Vulnerabilities > Fatcatapps > Low

DATE CVE VULNERABILITY TITLE RISK
2022-06-27 CVE-2022-1904 Cross-site Scripting vulnerability in Fatcatapps Easy Pricing Tables
The Pricing Tables WordPress Plugin WordPress plugin before 3.2.1 does not sanitise and escape parameter before outputting it back in a page available to any user (both authenticated and unauthenticated) when a specific setting is enabled, leading to a Reflected Cross-Site Scripting
network
high complexity
fatcatapps CWE-79
2.6
2022-06-02 CVE-2021-36866 Cross-site Scripting vulnerability in Fatcatapps Easy Pricing Tables
Authenticated (author or higher role) Stored Cross-Site Scripting (XSS) vulnerability in Fatcat Apps Easy Pricing Tables plugin <= 3.1.2 at WordPress.
network
fatcatapps CWE-79
3.5
2021-12-13 CVE-2021-24972 Cross-site Scripting vulnerability in Fatcatapps Pixel CAT
The Pixel Cat WordPress plugin before 2.6.3 does not escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed
network
fatcatapps CWE-79
3.5