CVEs (1)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1K2 Service 1Product Customizer Light Jun 17, 2026 Oct 18, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Product Customizer Light plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping....Show more |