Vulnerabilities > Wpbakery > Page Builder > 7.5

DATE CVE VULNERABILITY TITLE RISK
2024-05-02 CVE-2024-1805 Cross-site Scripting vulnerability in Wpbakery Page Builder
The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button onclick attribute in all versions up to, and including, 7.5 due to insufficient input sanitization and output escaping.
network
low complexity
wpbakery CWE-79
5.4
2024-05-02 CVE-2024-1840 Cross-site Scripting vulnerability in Wpbakery Page Builder
The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Author tag attribute in all versions up to, and including, 7.5 due to insufficient input sanitization and output escaping.
network
low complexity
wpbakery CWE-79
5.4
2024-05-02 CVE-2024-1841 Cross-site Scripting vulnerability in Wpbakery Page Builder
The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title tag attribute in all versions up to, and including, 7.5 due to insufficient input sanitization and output escaping.
network
low complexity
wpbakery CWE-79
5.4
2024-05-02 CVE-2024-1842 Cross-site Scripting vulnerability in Wpbakery Page Builder
The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Heading tag attribute in all versions up to, and including, 7.5 due to insufficient input sanitization and output escaping.
network
low complexity
wpbakery CWE-79
5.4