Skip to main content

Vendor/product archive

themepoints / super_testimonials CVEs

Beta · best-effort

4 CVEs tagged to themepoints / super_testimonials0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2024-13704

Published Feb 18, 2025

The Super Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'st_user_title' parameter in all versions up to, and including, 4.0.1 due to insuf…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-5613

Published Oct 20, 2023

The Super Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tpsscode' shortcode in all versions up to, and including, 2.9 due to ins…

CVSS 6.4 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2022-3539

Published Nov 14, 2022

The Testimonials WordPress plugin before 2.7, super-testimonial-pro WordPress plugin before 1.0.8 do not sanitize and escape its settings, allowing high privilege users such as ad…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1