Vulnerabilities > Pluginops
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-07 | CVE-2023-48325 | Open Redirect vulnerability in Pluginops Landing Page Builder URL Redirection to Untrusted Site ('Open Redirect') vulnerability in PluginOps Landing Page Builder – Lead Page – Optin Page – Squeeze Page – WordPress Landing Pages.This issue affects Landing Page Builder – Lead Page – Optin Page – Squeeze Page – WordPress Landing Pages: from n/a through 1.5.1.5. | 6.1 |
2023-09-27 | CVE-2023-40675 | Cross-site Scripting vulnerability in Pluginops Landing Page Builder Auth. | 4.8 |
2023-05-28 | CVE-2023-33328 | Cross-site Scripting vulnerability in Pluginops Mailchimp Subscribe Form Auth. | 4.8 |
2023-01-23 | CVE-2022-4718 | Unspecified vulnerability in Pluginops Landing Page Builder The Landing Page Builder WordPress plugin before 1.4.9.9 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins. | 5.4 |
2022-01-17 | CVE-2021-25067 | Cross-site Scripting vulnerability in Pluginops Landing Page The Landing Page Builder WordPress plugin before 1.4.9.6 was affected by a reflected XSS in page-builder-add on the ulpb_post admin page. | 5.4 |