Vulnerabilities > Madrasthemes

DATE CVE VULNERABILITY TITLE RISK
2024-10-18 CVE-2024-49233 Cross-site Scripting vulnerability in Madrasthemes MAS Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MadrasThemes MAS Elementor allows DOM-Based XSS.This issue affects MAS Elementor: from n/a through 1.1.6.
network
low complexity
madrasthemes CWE-79
5.4
2024-10-18 CVE-2024-9206 Cross-site Scripting vulnerability in Madrasthemes MAS Companies for WP JOB Manager
The MAS Companies For WP Job Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.13.
network
low complexity
madrasthemes CWE-79
6.1
2024-09-25 CVE-2024-8483 Unspecified vulnerability in Madrasthemes MAS Static Content
The MAS Static Content plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.8 via the static_content() function.
network
low complexity
madrasthemes
6.5