Vulnerabilities protected by our XSS: Cross Site Scripting firewall rule

23,073,997
Attacks Blocked in Past 24 Hours

Showing 6321-6340 of 6,652 Vulnerabilities

Title CVE ID CVSS Vector Date
WordPress Core < 3.6.1 - .swf and .exe File Upload CVE-2013-5739 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N September 11, 2013
WordPress Core < 3.6.1 - HTML File Upload CVE-2013-5738 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N September 11, 2013
Event Easy Calendar <= 1.0.0 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 7, 2013
Design Approval System <= 3.6 - Cross-Site Scripting CVE-2013-5711 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 7, 2013
NextGEN Smooth Gallery <= 1.2 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 3, 2013
Encrypted Blog <= 0.0.6.2 - Reflected Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 28, 2013
silverOrchid <= 1.5.0 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 27, 2013
Post Gallery <= 1.0.6 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 26, 2013
Contact Form By BestWebSoft<= 3.34 - Cross-Site Scripting CVE-2013-7481 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 26, 2013
Simple Login Registration <= 1.0.2 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 26, 2013
Webcam Video Conference <= 3.1 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 23, 2013
Broadcast Live Video – Live Streaming : HTML5, WebRTC, HLS, RTSP, RTMP <= 4.25.3 - Reflected Cross-Site Scripting CVE-2013-5714 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 23, 2013
BackWPup < 3.0.13 - Cross-Site Scripting CVE-2013-4626 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 21, 2013
A Forms <= 1.4.2 - Reflected Cross-Site Scripting CVE-2013-10020 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 19, 2013
ThinkIT WP Contact Form Plugin < 0.3 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 15, 2013
Events Manager < 5.5 - Cross-Site Scripting CVE-2013-7478 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 14, 2013
Contact Form by BestWebSoft <= 3.51 - Cross-Site Scripting CVE-2013-7475 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 13, 2013
HMS Testimonials < 2.0.11 - Cross-Site Scripting CVE-2013-4241 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 8, 2013
Usernoise modal feedback / contact form < 3.7.9 - Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 5, 2013
Comment Extra Fields <= 1.7 - Reflected Cross-Site Scripting 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N August 1, 2013

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation