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.

WordPress Plugin

jquery-collapse-o-matic

Vulnerability Type:

Cross-Site Scripting (XSS)

Date:

2022-12-13

The plugin contains a Cross-Site Scripting (XSS) vulnerability due to the plugin does not sanitize and escape some parameters, which makes it possible for authenticated users with a role as low as contributor to inject arbitrary web scripts into pages.