Vulnerabilities (CVE)

Filtered by vendor Spiffyplugins Subscribe
Filtered by product Wp Flow Plus
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-35651 1 Spiffyplugins 1 Wp Flow Plus 2024-11-21 N/A 6.5 MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plugins WP Flow Plus allows Stored XSS.This issue affects WP Flow Plus: from n/a through 5.2.2.
CVE-2024-49695 1 Spiffyplugins 1 Wp Flow Plus 2024-11-08 N/A 5.4 MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plugins WP Flow Plus allows Stored XSS.This issue affects WP Flow Plus: from n/a through 5.2.3.