VYPR
Vendor

Pojo

Products
2
CVEs
5
Across products
5
Status
Private

Products

2

Recent CVEs

5
  • CVE-2023-47177MedNov 6, 2023
    risk 0.42cvss 6.5epss 0.00

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yakir Sitbon, Ariel Klikstein Linker plugin <= 1.2.1 versions.

  • CVE-2024-10788HigNov 21, 2024
    risk 0.40cvss 7.2epss 0.01

    The Activity Log – Monitor & Record User Changes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the event parameters in all versions up to, and including, 2.11.1 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2016-10891MedAug 21, 2019
    risk 0.33cvss 6.1epss 0.01

    The aryo-activity-log plugin before 2.3.3 for WordPress has XSS.

  • CVE-2016-10890MedAug 21, 2019
    risk 0.33cvss 6.1epss 0.01

    The aryo-activity-log plugin before 2.3.2 for WordPress has XSS.

  • CVE-2018-8729MedMar 15, 2018
    risk 0.03cvss 6.1epss 0.05

    Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.