cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-11226,https://securityvulnerability.io/vulnerability/CVE-2024-11226,Stored Cross-Site Scripting in FireCask Like & Share Button Plugin for WordPress,"The FireCask Like & Share Button plugin for WordPress is subject to a Stored Cross-Site Scripting vulnerability due to inadequate input sanitization and output escaping in the 'width' parameter. This issue affects all versions up to and including 1.2, allowing authenticated attackers with Contributor-level access and above to inject harmful scripts. These scripts execute when users visit the affected pages, posing significant security risks.",Wordpress,Firecask Like & Share Button,6.4,MEDIUM,0.0006799999973736703,false,,false,false,false,,false,false,false,,2025-01-21T11:09:46.724Z,0