Vulnerabilities > Wpbakery Page Builder Clipboard Project > Wpbakery Page Builder Clipboard > 4.5.8

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-5265 Cross-site Scripting vulnerability in Wpbakery Page Builder Clipboard Project Wpbakery Page Builder Clipboard
The WPBakery Visual Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link attribute within the vc_single_image shortcode in all versions up to, and including, 7.6 due to insufficient input sanitization and output escaping on user supplied attributes.
5.4