Filtered by CWE-79
Total 34410 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-36383 1 Webhelpagency 1 Wha Wordsearch 2025-02-20 5.4 Medium
Multiple Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerabilities in WHA Word Search Puzzles game plugin <= 2.0.1 at WordPress.
CVE-2022-36365 1 Webhelpagency 1 Wha Crossword 2025-02-20 5.4 Medium
Multiple Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerabilities in WHA Crossword plugin <= 1.1.10 at WordPress.
CVE-2022-38073 1 Getawesomesupport 1 Awesome Support 2025-02-20 5.4 Medium
Multiple Authenticated (custom specific plugin role) Persistent Cross-Site Scripting (XSS) vulnerability in Awesome Support plugin <= 6.0.7 at WordPress.
CVE-2022-37330 1 Webhelpagency 1 Wha Crossword 2025-02-20 5.4 Medium
Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WHA Crossword plugin <= 1.1.10 at WordPress.
CVE-2022-37338 1 Blossomthemes 1 Blossom Recipe Maker 2025-02-20 4.1 Medium
Multiple Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerabilities in Blossom Recipe Maker plugin <= 1.0.7 at WordPress.
CVE-2022-37339 1 Fullworksplugins 1 Meet My Team 2025-02-20 4.1 Medium
Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Meet My Team plugin <= 2.0.5 at WordPress.
CVE-2022-40213 1 Gsplugins 1 Gs Testimonial Slider 2025-02-20 4.1 Medium
Multiple Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerabilities in GS Testimonial Slider plugin <= 1.9.6 at WordPress.
CVE-2022-38703 1 Maxfoundry 1 Maxbuttons 2025-02-20 3.4 Low
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Max Foundry Button Plugin MaxButtons plugin <= 9.2 at WordPress
CVE-2022-36791 1 Awesome 1 Torro Forms 2025-02-20 5.4 Medium
Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Awesome UG Torro Forms plugin <= 1.0.16 at WordPress.
CVE-2022-37328 1 Themesawesome 1 Timeline Awesome 2025-02-20 3.4 Low
Authenticated (author+) Stored Cross-Site Scripting (XSS) vulnerability in Themes Awesome History Timeline plugin <= 1.0.5 at WordPress.
CVE-2022-38460 1 Notice Board Project 1 Notice Board 2025-02-20 5.4 Medium
Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in NOTICE BOARD plugin <= 1.1 at WordPress.
CVE-2022-40193 1 Brinidesigner 1 Awesome Filterable Portfolio 2025-02-20 6.1 Medium
Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability in Awesome Filterable Portfolio plugin <= 1.9.7 at WordPress.
CVE-2022-37342 1 Add Shortcodes Actions And Filters Project 1 Add Shortcodes Actions And Filters 2025-02-20 4.8 Medium
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability Add Shortcodes Actions And Filters plugin <= 2.0.9 at WordPress.
CVE-2022-40195 1 Loqate 1 Loqate 2025-02-20 4.8 Medium
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in PCA Predict plugin <= 1.0.3 at WordPress.
CVE-2022-40672 1 Wpchill 1 Cpo Shortcodes 2025-02-20 4.8 Medium
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CPO Shortcodes plugin <= 1.5.0 at WordPress.
CVE-2022-36417 1 3d Tag Cloud Project 1 3d Tag Cloud 2025-02-20 6.1 Medium
Multiple Stored Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability in 3D Tag Cloud plugin <= 3.8 at WordPress.
CVE-2022-40215 1 Tabs Project 1 Tabs 2025-02-20 3.4 Low
Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities in Tabs plugin <= 3.7.1 at WordPress.
CVE-2021-36839 1 Spacexchimp 1 Social Media Follow Buttons Bar 2025-02-20 4.8 Medium
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Social Media Follow Buttons Bar plugin <= 4.73 at WordPress.
CVE-2021-36830 1 Comment Guestbook Project 1 Comment Guestbook 2025-02-20 4.8 Medium
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Comment Guestbook plugin <= 0.8.0 at WordPress.
CVE-2021-36855 1 Bookingultrapro 1 Booking Ultra Pro Appointments Booking Calendar 2025-02-20 6.1 Medium
Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability in Booking Ultra Pro plugin <= 1.1.4 at WordPress.