Vulnerabilities protected by our XSS: Cross Site Scripting firewall rule

23,168,707
Attacks Blocked in Past 24 Hours

Showing 6261-6280 of 6,652 Vulnerabilities

Title CVE ID CVSS Vector Date
MP3-jPlayer < 1.8.8 - Cross-Site Scripting 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L February 23, 2014
Connections Business Directory < 0.7.9.4 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N February 20, 2014
Subscribe To Comments Reloaded <= 140129 - Cross-Site Request Forgery to Cross-Site Scripting CVE-2014-2274 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H February 18, 2014
Nextend Social Login and Register <= 1.5.0 - Cross-Site Scripting CVE-2014-8800 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L February 12, 2014
All In One Slider <= 1.2.20 - Reflected Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N February 10, 2014
Broadcast Live Video – Live Streaming : HTML5, WebRTC, HLS, RTSP, RTMP < 4.29.5 - Cross-Site Scripting CVE-2014-1906 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L February 6, 2014
Media File Renamer < 1.9.4 - Stored Cross-Site Scripting CVE-2014-2040 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N January 31, 2014
Photocrati <= 4.8.0 - Cross-Site Scripting CVE-2014-100016 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 29, 2014
SEO Link Rotator <= 1.0 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 26, 2014
Media Downloader <= 0.1.992 - Reflected Cross-Site Scripting CVE-2014-125090 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 23, 2014
Social Ring (Facebook Like, Google +1, ReTweet, LinkedIn and Pin It) <= 1.1.9 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 18, 2014
DT Chocolate (All Versions) - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 13, 2014
WP-Members Membership Plugin <= 2.8.9 - Reflected Cross-Site Scripting 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L January 7, 2014
April's Super Functions Pack <= 1.4.7 - Reflected Cross-Site Scripting CVE-2014-100026 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 6, 2014
Cloak & Encrypt < 3.8.0 - Cross-Site Scripting CVE-2014-4563 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 5, 2014
Foliopress WYSIWYG < 2.6.8.5 - Cross-Site Scripting CVE-2014-1232 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 3, 2014
intouch <= 2.0 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N January 1, 2014
WP-Cron Dashboard < 1.1.6 - Cross-Site Scripting CVE-2013-6991 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 26, 2013
Recommend to a friend <= 2.2.2 - Cross-Site Scripting CVE-2013-7276 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 24, 2013
Repagent (Unknown Versions) - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N December 19, 2013

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation