Vulnerabilities > Siteorigin > Page Builder > 2.10.16

DATE CVE VULNERABILITY TITLE RISK
2024-03-23 CVE-2024-2202 Cross-site Scripting vulnerability in Siteorigin Page Builder
The Page Builder by SiteOrigin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the legacy Image widget in all versions up to, and including, 2.29.6 due to insufficient input sanitization and output escaping.
network
low complexity
siteorigin CWE-79
5.4