Showing 1 vulnerability on this page for page_builder

Signals CISA KEV Ransomware Nuclei
wpbakery vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

wpbakery page_builder Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.

CWE-79Nov 16, 2020
CVSS6.4v3.1EPSS0.699%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX