All 6 CVE vulnerabilities found in Widgets for Google Reviews, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-11591 | Widgets for Google Reviews <= 13.3 - Authenticated (Editor+) Stored Cross-Site Scripting via 'fomo-title' and 'fomo-text' Parameters CWE-79 | 4.4 | Medium | 2026-07-11 |
| CVE-2025-9436 | Widgets for Google Reviews <= 13.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via trustindex Shortcode CWE-79 | 6.4 | Medium | 2025-12-11 |
| CVE-2025-12510 | Widgets for Google Reviews <= 13.2.4 - Unauthenticated Stored Cross-Site Scripting via Google Reviews CWE-79 | 7.2 | High | 2025-12-06 |
| CVE-2023-48275 | WordPress Widgets for Google Reviews plugin <= 11.0.2 - Arbitrary File Upload vulnerability CWE-434 | 8.0 | High | 2024-03-26 |
| CVE-2023-3254 | Widgets for Google Reviews <= 10.9 - Cross-Site Request Forgery to Plugin Settings Reset CWE-352 | 4.3 | Medium | 2023-10-18 |
| CVE-2022-4470 | Widgets for Google Reviews < 9.8 - Contributor+ Stored XSS | 5.4 | - | 2023-01-30 |
All 6 known CVE vulnerabilities affecting Widgets for Google Reviews with full Chinese analysis, references, and POCs where available.