VendorsWPChillstrong_testimonialsall versions
Vulnerabilities

WPChill Strong Testimonials

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2024-47362
WordPress Strong Testimonials plugin <= 3.1.16 - Broken Access Control vulnerability
Published 2024-11-01 · Modified
8.8EPSS 0.004
CVE-2023-52123
WordPress Strong Testimonials Plugin <= 3.1.10 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2024-01-05 · Modified
8.8EPSS 0.002
CVE-2023-26013
WordPress Strong Testimonials Plugin <= 3.0.2 is vulnerable to Cross Site Scripting (XSS)
Published 2023-06-16 · Modified
6.5EPSS 0.004
CVE-2020-8549
Stored XSS in the Strong Testimonials plugin before 2.40.1 for WordPress can result in an attacker performing malicious actions such as stealing session tokens.
Published 2020-02-03 · Modified
6.1EPSS 0.019
CVE-2024-3261
Strong Testimonials < 3.1.12 - Contributor+ Stored XSS
Published 2024-04-24 · Analyzed
4.8EPSS 0.004
CVE-2023-6491
Strong Testimonials <= 3.1.12 - Authenticated(Contributor+) Improper Authorization to Views Modification
Published 2024-06-07 · Modified
4.3EPSS 0.003