Vulnerabilities protected by our XSS: Cross Site Scripting firewall rule

35,044,591
Attacks Blocked in Past 24 Hours

Showing 5801-5820 of 6,183 Vulnerabilities

Title CVE ID CVSS Vector Date
Media Downloader <= 0.1.992 - Reflected Cross-Site Scripting CVE-2014-125090 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 23, 2014
Social Ring (Facebook Like, Google +1, ReTweet, LinkedIn and Pin It) <= 1.1.9 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 18, 2014
DT Chocolate (All Versions) - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 13, 2014
WP-Members Membership Plugin <= 2.8.9 - Reflected Cross-Site Scripting 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L January 7, 2014
April's Super Functions Pack <= 1.4.7 - Reflected Cross-Site Scripting CVE-2014-100026 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 6, 2014
Cloak & Encrypt < 3.8.0 - Cross-Site Scripting CVE-2014-4563 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 5, 2014
Foliopress WYSIWYG < 2.6.8.5 - Cross-Site Scripting CVE-2014-1232 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 3, 2014
intouch <= 2.0 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 1, 2014
WP-Cron Dashboard < 1.1.6 - Cross-Site Scripting CVE-2013-6991 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 26, 2013
Recommend to a friend <= 2.2.2 - Cross-Site Scripting CVE-2013-7276 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 24, 2013
Repagent (Unknown Versions) - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 19, 2013
Gallery – Photo Albums Plugin < 1.2.29 - Cross-Site Scripting 5.5 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N December 17, 2013
S3 Video <= 0.982 - Cross-Site Scripting CVE-2013-7279 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 17, 2013
WPRealty <= 2.9.1 - Reflected Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 13, 2013
Ad-minister <= 0.6 - Cross-Site Scripting CVE-2013-6993 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 13, 2013
SpiderVPlayer <= 2.1 - Reflected Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 9, 2013
Download Manager < 2.5.9 - Stored Cross-Site Scripting CVE-2013-7319 7.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N December 8, 2013
Download Manager <= 2.5.8 - Cross-Site Scripting 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N December 7, 2013
GroupDocs.Comparison for Cloud < 1.0.3 - Cross-Site Scripting 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L December 3, 2013
Bloog <= 1.1 - Cross-Site Scripting CVE-2013-7129 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 2, 2013

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation