← Back

Clickfunnels

clickfunnels

Vendor: Clickfunnels • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Clickfunnels
1Clickfunnels
Jun 17, 2026
Aug 16, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
The ClickFunnels WordPress plugin through 3.1.1 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.
1Clickfunnels
1Clickfunnels
Jun 17, 2026
May 24, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Cross-Site Request Forgery (CSRF) vulnerability in Etison, LLC ClickFunnels plugin <= 3.1.1 versions.