Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2025-22296 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hashthemes Hash Elements hash-elements.This iss… Hash Elements 1.5.1+ Fix from $1,6002025-01-07 MEDIUM 5.3 CVE-2024-10802 The Hash Elements plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the hash_elements_get_posts_… Hash Elements 1.4.8+ Fix from $1,6002024-11-13 MEDIUM 6.1 CVE-2024-9417 The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to limited file uploads due to a misconfigured file type validation in th… Hash Form 1.2.0+ Fix from $1,6002024-10-05 CRITICAL 9.8 CVE-2024-5085 The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.1.0 via d… Hash Form 1.1.1+ Fix from $2,3002024-05-23 CRITICAL 9.8 CVE-2024-5084EPSS 51% The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'fil… Hash Form 1.1.1+ Fix from $2,3002024-05-23 MEDIUM 5.4 CVE-2024-5177 The Hash Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'url' parameter within multiple widgets in all versions u… Hash Elements 1.3.9+ Fix from $1,6002024-05-23 MEDIUM 5.4 CVE-2024-30426 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HashThemes Hash Elements allows Stored XSS.This… Hash Elements 1.3.4+ Fix from $1,6002024-03-29 HIGH 8.1 CVE-2021-39333 The Hashthemes Demo Importer Plugin <= 1.1.1 for WordPress contained several AJAX functions which relied on a nonce which was visible to all logged-i… Hashthemes Demo Importer after 1.1.1 Fix from $1,9502021-11-01