Filtered by vendor Wpshopmart Subscriptions
Filtered by product Testimonial Builder Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-36857 1 Wpshopmart 1 Testimonial Builder 2024-09-16 4.8 Medium
Authenticated (editor+) Stored Cross-Site Scripting (XSS) vulnerability in wpshopmart Testimonial Builder plugin <= 1.6.1 at WordPress.
CVE-2021-24598 1 Wpshopmart 1 Testimonial Builder 2024-08-03 4.8 Medium
The Testimonial WordPress plugin before 1.6.0 does not escape some testimonial fields which could allow high privilege users to perform Cross Site Scripting attacks even when the unfiltered_html capability is disallowed