Vulnerabilities > Wpshopmart > Tabs Responsive > 1.8.0

DATE CVE VULNERABILITY TITLE RISK
2022-05-23 CVE-2022-1298 Cross-site Scripting vulnerability in Wpshopmart Tabs Responsive
The Tabs WordPress plugin before 2.2.8 does not sanitise and escape Tab descriptions, which could allow high privileged users with a role as low as editor to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed
network
wpshopmart CWE-79
3.5
2018-01-09 CVE-2018-5312 Cross-site Scripting vulnerability in Wpshopmart Tabs Responsive 1.8.0
The tabs-responsive plugin 1.8.0 for WordPress has XSS via the post_title parameter to wp-admin/post.php.
network
wpshopmart CWE-79
3.5