Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-4096 | 1 Wpdarko | 1 Responsive Tabs | 2025-05-28 | N/A | 5.9 MEDIUM |
The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise and escape some of its Tab settings, which could allow high privilege users such as Contributors and above to perform Stored Cross-Site Scripting attacks | |||||
CVE-2024-1846 | 1 Wpdarko | 1 Responsive Tabs | 2025-05-13 | N/A | 5.4 MEDIUM |
The Responsive Tabs WordPress plugin before 4.0.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks | |||||
CVE-2021-36893 | 1 Wpdarko | 1 Responsive Tabs | 2024-11-21 | 3.5 LOW | 4.8 MEDIUM |
Authenticated (author or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Responsive Tabs (WordPress plugin) <= 4.0.5 |