Known Vulnerabilities for products from Siteorigin

Listed below are 11 of the newest known vulnerabilities associated with the vendor "Siteorigin".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2024-56026 json Not Provided 2025-01-02 2026-04-01
CVE-2024-54268 json Missing Authorization vulnerability in Greg - SiteOrigin SiteOrigin Widgets Bundle so-widgets-bundle allows Exploiting Incorr... Not Provided 2024-12-13 2026-04-01
CVE-2024-5090 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's SiteOrigin B... Not Provided 2024-06-11 2026-04-08
CVE-2024-4362 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siteorigin_... Not Provided 2024-05-22 2026-04-08
CVE-2024-4361 json The Page Builder by SiteOrigin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siteorigin... Not Provided 2024-05-21 2026-04-08
CVE-2024-2202 json The Page Builder by SiteOrigin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the legacy Image widget ... Not Provided 2024-03-23 2026-04-08
CVE-2024-1723 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in all... Not Provided 2024-03-13 2026-04-08
CVE-2024-1070 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the features attribute in... Not Provided 2024-02-29 2026-04-08
CVE-2024-1058 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the onclick parameter in ... Not Provided 2024-02-29 2026-04-08
CVE-2024-0961 json The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the code editor in all ve... Not Provided 2024-02-05 2026-04-08
CVE-2020-13643 json An issue was discovered in the SiteOrigin Page Builder plugin before 2.10.16 for WordPress. The live editor feature did not d... 8.8 - HIGH 2020-05-28 2020-05-28
CVE-2020-13642 json An issue was discovered in the SiteOrigin Page Builder plugin before 2.10.16 for WordPress. The action_builder_content functi... 8.8 - HIGH 2020-05-28 2020-05-28

Known software with vulnerabilities from Siteorigin

Type Vendor Product Version
ApplicationSiteoriginPage Builder2.0