Known Vulnerabilities for products from Vektor-inc

Listed below are 13 of the newest known vulnerabilities associated with the vendor "Vektor-inc".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2025-68070 json Not Provided 2025-12-16 2026-04-01
CVE-2025-32175 json Not Provided 2025-04-04 2026-04-01
CVE-2024-2170 json The VK All in One Expansion Unit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the child page index w... Not Provided 2024-03-26 2026-04-08
CVE-2024-2093 json The VK All in One Expansion Unit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, ... Not Provided 2024-04-09 2026-04-08
CVE-2024-0623 json The VK Block Patterns plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, ... Not Provided 2024-01-20 2026-04-08
CVE-2023-28367 json Cross-site scripting vulnerability in CTA post function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a remote ... 5.4 - MEDIUM 2023-05-23 2023-05-30
CVE-2023-27926 json Cross-site scripting vulnerability in Profile setting function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a ... 5.4 - MEDIUM 2023-05-23 2023-05-30
CVE-2023-27925 json Cross-site scripting vulnerability in Post function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earlier ... 5.4 - MEDIUM 2023-05-23 2023-05-30
CVE-2023-27923 json Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earl... 5.4 - MEDIUM 2023-05-23 2023-05-30
CVE-2023-5706 json The VK Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vk-blocks/ancestor-page-lis... Not Provided 2023-11-22 2026-04-08
CVE-2023-5705 json The VK Filter Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vk_filter_search' sh... Not Provided 2023-10-27 2026-04-08
CVE-2023-0937 json The VK All in One Expansion Unit WordPress plugin before 9.87.1.0 does not escape the $_SERVER['REQUEST_URI'] parameter befor... 6.1 - MEDIUM 2023-03-20 2023-11-07
CVE-2023-0584 json The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_options' function in versions... Not Provided 2023-06-03 2026-04-08
CVE-2023-0583 json The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_vk_blocks_options' function i... Not Provided 2023-06-03 2026-04-08
CVE-2023-0230 json The VK All in One Expansion Unit WordPress plugin before 9.86.0.0 does not validate and escape some of its block options befo... 5.4 - MEDIUM 2023-02-27 2023-11-07