VYPR
Medium severity6.1NVD Advisory· Published Jan 8, 2016· Updated Jun 17, 2026

CVE-2014-6444

CVE-2014-6444

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Titan Framework plugin before 1.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) t parameter to iframe-googlefont-preview.php or the (2) text parameter to iframe-font-preview.php.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:titan_framework_project:titan_framework:*:*:*:*:*:wordpress:*:*+ 1 more
    • cpe:2.3:a:titan_framework_project:titan_framework:*:*:*:*:*:wordpress:*:*range: <=1.5
    • (no CPE)range: <1.6

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.