Vulnerabilities > Themeisle > Visualizer > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-03-17 CVE-2024-27958 Unspecified vulnerability in Themeisle Visualizer
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle Visualizer allows Reflected XSS.This issue affects Visualizer: from n/a through 3.10.5.
network
low complexity
themeisle
6.1
2023-05-03 CVE-2023-23708 Unspecified vulnerability in Themeisle Visualizer
Auth.
network
low complexity
themeisle
5.4
2023-03-28 CVE-2022-46848 Unspecified vulnerability in Themeisle Visualizer
Auth.
network
low complexity
themeisle
5.4
2019-10-03 CVE-2019-16931 Cross-site Scripting vulnerability in Themeisle Visualizer
A stored XSS vulnerability in the Visualizer plugin 3.3.0 for WordPress allows an unauthenticated attacker to execute arbitrary JavaScript when an admin or other privileged user edits the chart via the admin dashboard.
network
low complexity
themeisle CWE-79
6.1