WordPress Testimonials Widget plugin <= 4.0.4 - Authenticated (Author+) Stored Cross-Site Scripting via testimonials Shortcode vulnerability

Don't mute a vulnerability until you've confirmed your current version has a fix, or the issue doesn't affect your site.

Type:
Cross Site Scripting (XSS)
Score:
6.5
No Fix Available

Timeline

Publicly Published
2026-02-02
Created
2026-02-02

WordPress Testimonials Widget plugin <= 4.0.4 - Cross Site Scripting (XSS) vulnerability

Don't mute a vulnerability until you've confirmed your current version has a fix, or the issue doesn't affect your site.

Type:
Cross Site Scripting (XSS)
Score:
6.5
No Fix Available

Timeline

Publicly Published
2024-07-06
Created
2024-07-06

WordPress Testimonials Widget plugin <= 3.5.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability

Don't mute a vulnerability until you've confirmed your current version has a fix, or the issue doesn't affect your site.

Type:
Cross Site Scripting (XSS)
Score:
5.4
Fixed in Version 4.0.0

Timeline

Publicly Published
2020-07-03
Created
2021-01-08