cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-13626,https://securityvulnerability.io/vulnerability/CVE-2024-13626,Reflected Cross-Site Scripting Vulnerability in VR-Frases WordPress Plugin,"The VR-Frases plugin for WordPress, up to version 3.0.1, is susceptible to a reflected cross-site scripting attack due to insufficient sanitization and escaping of user-supplied parameters. This vulnerability could allow attackers to execute scripts in the context of high-privilege users, such as administrators, potentially leading to unauthorized actions or data exposure directly through the affected web application. Proper input validation and escaping mechanisms are critical for securing user interactions.",WordPress,Vr-frases (collect & Share Quotes),7.1,HIGH,0.0004299999854993075,false,,false,false,true,2025-02-17T06:00:07.000Z,true,false,false,,2025-02-17T06:00:07.573Z,0