agilelogix CVE Vulnerabilities & CVE List (6)

Products (CPE): — CVEs: 6

agilelogix vulnerability overview

Aggregates CVE and security vulnerability intelligence across all agilelogix-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Common weakness patterns include vendor risk cross-site scripting and vendor risk csrf, with potential vendor impact session compromise across vendor surface software deployment and vendor surface production workloads use cases.

Vulnerability distribution trend (last 24 months)

Showing 16 of 6 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-13571 The Post Timeline WordPress plugin before 2.3.10 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin. [email protected] 7.1 0.08% 2025-02-26 2025-05-15
CVE-2023-4284 The Post Timeline WordPress plugin before 2.2.6 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin [email protected] 6.1 13.53% 2023-09-04 2025-03-06
CVE-2023-4151 The Store Locator WordPress plugin before 1.4.13 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin [email protected] 6.1 21.63% 2023-09-04 2025-03-06
CVE-2023-27618 Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in AGILELOGIX Store Locator WordPress plugin <= 1.4.9 versions. [email protected] 5.9 0.06% 2023-06-22 2024-11-21
CVE-2022-4832 The Store Locator WordPress plugin before 1.4.9 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins. [email protected] 5.4 0.18% 2023-01-23 2025-04-02
CVE-2022-41615 Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability in Store Locator plugin <= 1.4.5 on WordPress. [email protected] 6.1 0.09% 2022-11-18 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence