CVE-2026-15653
- EPSS 0.19%
- Veröffentlicht 24.07.2026 06:52:01
- Zuletzt bearbeitet 24.07.2026 20:45:45
The Visualizer – Tables & Charts Manager with Built-in AI Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'backend-title' parameter in all versions up to, and including, 4.0.5 due to insufficient input sanitization...
CVE-2026-65526
- EPSS 0.26%
- Veröffentlicht 23.07.2026 11:19:14
- Zuletzt bearbeitet 03.08.2026 10:16:32
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle Visualizer allows Blind SQL Injection. This issue affects Visualizer: from n/a through 4.0.1.
CVE-2026-13468
- EPSS 0.37%
- Veröffentlicht 01.07.2026 03:43:35
- Zuletzt bearbeitet 01.07.2026 13:56:17
The Visualizer – Tables & Charts Manager with Built-in AI Generator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.0.3. This is due to the plugin not properly verifying that a user is authorized to ...
CVE-2026-8689
- EPSS 0.24%
- Veröffentlicht 28.05.2026 07:43:43
- Zuletzt bearbeitet 28.05.2026 13:45:25
The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.11.14. This is due to a missing capability check on the renderChartPages() and uploadData() fu...
CVE-2026-24573
- EPSS 0.17%
- Veröffentlicht 20.05.2026 13:16:16
- Zuletzt bearbeitet 24.07.2026 10:10:00
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle Visualizer allows Stored XSS. This issue affects Visualizer: from n/a before 4.0.0.
CVE-2024-35736
- EPSS 0.44%
- Veröffentlicht 08.06.2024 13:15:55
- Zuletzt bearbeitet 21.11.2024 09:20:46
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle Visualizer.This issue affects Visualizer: from n/a through 3.11.1.
CVE-2024-27958
- EPSS 0.45%
- Veröffentlicht 17.03.2024 17:15:06
- Zuletzt bearbeitet 28.04.2026 19:23:35
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle Visualizer allows Reflected XSS.This issue affects Visualizer: from n/a through 3.10.5.
CVE-2023-23708
- EPSS 0.42%
- Veröffentlicht 03.05.2023 13:15:10
- Zuletzt bearbeitet 21.11.2024 07:46:42
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Themeisle Visualizer: Tables and Charts Manager for WordPress plugin <= 3.9.4 versions.
CVE-2022-46848
- EPSS 0.51%
- Veröffentlicht 28.03.2023 08:15:07
- Zuletzt bearbeitet 21.11.2024 07:31:09
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Themeisle Visualizer: Tables and Charts Manager for WordPress plugin <= 3.9.1 versions.
CVE-2022-2444
- EPSS 2.25%
- Veröffentlicht 18.07.2022 17:15:09
- Zuletzt bearbeitet 08.04.2026 19:17:51
The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to deserialization of untrusted input via the 'remote_data' parameter in versions up to, and including 3.7.9. This makes it possible for authenticated attacker...