Vulnerabilities > Winwar > WP Ebay Product Feeds > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-03-23 CVE-2023-23722 Cross-site Scripting vulnerability in Winwar WP Ebay Product Feeds
Auth.
network
low complexity
winwar CWE-79
4.8
2019-12-27 CVE-2014-4525 Cross-site Scripting vulnerability in Winwar WP Ebay Product Feeds
Cross-site scripting (XSS) vulnerability in magpie/scripts/magpie_slashbox.php in the Ebay Feeds for WordPress plugin 1.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the rss_url parameter.
network
winwar CWE-79
4.3