| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-1510 | WP Shortcodes Plugin — Shortcodes Ultimate <= 7.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via su_tooltip Shortcode | gn_themes | WP Shortcodes Plugin — Shortcodes Ultimate | Medium | 6.4 | 2024-02-20 02:34:18 | Deep Dive |
| CVE-2023-6488 | WP Shortcodes Plugin — Shortcodes Ultimate <= 7.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | gn_themes | WP Shortcodes Plugin — Shortcodes Ultimate | Medium | 5.4 | 2023-12-19 01:59:00 | Deep Dive |
| CVE-2023-6225 | WP Shortcodes Plugin — Shortcodes Ultimate <= 5.13.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | gn_themes | WP Shortcodes Plugin — Shortcodes Ultimate | Medium | 6.4 | 2023-11-28 04:31:52 | Deep Dive |
| CVE-2023-6226 | WP Shortcodes Plugin — Shortcodes Ultimate <= 5.13.3 - Insecure Direct Object Reference to Information Disclosure | gn_themes | WP Shortcodes Plugin — Shortcodes Ultimate | Medium | 4.3 | 2023-11-28 04:31:51 | Deep Dive |
| CVE-2023-23800 | WordPress Shortcodes Ultimate Plugin <= 5.12.6 is vulnerable to Server Side Request Forgery (SSRF) | Vova Anokhin | WP Shortcodes Plugin — Shortcodes Ultimate | High | 7.1 | 2023-11-13 02:58:00 | Deep Dive |
| CVE-2023-25040 | WordPress Shortcodes Ultimate Plugin <= 5.12.6 is vulnerable to Cross Site Scripting (XSS) | Vova Anokhin | WordPress Shortcodes Plugin — Shortcodes Ultimate | Medium | 6.5 | 2023-03-30 11:10:27 | Deep Dive |
| CVE-2023-0911 | Shortcodes Ultimate < 5.12.8 - Subscriber+ User Meta Disclosure | Unknown | WordPress Shortcodes Plugin — Shortcodes Ultimate | 中危 | - | 2023-03-20 15:52:24 | Deep Dive |
| CVE-2023-0890 | Shortcodes Ultimate < 5.12.8 - Subscriber+ Arbitrary Post Access | Unknown | WordPress Shortcodes Plugin — Shortcodes Ultimate | 中危 | - | 2023-03-20 15:52:16 | Deep Dive |
| CVE-2022-41136 | WordPress Shortcodes Ultimate plugin <= 5.12.0 - CSRF vulnerability leading to Stored XSS | Vladimir Anokhin | Shortcodes Ultimate (WordPress plugin) | Medium | 6.1 | 2022-11-08 18:28:05 | Deep Dive |
| CVE-2022-38086 | WordPress Shortcodes Ultimate plugin <= 5.12.0 - Cross-Site Request Forgery (CSRF) vulnerability | Vladimir Anokhin | Shortcodes Ultimate (WordPress plugin) | Medium | 5.4 | 2022-10-11 19:35:29 | Deep Dive |
| CVE-2021-24525 | Shortcodes Ultimate < 5.10.2 - Contributor+ Stored XSS | Unknown | WordPress Shortcodes Plugin — Shortcodes Ultimate | 中危 | - | 2021-09-20 10:06:15 | Deep Dive |