Loading HuntDB...

10web

19 Products 33 CVEs

CVE Severity Distribution (All Time)

Critical
1
High
5
Medium
26
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 12 CVEs

Recent CVEs

View all
CVE-2023-45272 MEDIUM 6 months ago

Missing Authorization vulnerability in 10Web 10Web Map Builder for Google Maps allows Exploiting Incorrectly Configured Access Control Security Level…

CVE-2023-47807 MEDIUM 6 months ago

Missing Authorization vulnerability in 10Web 10WebAnalytics allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affect…

CVE-2024-5020 MEDIUM 7 months ago

Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled FancyBox JavaScript library (versions 1.3.4 to …

CVE-2024-10265 MEDIUM 7 months, 3 weeks ago

The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due t…

CVE-2024-9878 MEDIUM 8 months ago

The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in al…

CVE-2024-9607 MEDIUM 8 months, 1 week ago

The 10Web Social Post Feed plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate e…

CVE-2024-44043 MEDIUM 8 months, 4 weeks ago

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in 10Web Photo Gallery by 10Web allows Stor…

CVE-2024-8283 MEDIUM 9 months ago

The Slider by 10Web WordPress plugin before 1.2.59 does not sanitise and escape some of its settings, which could allow high privilege users such as…

CVE-2024-8633 MEDIUM 9 months, 1 week ago

The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all v…

CVE-2024-7150 HIGH 10 months, 4 weeks ago

The Slider by 10Web – Responsive Image Slider plugin for WordPress is vulnerable to time-based SQL Injection via the 'id' parameter in all versions u…