25 Nov

Vulnerability Details: Reflected Cross-Site Scripting (XSS) in DeMomentSomTres Subscribe

This post provides the details of a vulnerability in the WordPress plugin DeMomentSomTres Subscribe not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

19 Nov

Vulnerability Details: Reflected Cross-Site Scripting (XSS) in AdRoll for WooCommerce Stores

This post provides the details of a vulnerability in the WordPress plugin AdRoll for WooCommerce Stores not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

18 Nov

Vulnerability Details: Cross-Site Request Forgery (CSRF)/Cross-Site Scripting (XSS) in WP Maintenance

This post provides the details of a vulnerability in the WordPress plugin WP Maintenance not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

13 Nov

Vulnerability Details: Authenticated Information Disclosure in Gallery Bank

This post provides the details of a vulnerability in the WordPress plugin Gallery Bank not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

08 Nov

Vulnerability Details: Multiple in IgniteUp

This post provides the details of a vulnerability in the WordPress plugin IgniteUp not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

08 Nov

Vulnerability Details: Security Bypass in Currency Switcher for WooCommerce

This post provides the details of a vulnerability in the WordPress plugin Currency Switcher for WooCommerce. not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

06 Nov

Vulnerability Details: Privilege Escalation in CartFlows

This post provides the details of a vulnerability in the WordPress plugin CartFlows not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

05 Nov

Vulnerability Details: Cross-Site Request Forgery (CSRF) in Tidio Chat

This post provides the details of a vulnerability in the WordPress plugin Tidio Chat not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]

04 Nov

Vulnerabilty Details: Reflected Cross-Site Scripting (XSS) in If▸So

This post provides the details of a vulnerability in the WordPress plugin If▸So not discovered by us, where the discoverer hadn’t provided the details needed for us to confirm the vulnerability while we were adding it to the data set for our service, so its contents are limited to subscribers of our service.

If you were using our service you would have already been warned about this vulnerability if your website is vulnerable due to it. [Read more]