Filtered by vendor Wpglobus Subscriptions
Total 8 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-25711 1 Wpglobus 1 Wpglobus Translate Options 2024-11-21 5.8 Medium
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPGlobus WPGlobus Translate Options plugin <= 2.1.0 versions.
CVE-2018-5367 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[post_type][post] parameter to wp-admin/options.php.
CVE-2018-5366 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[more_languages] parameter to wp-admin/options.php.
CVE-2018-5365 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[selector_wp_list_pages][show_selector] parameter to wp-admin/options.php.
CVE-2018-5364 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[browser_redirect][redirect_by_language] parameter to wp-admin/options.php.
CVE-2018-5363 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[enabled_languages][en] or wpglobus_option[enabled_languages][fr] (or any other language) parameter to wp-admin/options.php.
CVE-2018-5362 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[post_type][page] parameter to wp-admin/options.php.
CVE-2018-5361 1 Wpglobus 1 Wpglobus 2024-11-21 N/A
The WPGlobus plugin 1.9.6 for WordPress has CSRF via wp-admin/options.php.