Vulnerabilities (CVE)

Filtered by vendor Wordfence Security Project Subscribe
Filtered by product Wordfence Security
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-4664 1 Wordfence Security Project 1 Wordfence Security 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the Wordfence Security plugin before 5.1.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the whoisval parameter on the WordfenceWhois page to wp-admin/admin.php.