Skip to content
Noroxi

Web-Settler records

11 published records for vendor web-settler.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 21
  2. 22
  3. 23

Bar: total · dark part: CISA KEV.

Attack profile

All records

11 records
  • WordPress Form Builder Plugin <= 1.9.9.0 is vulnerable to CSV Injection

    CriticalCVSS 9.8No exploitEPSS 1%

    web-settler · form builderNov 7, 2023

  • WordPress Form Builder Plugin <= 1.9.9.0 is vulnerable to Cross Site Request Forgery (CSRF)

    HighCVSS 8.8No exploitEPSS 0%

    web-settler · form builderJun 22, 2023

  • WordPress Layer Slider Plugin <= 1.1.9.7 is vulnerable to Cross Site Request Forgery (CSRF)

    MediumCVSS 6.5No exploitEPSS 0%

    web-settler · layer sliderJul 11, 2023

  • Form Builder < 1.9.8.4 - Authenticated Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 1%

    web-settler · form builderSep 6, 2021

  • WordPress Testimonial Slider plugin <= 3.5.8.3 - Cross-Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 1%

    web-settler · testimonial sliderApr 4, 2022

  • CVE-2023-5661
    21Monitor

    Social Feed <= 1.5.4.6 - Authenticated (Author+) Stored Cross-Site Scripting via Shortcode

    MediumCVSS 5.4No exploitEPSS 0%

    web-settler · social feedNov 7, 2023

  • WordPress Layer Slider Plugin <= 1.1.9.7 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 5.4No exploitEPSS 0%

    web-settler · layer sliderAug 10, 2023

  • WordPress Layer Slider Plugin <= 1.1.9.7 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    web-settler · layer sliderNov 8, 2023

  • WordPress Social Feed | All social media in one place Plugin <= 1.5.4.6 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    web-settler · social feed \| all social media in one placeNov 8, 2023

  • WordPress Image Social Feed Plugin Plugin <= 1.7.6 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    web-settler · image social feedSep 1, 2023

  • WordPress Login Page Styler Plugin <= 6.2 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    web-settler · custom login page stylerMay 10, 2023