Security Vulnerabilities
- CVEs Published In August 2019
The contact-form-plugin plugin before 4.0.2 for WordPress has XSS.
The google-language-translator plugin before 5.0.06 for WordPress has XSS.
The mailchimp-for-wp plugin before 4.0.11 for WordPress has XSS on the integration settings page.
The job-manager plugin before 0.7.19 for WordPress has multiple XSS issues.
The contact-form-plugin plugin before 3.52 for WordPress has XSS.
The all-in-one-wp-security-and-firewall plugin before 3.9.8 for WordPress has XSS in the unlock request feature.
The all-in-one-wp-security-and-firewall plugin before 3.9.5 for WordPress has XSS in add_query_arg and remove_query_arg function instances.
The contact-form-plugin plugin before 3.96 for WordPress has XSS.
The download-monitor plugin before 1.7.1 for WordPress has XSS related to add_query_arg.
The events-manager plugin before 5.6 for WordPress has XSS.