Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | RSS Aggregator by Feedzy | 0 ~ 4.1.1 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-4553 | FL3R FeelBox <= 8.1 - Moods Reset via CSRF | |
| CVE-2022-4776 | CC Child Pages < 1.43 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4306 | Panda Pods Repeater Field < 1.5.4 - Reflected XSS | |
| CVE-2022-4828 | Bold Timeline Lite < 1.1.5 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4794 | AAWP < 3.12.3 - Unsafe URL Handling | |
| CVE-2023-0071 | WP Tabs < 2.1.17 - Contributor+ Stored XSS | |
| CVE-2022-4872 | WooCommerce Chained Products < 2.12.0 - Unauthenticated Arbitrary Options Update to 'no' | |
| CVE-2022-4472 | Simple Sitemap < 3.5.8 - Contributor+ Stored XSS | |
| CVE-2022-4649 | WP Extended Search < 2.1.2 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4654 | Pricing Tables WordPress Plugin – Easy Pricing Tables < 3.2.3 - Contributor+ Stored XSS vi | |
| CVE-2022-4834 | CPT Bootstrap Carousel <= 1.12 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4793 | Blog Designer – Post and Widget < 2.4.1 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4835 | Social Sharing Toolkit <= 2.6 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4792 | News & Blog Designer Pack < 3.3 - Contributor+ Stored XSS via Shortcode | |
| CVE-2022-4395 | Membership For WooCommerce < 2.1.7 - Unauthenticated Arbitrary File Upload | |
| CVE-2022-4680 | Revive Old Posts – Social Media Auto Post and Scheduling Plugin < 9.0.11 - PHP Object Inje | |
| CVE-2022-4671 | PixCodes < 2.3.7 - Contributor+ Stored XSS in Shortcode | |
| CVE-2022-4787 | Themify Shortcodes < 2.0.8 - Contributor+ Stored XSS via Shortcode | |
| CVE-2023-0074 | WP Social Widget < 2.2.4 - Contributor+ Stored XSS | |
| CVE-2022-4699 | MediaElement.js – HTML5 Video & Audio Player <= 4.2.8 - Contributor+ Stored XSS via Shortc |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet