This page lists publicly disclosed CVE vulnerabilities affecting blocksera image_hover_effects (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2021-36888 | Unauthenticated Arbitrary Options Update vulnerability leading to full website compromise discovered in Image Hover Effects Ultimate (versions <= 9.6.1) WordPress plugin. | [email protected] | 9.8 | 68.27% | 2021-12-15 | 2024-11-21 |
| CVE-2021-24264 | The “Image Hover Effects – Elementor Addon” WordPress Plugin before 1.3.4 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method. | [email protected] | 5.4 | 0.16% | 2021-05-05 | 2024-11-21 |