cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-0948,https://securityvulnerability.io/vulnerability/CVE-2023-0948,Japanized For WooCommerce < 2.5.8 - Reflected XSS,"The Japanized For WooCommerce WordPress plugin before 2.5.8 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting",Wordpress,Japanized For WooCommerce,6.1,MEDIUM,0.0013299999991431832,false,,false,false,false,,false,false,2023-05-08T14:15:00.000Z,0 CVE-2023-0942,https://securityvulnerability.io/vulnerability/CVE-2023-0942,Reflected Cross-Site Scripting in Japanized For WooCommerce Plugin by WordPress,"The Japanized For WooCommerce plugin for WordPress is susceptible to Reflected Cross-Site Scripting due to inadequate input sanitization and output escaping via the 'tab' parameter. This vulnerability allows unauthenticated attackers to exploit the weakness, injecting arbitrary web scripts that can be executed on affected pages, particularly if they manipulate users into clicking on malicious links.",Wordpress,Japanized For WooCommerce,6.1,MEDIUM,0.00798999983817339,false,,false,false,false,,false,false,2023-02-21T20:15:00.000Z,0