← Back

Tooltip Glossary

tooltip_glossary

Vendor: Cminds • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cminds
1Tooltip Glossary
Nov 21, 2024
Oct 4, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
The CM Tooltip Glossary WordPress plugin before 3.9.21 does not escape some glossary_tooltip shortcode attributes, which could allow users a role as low as Contributor to perform Stored Cross-Site Scripting attacks
1Cminds
1Tooltip Glossary
May 6, 2026
Oct 10, 2016
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Reflected XSS in wordpress plugin enhanced-tooltipglossary v3.2.8