Known Vulnerabilities for Shortcodes Ui by Bainternet
Listed below are 2 of the newest known vulnerabilities associated with "Shortcodes Ui" by "Bainternet".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-22384 json | Deserialization of Untrusted Data vulnerability in leafcolor Applay - Shortcodes applay-shortcodes allows Object Injection.Th... | Not Provided | 2026-02-20 | 2026-04-23 |
| CVE-2026-5797 json | The Quiz And Survey Master plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in versions up to and includin... | Not Provided | 2026-04-17 | 2026-04-17 |
| CVE-2026-4389 json | The DSGVO snippet for Leaflet Map and its Extensions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th... | Not Provided | 2026-03-26 | 2026-04-08 |
| CVE-2026-4084 json | The fyyd podcast shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'fyyd-podcast', 'fyyd-e... | Not Provided | 2026-03-21 | 2026-04-08 |
| CVE-2026-4078 json | The ITERAS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple shortcodes (iteras-ordering, iteras... | Not Provided | 2026-04-24 | 2026-04-24 |
| CVE-2026-4004 json | The Task Manager plugin for WordPress is vulnerable to arbitrary shortcode execution via the 'search' AJAX action in all vers... | Not Provided | 2026-03-21 | 2026-04-08 |
| CVE-2026-3997 json | The Text Toggle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' shortcode attribute of the ... | Not Provided | 2026-03-21 | 2026-04-08 |
| CVE-2026-3885 json | The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... | Not Provided | 2026-04-16 | 2026-04-16 |
| CVE-2026-3480 json | The WP Blockade plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 0.9.14. The p... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-3475 json | The Instant Popup Builder plugin for WordPress is vulnerable to Unauthenticated Arbitrary Shortcode Execution in all versions... | Not Provided | 2026-03-19 | 2026-04-08 |