Vulnerabilities > Pickplugins > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-02 CVE-2021-24488 Unspecified vulnerability in Pickplugins Post Grid
The slider import search feature and tab parameter of the Post Grid WordPress plugin before 2.1.8 settings are not properly sanitised before being output back in the pages, leading to Reflected Cross-Site Scripting issues
network
low complexity
pickplugins
6.1
2021-05-24 CVE-2021-24300 Unspecified vulnerability in Pickplugins Product Slider for Woocommerce
The slider import search feature of the PickPlugins Product Slider for WooCommerce WordPress plugin before 1.13.22 did not properly sanitised the keyword GET parameter, leading to reflected Cross-Site Scripting issue
network
low complexity
pickplugins
6.1
2021-05-14 CVE-2021-24283 Unspecified vulnerability in Pickplugins Accordion
The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue.
network
low complexity
pickplugins
5.4
2020-05-28 CVE-2020-13644 Cross-site Scripting vulnerability in Pickplugins Accordion
An issue was discovered in the Accordion plugin before 2.2.9 for WordPress.
network
low complexity
pickplugins CWE-79
5.4