Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Alan Jackson Multi-column Tag Map plugin <= 17.0.24...
6.5CVSS
5.2AI Score
0.001EPSS
Cross-Site Request Forgery (CSRF) vulnerability in Keith Solomon Configurable Tag Cloud (CTC) plugin <= 5.2...
8.8CVSS
8.8AI Score
0.001EPSS
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Himanshu Bing Site Verification plugin using Meta Tag plugin <= 1.0...
5.9CVSS
4.8AI Score
0.0005EPSS
Multiple Stored Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability in 3D Tag Cloud plugin <= 3.8 at...
6.1CVSS
6.1AI Score
0.001EPSS
The Better Tag Cloud WordPress plugin through 0.99.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite...
4.8CVSS
4.7AI Score
0.001EPSS
The Auto More Tag WordPress plugin through 4.0.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite...
4.8CVSS
4.7AI Score
0.001EPSS
The uncleYiba/photo_tag repository through 2020-08-31 on GitHub allows absolute path traversal because the Flask send_file function is used...
9.3CVSS
9.3AI Score
0.002EPSS
dhowden tag before 2020-11-19 allows "panic: runtime error: slice bounds out of range" via...
6.5CVSS
6.4AI Score
0.001EPSS
dhowden tag before 2020-11-19 allows "panic: runtime error: index out of range" via...
6.5CVSS
6.3AI Score
0.001EPSS
dhowden tag before 2020-11-19 allows "panic: runtime error: index out of range" via...
6.5CVSS
6.3AI Score
0.001EPSS
dhowden tag before 2020-11-19 allows "panic: runtime error: slice bounds out of range" via...
6.5CVSS
6.4AI Score
0.001EPSS
In the git-tag-annotation-action (open source GitHub Action) before version 1.0.1, an attacker can execute arbitrary (*) shell commands if they can control the value of [the tag input] or manage to alter the value of [the GITHUB_REF environment variable]. The problem has been patched in version...
9.6CVSS
9.6AI Score
0.001EPSS