Filtered by vendor Pixelgrade Subscriptions
Total 9 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-27633 1 Pixelgrade 1 Customify 2023-11-30 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Customify – Intuitive Website Styling plugin <= 2.10.4 versions.
CVE-2023-23702 1 Pixelgrade 1 Comments Rating 2023-11-14 4.8 Medium
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions.
CVE-2022-4671 1 Pixelgrade 1 Pixcodes 2023-11-07 5.4 Medium
The PixCodes WordPress plugin before 2.3.7 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
CVE-2023-45655 1 Pixelgrade 1 Pixfields 2023-10-19 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in PixelGrade PixFields plugin <= 0.7.0 versions.
CVE-2023-45654 1 Pixelgrade 1 Comments Rating 2023-10-19 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions.
CVE-2023-40205 1 Pixelgrade 1 Pixtypes 2023-09-08 6.1 Medium
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Pixelgrade PixTypes plugin <= 1.4.15 versions.
CVE-2023-25487 1 Pixelgrade 1 Pixtypes 2023-07-14 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade PixTypes plugin <= 1.4.14 versions.
CVE-2023-23704 1 Pixelgrade 1 Comments Rating 2023-07-13 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.6 versions.
CVE-2022-46844 1 Pixelgrade 1 Pixfields 2023-05-12 5.4 Medium
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in PixelGrade PixFields plugin <= 0.7.0 versions.