6.5

CVSS3.1

CVE-2025-23943 - WordPress PDF.js Shortcode plugin <= 1.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in aruvi PDF.js Shortcode pdfjs-shortcode allows Stored XSS.This issue affects PDF.js Shortcode: from n/a through <= 1.0.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23946 - WordPress Enhanced YouTube Shortcode plugin <= 2.0.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Le-Pixel-Solitaire Enhanced YouTube Shortcode enhanced-youtube-shortcode allows Stored XSS.This issue affects Enhanced YouTube Shortcode: from n/a through <= 2.0.1.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23941 - WordPress MeinTurnierplan.de Widget Viewer plugin <= 1.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in meinturnierplan MeinTurnierplan.de Widget Viewer meinturnierplande-widget-viewer allows Stored XSS.This issue affects MeinTurnierplan.de Widget Viewer: from n/a through <= 1.1.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23951 - WordPress Gallery: Hybrid – Advanced Visual Gallery plugin <= 1.4.0.2 - Cross Site Scripting (XSS) …

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DIVENGINE Gallery: Hybrid – Advanced Visual Gallery hybrid-gallery allows Stored XSS.This issue affects Gallery: Hybrid – Advanced Visual Gallery: from n/a through <= 1.4.0.2.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23947 - WordPress WP-Player plugin <= 2.6.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in M.J WP-Player wp-player allows Stored XSS.This issue affects WP-Player: from n/a through <= 2.6.1.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23934 - WordPress Giveaways and Contests by PromoSimple plugin <= 1.24 - Cross Site Scripting (XSS) vulnera…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sam Brodie Giveaways and Contests by PromoSimple giveaways-contests-by-promosimple allows Stored XSS.This issue affects Giveaways and Contests by PromoSimple: from n/a through <= 1.24.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23940 - WordPress jupdf pdf viewer plugin <= 0.1.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in horiyuki Image Switcher image-switcher allows Stored XSS.This issue affects Image Switcher: from n/a through <= 0.1.1.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23928 - WordPress Google Org Chart plugin <= 1.0.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aleksandar Arsovski Google Org Chart google-org-chart allows Stored XSS.This issue affects Google Org Chart: from n/a through <= 1.0.1.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23924 - WordPress WP Photo Sphere plugin <= 3.8 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jeremy WP Photo Sphere wp-photo-sphere allows Stored XSS.This issue affects WP Photo Sphere: from n/a through <= 3.8.

πŸ“… Published: Jan. 16, 2025, 8:08 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23935 - WordPress Magic Google Maps plugin <= 1.0.4 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fengler Magic Google Maps magic-google-maps allows Stored XSS.This issue affects Magic Google Maps: from n/a through <= 1.0.4.

πŸ“… Published: Jan. 16, 2025, 8:07 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.
Total resulsts: 349182
Page 7067 of 34,919
Β« previous page Β» next page
Filters