VendorstagDivtagdiv_composerall versions
Vulnerabilities

tagDiv tagDiv Composer

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2024-3813
tagDiv Composer <= 4.8 - Authenticated (Contributor+) Local File Inclusion via Shortcode
Published 2024-06-15 · Modified
8.8EPSS 0.007
CVE-2023-39166
WordPress tagDiv Composer Plugin < 4.4 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-11-13 · Modified
7.1EPSS 0.002
CVE-2023-3169
tagDiv Composer < 4.2 - Unauthenticated Stored XSS
Published 2023-09-11 · Modified
6.1EPSS 0.013
CVE-2024-3886
tagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[]
Published 2024-08-31 · Analyzed
6.1EPSS 0.004
CVE-2024-5212
tagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[]
Published 2024-08-31 · Analyzed
6.1EPSS 0.004
CVE-2025-2806
tagDiv Composer <= 5.3 - Reflected Cross-Site Scripting via 'data'
Published 2025-05-08 · Analyzed
6.1EPSS 0.003
CVE-2024-3814
tagDiv Composer <= 4.8 - Authenticated (Author+) Stored Cross-Site Scripting via Attachment Meta
Published 2024-06-15 · Modified
5.5EPSS 0.003
CVE-2023-3170
tagDiv Composer < 4.2 - Admin+ Stored XSS
Published 2023-09-11 · Modified
4.8EPSS 0.004