cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-0166,https://securityvulnerability.io/vulnerability/CVE-2023-0166,PickPlugins Product Slider for WooCommerce < 1.13.42 - Contributor+ Stored XSS,"The Product Slider for WooCommerce by PickPlugins WordPress plugin before 1.13.42 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.",Wordpress,Product Slider for WooCommerce by PickPlugins,5.4,MEDIUM,0.0005499999970197678,false,,false,false,false,,false,false,2023-02-13T15:15:00.000Z,0 CVE-2021-24300,https://securityvulnerability.io/vulnerability/CVE-2021-24300,PickPlugins Product Slider for WooCommerce < 1.13.22 - Reflected Cross-Site Scripting (XSS),"The slider import search feature of the PickPlugins Product Slider for WooCommerce WordPress plugin before 1.13.22 did not properly sanitised the keyword GET parameter, leading to reflected Cross-Site Scripting issue",Wordpress,Pickplugins Product Slider For WooCommerce,6.1,MEDIUM,0.00267999991774559,false,,false,false,false,,false,false,2021-05-24T10:58:04.000Z,0