Loading vulnerability details…
361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
88
This Week
4 results · Page 1/1
In Plotly plotly.js before 2.25.2, plot API calls have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.
plotly
Cross-site scripting (XSS) vulnerability in the Plotly plugin before 1.0.3 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via a post.
plot
The wp-plotly plugin before 1.0.3 for WordPress has XSS by authors.
plot
Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.
plotly