pwrplugins records
5 published records for vendor pwrplugins.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 40%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
21Monitor | CVE-2022-4765No exploit | Portfolio for Elementor, Image Gallery & Post Grid | PowerFolio < 2.3.1 - Contributor+ Stored XSS via Shortcodepwrplugins · portfolio for elementor · CWE-79 | Medium5.4 | — | 0.5% | Jan 30, 2023 |
21Monitor | CVE-2024-22150No exploit | WordPress Post Grid, Image Gallery & Portfolio for Elementor | PowerFolio Plugin <= 3.1 is vulnerable to Cross Site Scripting (XSS)pwrplugins · powerfolio · CWE-79 | Medium5.4 | — | 0.3% | Jan 31, 2024 |
21Monitor | CVE-2025-7046No exploit | Portfolio for Elementor & Image Gallery | PowerFolio <= 3.2.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom JSpwrplugins · powerfolio · CWE-79 | Medium5.4 | — | 0.2% | Jul 3, 2025 |
21Monitor | CVE-2025-6687No exploit | Magic Buttons for Elementor <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via magic-button Shortcodepwrplugins · magic buttons for elementor · CWE-79 | Medium5.4 | — | 0.2% | Jul 2, 2025 |
21Monitor | CVE-2025-6686No exploit | Magic Buttons for Elementor <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via magic-button Shortcodepwrplugins · magic buttons for elementor · CWE-79 | Medium5.4 | — | 0.2% | Jul 2, 2025 |
- CVE-2022-476521Monitor
Portfolio for Elementor, Image Gallery & Post Grid | PowerFolio < 2.3.1 - Contributor+ Stored XSS via Shortcode
MediumCVSS 5.4No exploitEPSS 1%pwrplugins · portfolio for elementorJan 30, 2023
- CVE-2024-2215021Monitor
WordPress Post Grid, Image Gallery & Portfolio for Elementor | PowerFolio Plugin <= 3.1 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%pwrplugins · powerfolioJan 31, 2024
- CVE-2025-704621Monitor
Portfolio for Elementor & Image Gallery | PowerFolio <= 3.2.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom JS
MediumCVSS 5.4No exploitEPSS 0%pwrplugins · powerfolioJul 3, 2025
- CVE-2025-668721Monitor
Magic Buttons for Elementor <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via magic-button Shortcode
MediumCVSS 5.4No exploitEPSS 0%pwrplugins · magic buttons for elementorJul 2, 2025
- CVE-2025-668621Monitor
Magic Buttons for Elementor <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via magic-button Shortcode
MediumCVSS 5.4No exploitEPSS 0%pwrplugins · magic buttons for elementorJul 2, 2025