Vulnerabilities (CVE)

Filtered by vendor Relevanssi Subscribe
Filtered by product Relevanssi
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-9034 1 Relevanssi 1 Relevanssi 2018-05-09 3.5 LOW 5.4 MEDIUM
Cross-site scripting (XSS) vulnerability in lib/interface.php of the Relevanssi plugin 4.0.4 for WordPress allows remote attackers to inject arbitrary JavaScript or HTML via the tab GET parameter.
CVE-2017-1000225 1 Relevanssi 1 Relevanssi 2017-12-01 4.3 MEDIUM 6.1 MEDIUM
Reflected XSS in Relevanssi Premium version 1.14.8 when using relevanssi_didyoumean() could allow unauthenticated attacker to do almost anything an admin can
CVE-2017-1000038 1 Relevanssi 1 Relevanssi 2017-07-20 4.3 MEDIUM 6.1 MEDIUM
WordPress plugin Relevanssi version 3.5.7.1 is vulnerable to stored XSS resulting in attacker being able to execute JavaScript on the affected site