Known Vulnerabilities for Site Reviews by Unknown
Listed below are 10 of the newest known vulnerabilities associated with "Site Reviews" by "Unknown".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103340 json | Missing Authorization vulnerability in Gemini Labs Site Reviews site-reviews allows Exploiting Incorrectly Configured Access ... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-94078 json | Unauthenticated Cross Site Scripting (XSS) in Site Reviews <= 8.3.1 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-93778 json | The WP Yelp Review Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Yelp Review Text (imported vi... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-90900 json | Joomla Extension - joomshaper.com - Missing CSRF Token Verification in Storefront Product Review Submission in Easy Store ext... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-89330 json | The EmbedPress – PDF Embedder, 3D PDF FlipBook, Google Reviews, YouTube Videos, Upload & Embed PDF documents plugin for Wor... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-84927 json | The EmbedPress WordPress plugin before 4.6.4 does not perform a sufficient authorization check on one of its Google Reviews ... | Not Provided | 2026-09-05 | 2026-09-06 |
| CVE-2026-84926 json | The EmbedPress WordPress plugin before 4.6.4 does not correctly restrict access to one of its Google Reviews REST routes to ... | Not Provided | 2026-09-05 | 2026-09-06 |
| CVE-2026-84280 json | The Fancy Product Designer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Order 'elements[].... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-82925 json | The Site Reviews WordPress plugin before 8.3.0 does not prevent request data from being deserialized, and derives the key pro... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-76585 json | The Customer Reviews for WooCommerce WordPress plugin before 5.118.0 does not sanitise and escape the content of customer rev... | Not Provided | 2026-08-30 | 2026-08-31 |