CVE-2024-35768
- EPSS 0.28%
- Veröffentlicht 21.06.2024 13:15:11
- Zuletzt bearbeitet 27.02.2026 21:46:47
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Live Composer Team Page Builder: Live Composer allows Stored XSS.This issue affects Page Builder: Live Composer: from n/a through 1.5.42.
CVE-2024-35779
- EPSS 0.29%
- Veröffentlicht 21.06.2024 12:15:10
- Zuletzt bearbeitet 27.02.2026 21:47:46
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Live Composer Team Page Builder: Live Composer allows Stored XSS.This issue affects Page Builder: Live Composer: from n/a through 1.5.42.
CVE-2023-52193
- EPSS 0.08%
- Veröffentlicht 01.02.2024 10:15:10
- Zuletzt bearbeitet 27.02.2026 21:46:25
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Live Composer Team Page Builder: Live Composer allows Stored XSS.This issue affects Page Builder: Live Composer: from n/a through 1.5.23.
CVE-2023-52206
- EPSS 0.43%
- Veröffentlicht 08.01.2024 20:15:45
- Zuletzt bearbeitet 21.11.2024 08:39:23
Deserialization of Untrusted Data vulnerability in Live Composer Team Page Builder: Live Composer live-composer-page-builder.This issue affects Page Builder: Live Composer: from n/a through 1.5.25.
CVE-2022-4669
- EPSS 0.18%
- Veröffentlicht 21.02.2023 09:15:10
- Zuletzt bearbeitet 27.02.2026 21:38:56
The Page Builder: Live Composer WordPress plugin before 1.5.23 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role an...