Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2025-10006 The WPBakery Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rev_slider_vc' shortcode in all version… Page Builder 8.7+ Fix from $1,6002025-10-18 MEDIUM 5.4 CVE-2025-11161 The WPBakery Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the vc_custom_heading shortcode in all versions up to… Page Builder 8.7+ Fix from $1,6002025-10-15 MEDIUM 5.4 CVE-2025-11160 The WPBakery Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom JS module in all versions up to, and inclu… Page Builder 8.7+ Fix from $1,6002025-10-15 MEDIUM 5.4 CVE-2025-7502 The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several shortcodes in all versions up t… Page Builder 8.6+ Fix from $1,6002025-08-06 MEDIUM 5.4 CVE-2025-4968 The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple Page Builder elements (Copyrig… Page Builder 8.5+ Fix from $1,6002025-07-24 MEDIUM 5.4 CVE-2025-4965 The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Grid Builder feature in al… Page Builder 8.5+ Fix from $1,6002025-06-19 MEDIUM 5.4 CVE-2024-43953 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webcodingplace Classic Addons – WPBakery Page B… Page Builder after 3.0 Fix from $1,6002024-08-29 HIGH 8.8 CVE-2024-5709 The WPBakery Visual Composer plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.7 via the 'layout_nam… Page Builder 7.8+ Fix from $1,9502024-08-06 MEDIUM 5.4 CVE-2024-5708 The WPBakery Visual Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘link’ parameter in all versions up to, and in… Wpbakery Page Builder 7.8+ Fix from $1,6002024-08-06 MEDIUM 5.4 CVE-2024-1842 The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Heading tag attribute in all versions up to, and includ… Page Builder 7.6+ Fix from $1,6002024-05-02 MEDIUM 5.4 CVE-2024-1805 The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button onclick attribute in all versions up to, and including,… Page Builder 7.6+ Fix from $1,6002024-05-02 MEDIUM 5.4 CVE-2024-1840 The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Author tag attribute in all versions up to, and including… Page Builder 7.6+ Fix from $1,6002024-05-02 MEDIUM 5.4 CVE-2024-1841 The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title tag attribute in all versions up to, and including,… Page Builder 7.6+ Fix from $1,6002024-05-02 MEDIUM 5.4 CVE-2023-31213 Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WPBakery Page Builder plugin <= 6.13.0 versions. Page Builder 6.13.0+ Fix from $1,6002023-06-22 MEDIUM 5.4 CVE-2020-28650 The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mecha… Page Builder 6.4.1+ Fix from $1,6002020-11-16