Vulnerabilities (CVE)

Filtered by CWE-79
Angry Yack Logo
Total 42233 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-9416 1 Onthegosystems 1 Sitepress-multilingual-cms 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The sitepress-multilingual-cms (WPML) plugin 2.9.3 to 3.2.6 for WordPress has XSS via the Accept-Language HTTP header.
CVE-2015-9414 1 Wpsymposiumpro 1 Wp-symposium 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The wp-symposium plugin through 15.8.1 for WordPress has XSS via the wp-content/plugins/wp-symposium/get_album_item.php?size parameter.
CVE-2015-9412 1 Royal-slider Project 1 Royal-slider 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Royal-Slider plugin before 3.2.7 for WordPress has XSS via the rstype parameter.
CVE-2015-9411 1 Gopostmatic 1 Replyable 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Postmatic plugin before 1.4.6 for WordPress has XSS.
CVE-2015-9410 1 Blubrry 1 Powerpress 2024-11-21 3.5 LOW 5.4 MEDIUM
The Blubrry PowerPress Podcasting plugin 6.0.4 for WordPress has XSS via the tab parameter.
CVE-2015-9407 1 Cyberseo 1 Xpinner Lite 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The xpinner-lite plugin through 2.2 for WordPress has xpinner-lite.php XSS.
CVE-2015-9405 1 Wp-piwik Project 1 Wp-piwik 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The wp-piwik plugin before 1.0.5 for WordPress has XSS.
CVE-2015-9404 1 Neuvoo 1 Neuvoo-jobroll 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The neuvoo-jobroll plugin 2.0 for WordPress has neuvoo_keywords XSS.
CVE-2015-9403 1 Neuvoo 1 Neuvoo-jobroll 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The neuvoo-jobroll plugin 2.0 for WordPress has neuvoo_location XSS.
CVE-2015-9401 1 Websimon-tables Project 1 Websimon-tables 2024-11-21 3.5 LOW 4.8 MEDIUM
The websimon-tables plugin through 1.3.4 for WordPress has wp-admin/tools.php edit_style id XSS.
CVE-2015-9397 1 Webmaster-source 1 Gocodes 2024-11-21 3.5 LOW 5.4 MEDIUM
The gocodes plugin through 1.3.5 for WordPress has wp-admin/tools.php deletegc XSS.
CVE-2015-9396 1 Attosoft 1 Auto Thickbox Plus 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The auto-thickbox-plus plugin through 1.9 for WordPress has wp-content/plugins/auto-thickbox-plus/download.min.php?file= XSS.
CVE-2015-9393 1 Usersultra 1 Users Ultra Membership 2024-11-21 3.5 LOW 5.4 MEDIUM
The users-ultra plugin before 1.5.63 for WordPress has XSS via the p_desc parameter.
CVE-2015-9392 1 Usersultra 1 Users Ultra Membership 2024-11-21 3.5 LOW 5.4 MEDIUM
The users-ultra plugin before 1.5.63 for WordPress has XSS via the p_name parameter.
CVE-2015-9391 1 Ostenta 1 Yawpp 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The yawpp plugin through 1.2.2 for WordPress has XSS via the field1 parameter.
CVE-2015-9389 1 Mtouch Quiz Project 1 Mtouch Quiz 2024-11-21 3.5 LOW 5.4 MEDIUM
The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via a quiz name.
CVE-2015-9386 1 Mtouch Quiz Project 1 Mtouch Quiz 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via the quiz parameter during a Quiz Manage operation.
CVE-2015-9385 1 Bestwebsoft 1 Quotes And Tips 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The quotes-and-tips plugin before 1.20 for WordPress has XSS.
CVE-2015-9384 1 Bestwebsoft 1 Relevant 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The relevant plugin before 1.0.8 for WordPress has XSS.
CVE-2015-9379 1 Ithemes 1 Builder Style Manager 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
iThemes Builder Style Manager before 0.7.7 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9378 1 Ithemes 1 Builder Theme Market 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
iThemes Builder Theme Market before 5.1.27 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9377 1 Ithemes 1 Builder Theme Depot 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
iThemes Builder Theme Depot before 5.0.30 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9376 1 Ithemes 1 Mobile 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
iThemes Mobile before 1.2.8 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9375 1 Ithemes 1 Table Rate Shipping 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Table Rate Shipping Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9374 1 Ithemes 1 Stripe 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Stripe Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9373 1 Webdevstudios 1 Ithemes Paypal Pro 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
PayPal Pro Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9372 1 Ithemes 1 Membership 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Membership Add-on for iThemes Exchange before 1.3.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9371 1 Ithemes 1 Manual Purchases 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Manual Purchases Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9370 1 Ithemes 1 Invoices 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Invoices Add-on for iThemes Exchange before 1.4.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9369 1 Ithemes 1 Easy Us Sales Taxes 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Easy US Sales Taxes Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9368 1 Ithemes 1 Easy Eu Value Added \(vat\) Taxes 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Easy EU Value Added (VAT) Taxes Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9367 1 Ithemes 1 Easy Canadian Sales Taxes 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Easy Canadian Sales Taxes Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9366 1 Ithemes 1 Custom Url Tracking 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Custom URL Tracking Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9365 1 Ithemes 1 Authorize.net 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Authorize.net Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9364 1 2checkout 1 Ithemes 2checkout 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
2Checkout Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9363 1 Ithemes 1 Exchange 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
iThemes Exchange before 1.12.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9362 1 Never5 1 Post Connector 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Post Connector plugin before 1.0.4 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9361 1 Never5 1 Related Posts 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Related Posts plugin before 1.8.2 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9360 1 Updraftplus 1 Updraftplus 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The updraftplus plugin before 1.9.64 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9359 1 Automattic 1 Jetpack 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Jetpack plugin before 3.4.3 for WordPress has XSS via add_query_arg() and remove_query_arg().