Medium 5.4
2024-06-05< 6.5
CVE-2024-4939
Minimum safe version
6.5
Update to 6.5 or later to address 5 fixable vulnerabilities
CVE-2024-4939
WordPress Weaver Xtreme Theme Support Plugin < 6.3.1 is vulnerable to PHP Object Injection
WordPress Weaver Xtreme Theme Support Plugin <= 6.2.5 is vulnerable to Cross Site Scripting (XSS)
WordPress Weaver Xtreme Theme Support Plugin <= 5.0.2 is vulnerable to Cross Site Scripting (XSS)
Weaver Xtreme Theme Support <= 6.2.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode