Skip to content

Known CVE

WordPress Ocean Extra <1.9.5 - Cross-Site Scripting

WordPress Ocean Extra plugin before 1.9.5 contains a cross-site scripting vulnerability. The plugin does not escape generated links which are then used when the OceanWP theme is active.

CVE-2021-25104

Medium2021CVSS 6.1CWE-79

cve2021 · wordpress · xss · wp-plugin · authenticated · wpscan · wp · ocean-extra

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website