Known Vulnerabilities for Site Reviews by Gemini Labs
Listed below are 10 of the newest known vulnerabilities associated with "Site Reviews" by "Gemini Labs".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57318 json | Subscriber Sensitive Data Exposure in Site Reviews <= 8.0.11 versions. | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-56043 json | Unauthenticated Cross Site Scripting (XSS) in Customer Reviews for WooCommerce <= 5.110.1 versions. | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-32360 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in richplugins Rich Showca... | Not Provided | 2026-03-13 | 2026-04-01 |
| CVE-2026-9619 json | The Reviews and Rating – Docplanner plugin for WordPress is vulnerable to authorization bypass in all versions up to, and i... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-4301 json | The Rate Star Review Vote - AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Missing Authorization in ... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-3355 json | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘crsearch... | Not Provided | 2026-04-16 | 2026-04-16 |
| CVE-2025-69051 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CridioStudio ListingPro... | Not Provided | 2026-01-22 | 2026-04-01 |
| CVE-2025-49266 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rustaurius Ultimate Rev... | Not Provided | 2025-06-17 | 2026-04-23 |
| CVE-2025-47570 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in villatheme WooCommerce ... | Not Provided | 2025-09-09 | 2026-04-23 |
| CVE-2025-39442 json | Cross-Site Request Forgery (CSRF) vulnerability in MessageMetric Review Wave – Google Places Reviews review-wave-google-pla... | Not Provided | 2025-04-17 | 2026-04-23 |