CVE-2024-4096
- EPSS 0.12%
- Veröffentlicht 30.07.2024 06:15:02
- Zuletzt bearbeitet 28.05.2025 00:52:03
The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise and escape some of its Tab settings, which could allow high privilege users such as Contributors and above to perform Stored Cross-Site Scripting attacks
CVE-2023-45635
- EPSS 0.18%
- Veröffentlicht 04.06.2024 10:15:10
- Zuletzt bearbeitet 21.11.2024 08:27:06
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WP Darko Responsive Tabs allows Code Injection.This issue affects Responsive Tabs: from n/a before 4.0.6.
CVE-2024-1846
- EPSS 0.38%
- Veröffentlicht 15.04.2024 05:15:15
- Zuletzt bearbeitet 13.05.2025 00:48:44
The Responsive Tabs WordPress plugin before 4.0.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to pe...
CVE-2021-36893
- EPSS 0.3%
- Veröffentlicht 11.04.2022 20:15:15
- Zuletzt bearbeitet 21.11.2024 06:14:15
Authenticated (author or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Responsive Tabs (WordPress plugin) <= 4.0.5