CVE-2024-3988
- EPSS 0.13%
- Veröffentlicht 25.04.2024 08:15:07
- Zuletzt bearbeitet 07.02.2025 02:00:06
The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elementor Templates) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Sina Fancy Text Widget in all ...
CVE-2024-29935
- EPSS 0.16%
- Veröffentlicht 27.03.2024 11:15:47
- Zuletzt bearbeitet 05.02.2025 15:39:57
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SinaExtra Sina Extension for Elementor allows Stored XSS.This issue affects Sina Extension for Elementor: from n/a through 3.5.0.
CVE-2021-24269
- EPSS 0.22%
- Veröffentlicht 05.05.2021 19:15:08
- Zuletzt bearbeitet 21.11.2024 05:52:43
The “Sina Extension for Elementor” WordPress Plugin before 3.3.12 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
CVE-2019-15839
- EPSS 0.8%
- Veröffentlicht 30.08.2019 17:15:12
- Zuletzt bearbeitet 24.03.2025 17:58:47
The sina-extension-for-elementor plugin before 2.2.1 for WordPress has local file inclusion.