Known CVE
Widget4Call WordPress - Cross-Site Scripting
Widget4Call WordPress plugin <= 1.0.7 contains a reflected cross-site scripting caused by unsanitized parameter output in the page, letting attackers execute arbitrary scripts in the context of high privilege users, exploit requires attacker to craft a malicious URL.
CVE-2024-13099
Medium2024CVSS 5.4CWE-79
cve2024 · wp-scan · wordpress · wp-plugin · apidaze · widget4call
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website