Filtered by vendor Halfdata Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-50797 2 Halfdata, Wordpress 2 Stripe Green Downloads, Wordpress 2026-02-02 6.4 Medium
Stripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting vulnerability allowing remote attackers to inject malicious scripts in button label fields. Attackers can exploit input parameters to execute arbitrary scripts, potentially leading to session hijacking and application module manipulation.