cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-0625,https://securityvulnerability.io/vulnerability/CVE-2024-0625,Stored Cross-Site Scripting Vulnerability in WPFront Notification Bar Plugin for WordPress,"The WPFront Notification Bar plugin for WordPress is susceptible to Stored Cross-Site Scripting due to inadequate input sanitization and output escaping in the 'wpfront-notification-bar-options[custom_class]' parameter. This vulnerability affects all versions up to and including 3.3.2. It enables attackers with administrator-level access to inject harmful web scripts into pages, posing a risk as these scripts execute whenever users visit the compromised pages. The issue is particularly critical for multi-site installations and environments where the unfiltered_html setting has been disabled.",Wordpress,WPFront Notification Bar,4.8,MEDIUM,0.0005600000149570405,false,,false,false,false,,false,false,2024-01-25T02:32:36.487Z,0 CVE-2021-24601,https://securityvulnerability.io/vulnerability/CVE-2021-24601,WPFront Notification Bar < 2.1.0.08087 - Authenticated Stored XSS,"The WPFront Notification Bar WordPress plugin before 2.1.0.08087 does not properly sanitise and escape its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.",Wordpress,WPfront Notification Bar,5.4,MEDIUM,0.000539999979082495,false,,false,false,false,,false,false,2021-09-06T11:09:32.000Z,0 CVE-2021-24518,https://securityvulnerability.io/vulnerability/CVE-2021-24518,WPFront Notification Bar < 2.0.0.07176 - Authenticated Stored XSS,"The WPFront Notification Bar WordPress plugin before 2.0.0.07176 does not sanitise or escape its Custom CSS setting, allowing high privilege users such as admin to set XSS payload in it even when the unfiltered_html capability is disallowed, leading to an authenticated Stored Cross-Site Scripting issue",Wordpress,WPfront Notification Bar,4.8,MEDIUM,0.001019999966956675,false,,false,false,false,,false,false,2021-08-16T10:48:24.000Z,0