Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-39776 2 Wordpress-extensions, Wpshopmart 2 Tabs, Tabs 2026-10-06 8 High
Editor Remote Code Execution (RCE) in Tabs <= 2.5 versions.
CVE-2026-13718 1 Wordpress-extensions 1 Tabs Responsive 2026-10-02 6.8 Medium
The Tabs Responsive WordPress plugin through 2.5 does not sanitize the content of WooCommerce product tabs before storing and rendering it, allowing a shop manager to store JavaScript that executes when any user, including an administrator, views the product page.