Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pagelayer HIGH 8.8
CVE-2024-30465

Missing Authorization vulnerability in Pagelayer Team PageLayer.This issue affects PageLayer: from n/a through 1.8.1.

Fix: 1.8.2+
Fix from $1,950 2024-06-09
Pagelayer MEDIUM 5.4
CVE-2024-2504

The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'attr' paramete…

Fix: 1.8.5+
Fix from $1,600 2024-04-09
Pagelayer MEDIUM 5.4
CVE-2024-2127

The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom attributes i…

Fix: 1.8.4+
Fix from $1,600 2024-03-07
Pagelayer MEDIUM 5.4
CVE-2024-1590

The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Button…

Fix: 1.8.3+
Fix from $1,600 2024-02-23
Pagelayer MEDIUM 5.4
CVE-2023-6738

The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pagelayer_head…

Fix: after 1.7.8
Fix from $1,600 2024-01-04
Pagelayer MEDIUM 5.4
CVE-2023-5087

The Page Builder: Pagelayer WordPress plugin before 1.7.8 doesn't prevent attackers with author privileges and higher from inserting malicious JavaSc…

Fix: 1.7.8+
Fix from $1,600 2023-10-16
Pagelayer MEDIUM 6.1
CVE-2023-4687

The Page Builder: Pagelayer WordPress plugin before 1.7.7 doesn't prevent unauthenticated attackers from updating a post's header or footer code on s…

Fix: 1.7.7+
Fix from $1,600 2023-10-16
Pagelayer MEDIUM 6.1
CVE-2020-36384

PageLayer before 1.3.5 allows reflected XSS via color settings.

Fix: 1.3.5+
Fix from $1,600 2021-06-07
Pagelayer MEDIUM 6.1
CVE-2020-36383

PageLayer before 1.3.5 allows reflected XSS via the font-size parameter.

Fix: 1.3.5+
Fix from $1,600 2021-06-07
Pagelayer HIGH 8.8
CVE-2020-35944

An issue was discovered in the PageLayer plugin before 1.1.2 for WordPress. The pagelayer_settings_page function is vulnerable to CSRF, which can lea…

Fix: 1.1.2+
Fix from $1,950 2021-01-01
Pagelayer HIGH 7.4
CVE-2020-35947

An issue was discovered in the PageLayer plugin before 1.1.2 for WordPress. Nearly all of the AJAX action endpoints lacked permission checks, allowin…

Fix: 1.1.2+
Fix from $1,950 2021-01-01