Medium severity6.1NVD Advisory· Published Jan 8, 2016· Updated Jun 17, 2026
CVE-2014-6444
CVE-2014-6444
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Titan Framework plugin before 1.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) t parameter to iframe-googlefont-preview.php or the (2) text parameter to iframe-font-preview.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:titan_framework_project:titan_framework:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:titan_framework_project:titan_framework:*:*:*:*:*:wordpress:*:*range: <=1.5
- (no CPE)range: <1.6
Patches
Vulnerability mechanics
References
2- wpvulndb.com/vulnerabilities/8233nvdVendor Advisory
- research.g0blin.co.uk/cve-2014-6444/nvd
News mentions
0No linked articles in our index yet.