VYPR

Tag, Category, and Taxonomy Manager

by WordPress

CVEs (2)

  • CVE-2025-0627LowApr 28, 2025
    risk 0.23cvss 3.5epss 0.00

    The WordPress Tag, Category, and Taxonomy Manager WordPress plugin before 3.30.0 does not sanitise and escape some of its Widgets settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html…

  • CVE-2026-15231LowAug 3, 2026
    risk 0.18cvss 2.7epss 0.00

    The Tag, Category, and Taxonomy Manager WordPress plugin before 3.51.0 does not verify that a user is authorized to access a referenced post before processing it and returning derived data, allowing users with contributor privileges to disclose data from private or draft posts…

VYPR — Vulnerability Intelligence