Vulnerabilities (CVE)

Filtered by vendor Pixelgrade Subscribe
Total 9 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-27633 1 Pixelgrade 1 Customify 2023-11-30 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Customify – Intuitive Website Styling plugin <= 2.10.4 versions.
CVE-2023-23702 1 Pixelgrade 1 Comments Rating 2023-11-14 N/A 4.8 MEDIUM
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions.
CVE-2022-4671 1 Pixelgrade 1 Pixcodes 2023-11-07 N/A 5.4 MEDIUM
The PixCodes WordPress plugin before 2.3.7 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
CVE-2023-45655 1 Pixelgrade 1 Pixfields 2023-10-19 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in PixelGrade PixFields plugin <= 0.7.0 versions.
CVE-2023-45654 1 Pixelgrade 1 Comments Rating 2023-10-19 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions.
CVE-2023-40205 1 Pixelgrade 1 Pixtypes 2023-09-08 N/A 6.1 MEDIUM
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Pixelgrade PixTypes plugin <= 1.4.15 versions.
CVE-2023-25487 1 Pixelgrade 1 Pixtypes 2023-07-14 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade PixTypes plugin <= 1.4.14 versions.
CVE-2023-23704 1 Pixelgrade 1 Comments Rating 2023-07-13 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.6 versions.
CVE-2022-46844 1 Pixelgrade 1 Pixfields 2023-05-12 N/A 5.4 MEDIUM
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in PixelGrade PixFields plugin <= 0.7.0 versions.