Skip to content
Noroxi

shapedplugin records

17 published records for vendor shapedplugin.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
35.3%
Median publish → KEV
No record has entered KEV

All records

17 records
  • WordPress WP Tabs Plugin <= 2.1.14 is vulnerable to Cross Site Request Forgery (CSRF)

    HighCVSS 8.8No exploitEPSS 0%

    shapedplugin · wp tabsFeb 14, 2023

  • Logo Carousel < 3.4.2 - Unauthorised Private Post Access

    HighCVSS 8.1No exploitEPSS 1%

    shapedplugin · logo carouselDec 21, 2021

  • CVE-2024-3020
    28Monitor

    Carousel, Slider, Gallery by WP Carousel – Image Carousel & Photo Gallery, Post Carousel & Post Grid, Product Carousel & Product Grid for WooCommerce <= 2.6.3 -

    HighCVSS 7.2No exploitEPSS 1%

    shapedplugin · carousel, slider, photo gallery with lightbox, video slider, by wp carouselApr 10, 2024

  • WordPress WP Tabs plugin <= 2.2.12 - PHP Object Injection Vulnerability

    HighCVSS 7.2No exploitEPSS 0%

    shapedplugin · wp tabsMay 16, 2025

  • WP Tabs < 2.2.7 - Admin+ Stored XSS

    MediumCVSS 6.1No exploitEPSS 0%

    shapedplugin · wp tabsMar 25, 2025

  • Logo Carousel < 3.4.2 - Contributor+ Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 1%

    shapedplugin · logo carouselDec 21, 2021

  • CVE-2023-0360
    21Monitor

    Location Weather < 1.3.4 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 1%

    shapedplugin · location weatherFeb 13, 2023

  • CVE-2023-0071
    21Monitor

    WP Tabs < 2.1.17 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 1%

    shapedplugin · wp tabsJan 30, 2023

  • CVE-2023-0537
    21Monitor

    Product Slider For WooCommerce Lite <= 1.1.7 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 1%

    shapedplugin · product slider for woocommerceMay 8, 2023

  • CVE-2023-0097
    21Monitor

    Post Grid, Post Carousel, & List Category Posts < 2.4.19 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 0%

    shapedplugin · smart post showJan 30, 2023

  • CVE-2022-4648
    21Monitor

    Real Testimonials < 2.6.0 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 0%

    shapedplugin · real testimonialsJan 16, 2023

  • CVE-2022-4629
    21Monitor

    Product Slider for WooCommerce < 2.6.4 - Contributor+ Stored XSS in Shortcode

    MediumCVSS 5.4No exploitEPSS 0%

    shapedplugin · product slider for woocommerceJan 23, 2023

  • CVE-2024-2949
    21Monitor

    Carousel, Slider, Gallery by WP Carousel – Image Carousel & Photo Gallery, Post Carousel & Post Grid, Product Carousel & Product Grid for WooCommerce <= 2.6.3 -

    MediumCVSS 5.4No exploitEPSS 0%

    shapedplugin · wp carouselApr 6, 2024

  • WordPress WP Tabs Plugin <= 2.2.0 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 5.4No exploitEPSS 0%

    shapedplugin · wp tabsJan 5, 2024

  • CVE-2024-8187
    19Monitor

    Smart Post Show <= 3.0.0 - Editor+ Stored XSS

    MediumCVSS 4.8No exploitEPSS 0%

    shapedplugin · smart post showMay 15, 2025

  • CVE-2022-2382
    17Monitor

    Product Slider for WooCommerce < 2.5.7 - Subscriber+ Arbitrary Options Deletion

    MediumCVSS 4.3No exploitEPSS 0%

    shapedplugin · product slider for woocommerceAug 22, 2022

  • CVE-2024-3996
    14Monitor

    Post Grid, Post Carousel, & List Category Posts < 2.4.28 - Editor+ Stored XSS

    LowCVSS 3.5No exploitEPSS 0%

    shapedplugin · smart post showMay 15, 2025