Security Vulnerabilities
- CVEs Published In August 2019
The weblibrarian plugin before 3.4.8.5 for WordPress has XSS via front-end short codes.
The weblibrarian plugin before 3.4.8.6 for WordPress has XSS via front-end short codes.
The weblibrarian plugin before 3.4.8.7 for WordPress has XSS via front-end short codes.
The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.
The shortcode-factory plugin before 1.1.1 for WordPress has XSS via add_query_arg.
The seo-redirection plugin before 4.3 for WordPress has stored XSS.
The sermon-browser plugin before 0.45.16 for WordPress has multiple XSS issues.
The total-security plugin before 3.4.1 for WordPress has XSS.
The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability.
The share-on-diaspora plugin before 0.7.2 for WordPress has reflected XSS in share URL parameters.