Vulnerabilities > Pickplugins > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-08-02 | CVE-2021-24488 | Unspecified vulnerability in Pickplugins Post Grid The slider import search feature and tab parameter of the Post Grid WordPress plugin before 2.1.8 settings are not properly sanitised before being output back in the pages, leading to Reflected Cross-Site Scripting issues | 6.1 |
2021-05-24 | CVE-2021-24300 | Unspecified vulnerability in Pickplugins Product Slider for Woocommerce The slider import search feature of the PickPlugins Product Slider for WooCommerce WordPress plugin before 1.13.22 did not properly sanitised the keyword GET parameter, leading to reflected Cross-Site Scripting issue | 6.1 |
2021-05-14 | CVE-2021-24283 | Unspecified vulnerability in Pickplugins Accordion The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue. | 5.4 |
2020-05-28 | CVE-2020-13644 | Cross-site Scripting vulnerability in Pickplugins Accordion An issue was discovered in the Accordion plugin before 2.2.9 for WordPress. | 5.4 |