cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2021-46782,https://securityvulnerability.io/vulnerability/CVE-2021-46782,Pricing Table by Supsystic < 1.9.5 - Reflected Cross-Site Scripting,"The Pricing Table by Supsystic WordPress plugin before 1.9.5 does not escape the tab parameter before outputting it back in an attribute in the admin dashboard, leading to a Reflected Cross-Site Scripting",Wordpress,Pricing Table By Supsystic,6.1,MEDIUM,0.0007999999797903001,false,,false,false,false,,false,false,2022-04-25T15:50:51.000Z,0 CVE-2020-9392,https://securityvulnerability.io/vulnerability/CVE-2020-9392,,"An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permission check on the ImportJSONTable, createFromTpl, and getJSONExportTable endpoints, unauthenticated users can retrieve pricing table information, create new tables, or import/modify a table.",Wordpress,Pricing Table By Supsystic,7.3,HIGH,0.001610000035725534,false,,false,false,false,,false,false,2020-03-23T16:14:51.000Z,0 CVE-2020-9394,https://securityvulnerability.io/vulnerability/CVE-2020-9394,,An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows CSRF.,Wordpress,Pricing Table By Supsystic,8.8,HIGH,0.0010000000474974513,false,,false,false,false,,false,false,2020-02-25T18:07:00.000Z,0 CVE-2020-9393,https://securityvulnerability.io/vulnerability/CVE-2020-9393,,An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows XSS.,Wordpress,Pricing Table By Supsystic,7.2,HIGH,0.0005799999926239252,false,,false,false,false,,false,false,2020-02-25T18:06:53.000Z,0