Themeisle

Orbit Fox

15 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Veröffentlicht 27.03.2025 15:01:50
  • Zuletzt bearbeitet 08.07.2025 17:33:37

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle Orbit Fox by ThemeIsle allows Stored XSS.This issue affects Orbit Fox by ThemeIsle: from n/a through 2.10.44.

  • EPSS 0.18%
  • Veröffentlicht 10.01.2025 08:15:25
  • Zuletzt bearbeitet 16.01.2025 21:28:47

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘title_tag’ parameter in all versions up to, and including, 2.10.43 due to insufficient input sanitization and output escaping. This makes it possibl...

  • EPSS 0.17%
  • Veröffentlicht 10.01.2025 07:15:08
  • Zuletzt bearbeitet 16.01.2025 21:29:36

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Pricing Table widget in all versions up to, and including, 2.10.43 due to insufficient input sanitization and output escaping on user suppli...

  • EPSS 0.25%
  • Veröffentlicht 22.08.2024 10:15:05
  • Zuletzt bearbeitet 26.09.2024 22:22:04

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.10.36 due to insufficient input sanitization and output escaping. This makes it possible for aut...

  • EPSS 0.23%
  • Veröffentlicht 22.06.2024 02:15:44
  • Zuletzt bearbeitet 21.11.2024 09:09:51

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Services and Post Type Grid widgets in all versions up to, and including, 2.10.34 due to insufficient input sanitization and output escaping. This ma...

  • EPSS 0.23%
  • Veröffentlicht 13.03.2024 16:15:31
  • Zuletzt bearbeitet 22.01.2025 19:40:23

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Registration Form widget in all versions up to, and including, 2.10.32 due to insufficient input sanitization and output escaping. This makes it poss...

  • EPSS 0.23%
  • Veröffentlicht 13.03.2024 16:15:23
  • Zuletzt bearbeitet 22.01.2025 21:00:03

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form widget addr2_width attribute in all versions up to, and including, 2.10.30 due to insufficient input sanitization and output escaping. This make...

  • EPSS 0.28%
  • Veröffentlicht 13.03.2024 16:15:23
  • Zuletzt bearbeitet 22.01.2025 20:58:15

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Pricing Table widget in the $settings['title_tags'] parameter in all versions up to, and including, 2.10.30 due to insufficient input sanitization a...

  • EPSS 0.12%
  • Veröffentlicht 27.02.2024 05:15:08
  • Zuletzt bearbeitet 16.01.2025 19:29:54

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Post Type Grid Widget Title in all versions up to, and including, 2.10.30 due to insufficient input sanitization and output escaping on user...

  • EPSS 0.15%
  • Veröffentlicht 05.02.2024 22:16:02
  • Zuletzt bearbeitet 21.11.2024 08:46:45

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Pricing Table Elementor Widget in all versions up to, and including, 2.10.27 due to insufficient input sanitization and output escaping on t...