Vulnerabilities and security researches forvariable-inspector variable-inspector
Direction: ascendingJun 07, 2024
Variable Inspector # f0a6fc147fec058c0a0720c4c9b6593fce550a55
- CVE, Research URL
- Home page URL
- Application
- Date
- Jul 19, 2023
- Research Description
- Variable Inspector [variable-inspector] < 2.4.0 WordPress Variable Inspector Plugin <= 2.3.0 is vulnerable to Cross Site Scripting (XSS) Update the WordPress Variable Inspector plugin to the latest available version. Rafie Muhammad (Patchstack) discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Variable Inspector Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 2.4.0.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Mar 04, 2025
Variable Inspector # CVE-2025-26914
- CVE, Research URL
- Home page URL
- Application
- Date
- Mar 03, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bowo Variable Inspector allows Reflected XSS. This issue affects Variable Inspector: from n/a through 2.6.2.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Apr 05, 2025
Variable Inspector # CVE-2025-32229
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 04, 2025
- Research Description
- Missing Authorization vulnerability in Bowo Variable Inspector allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Variable Inspector: from n/a through 2.6.3.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable