Medium 6.1
2025-07-10< 4.9.3
Gwolle Guestbook <= 4.9.2 - Unauthenticated Stored Cross-Site Scripting via `gwolle_gb_content` Parameter
Minimum safe version
4.9.3
Update to 4.9.3 or later to address 10 fixable vulnerabilities
Gwolle Guestbook <= 4.9.2 - Unauthenticated Stored Cross-Site Scripting via `gwolle_gb_content` Parameter
CVE-2025-24710
Gwolle Guestbook <= 2.1.0 - Unauthenticated Stored Cross-Site Scripting (XSS)
Gwolle Guestbook <= 2.1.0 - Cross-Site Request Forgery (CSRF)
Gwolle Guestbook <= 2.1.0 - Cross-Site Request Forgery
Gwolle Guestbook <= 2.1.0 - Stored Cross-Site Scripting
WordPress Gwolle Guestbook plugin <= 2.5.3 - Cross-Site Scripting (XSS) vulnerability
CVE-2015-8351
CVE-2018-17884
CVE-2021-24980