cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-6037,https://securityvulnerability.io/vulnerability/CVE-2023-6037,WP TripAdvisor Review Slider < 11.9 - Admin+ Stored XSS,"The WP TripAdvisor Review Slider WordPress plugin before 11.9 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)",Wordpress,WP TripAdvisor Review Slider,4.8,MEDIUM,0.0005200000014156103,false,,false,false,true,true,false,false,2024-01-01T15:15:00.000Z,0 CVE-2023-0261,https://securityvulnerability.io/vulnerability/CVE-2023-0261,WP TripAdvisor Review Slider < 10.8 - Subscriber+ SQLi,"The WP TripAdvisor Review Slider plugin for WordPress versions prior to 10.8 contains a vulnerability due to inadequate sanitization and escaping of user inputs in SQL statements. This oversight allows users with roles as low as subscriber to manipulate SQL queries, potentially leading to unauthorized data access and other security breaches. It is crucial for users of this plugin to update to the latest version to mitigate the risk associated with this vulnerability.",Wordpress,WP TripAdvisor Review Slider,8.8,HIGH,0.09741999953985214,false,,false,false,false,,false,false,2023-02-13T15:15:00.000Z,0