| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-5336 | Click to Chat <= 4.22 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via data-no_number Parameter | holithemes | Click to Chat – HoliThemes | Medium | 6.4 | 2025-06-14 08:23:26 | Deep Dive |
| CVE-2024-9619 | WP SHAPES <= 1.0.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | holithemes | WP SHAPES | Medium | 6.4 | 2024-12-20 06:59:08 | Deep Dive |
| CVE-2024-3849 | Click to Chat – HoliThemes <= 3.35 - Authenticated (Contributor+) Local File Inclusion | holithemes | Click to Chat – HoliThemes | High | 8.8 | 2024-05-02 16:52:55 | Deep Dive |