← Back

Quadlayers

quadlayers

4 CVEs • 3 products

Products (3)

Click to collapse
Toggle

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Quadlayers
1Wp Social Chat
Nov 21, 2024
Aug 22, 2022
N/A· v4
4.8 MEDIUM· v3
N/A· v2
The WP Social Chat WordPress plugin before 6.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks.
1Quadlayers
1Perfect Brands For Woocommerce
Nov 21, 2024
Feb 18, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The vulnerability discovered in WordPress Perfect Brands for WooCommerce plugin (versions <= 2.0.4) allows server information exposure.
1Quadlayers
1Perfect Brands For Woocommerce
Nov 21, 2024
Feb 18, 2022
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
The vulnerability allows Subscriber+ level users to create brands in WordPress Perfect Brands for WooCommerce plugin (versions <= 2.0.4).
1Quadlayers
1Wp Social Feed Gallery
Nov 21, 2024
Aug 29, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.